The Prime Hunt

SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs

¿Qué es The Prime Hunt?

The Prime Hunt es una extensión de Chrome desarrollada por SOC Prime Inc., y su función principal es "SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs".

Capturas de Pantalla de la Extensión

screenshot
screenshot
screenshot
screenshot
screenshot
screenshot

Descargar Archivo CRX de la Extensión The Prime Hunt

Descarga archivos de extensión The Prime Hunt en formato crx, instala manualmente las extensiones de Chrome en el navegador o comparte los archivos crx con amigos para instalar fácilmente las extensiones de Chrome.

Instrucciones de Uso de la Extensión

                        The Prime Hunt is a LGPL browser extension for threat hunting developed as an open-source project on GitHub (https://github.com/socprime/the-prime-hunt). The Prime Hunt introduces a One UI idea to simplify and speed up the investigation process regardless of the SIEMs or EDR in use. This is useful both for threat hunters starting off their careers and for seasoned professionals. The former can master the different security platforms and query languages faster, learning the right methodology from the very beginning, while the latter benefit from a streamlined workflow.
One UI for different technologies mirrors the concept of Sigma as a single language for cybersecurity. Sigma rules can be translated into multiple platform formats. This extension helps any threat hunter easily run and tune Sigma rule translations in those platforms, ensuring the community is Sigma-enabled. Meanwhile, sharing query hits (coming soon) helps the entire community measure and consolidate the MITRE ATT&CK® technique prevalence and rule quality.
With The Prime Hunt, you can easily see what accounts and assets are affected by the suspicious activity your query detects. Filter for or filter out query results by any field values with one click or look for all events related to them. Easily drill down to any CTI or any other sources that can help you in the investigation                    

Información Básica de la Extensión

Nombre The Prime Hunt The Prime Hunt
ID jgelecjbbjlmghiejapgafechokhpmcc
URL Oficial https://chromewebstore.google.com/detail/the-prime-hunt/jgelecjbbjlmghiejapgafechokhpmcc
Descripción SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs
Tamaño del Archivo 390 KB
Cantidad de Instalaciones 113
Versión Actual 1.4.2
Última Actualización 2024-02-05
Fecha de Publicación 2023-02-11
Calificación 5.00/5 Total de 9 Calificaciones
Desarrollador SOC Prime Inc.
Correo electrónico [email protected]
Tipo de Pago free
Sitio Web de la Extensión https://socprime.com
URL de la Página de Ayuda https://github.com/socprime/the-prime-hunt
Idiomas Soportados en
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "version": "1.4.2",
    "description": "__MSG_extension_description__",
    "name": "__MSG_extension_name__",
    "default_locale": "en",
    "manifest_version": 3,
    "icons": {
        "16": "icons\/16.png",
        "48": "icons\/48.png",
        "64": "icons\/64.png",
        "96": "icons\/96.png",
        "128": "icons\/128.png",
        "256": "icons\/256.png",
        "512": "icons\/512.png"
    },
    "content_scripts": [
        {
            "matches": [
                "https:\/\/*\/*"
            ],
            "all_frames": true,
            "js": [
                "content.js"
            ],
            "run_at": "document_end"
        }
    ],
    "permissions": [
        "webRequest",
        "storage"
    ],
    "host_permissions": [
        ""
    ],
    "web_accessible_resources": [
        {
            "resources": [
                "inline-microsoft-sentinel.js",
                "inline-microsoft-defender.js",
                "inline-splunk.js",
                "inline-qradar.js",
                "inline-elastic.js",
                "inline-arcsight.js",
                "inline-amazon-athena.js",
                "inline-opensearch.js",
                "inline-logscale.js",
                "inline-chronicle.js",
                "app-styles.css"
            ],
            "matches": [
                ""
            ]
        }
    ],
    "action": {
        "default_icon": {
            "16": "icons\/16.png",
            "48": "icons\/48.png",
            "64": "icons\/64.png",
            "96": "icons\/96.png",
            "128": "icons\/128.png",
            "256": "icons\/256.png",
            "512": "icons\/512.png"
        }
    },
    "background": {
        "service_worker": "background.js"
    }
}