The Prime Hunt

SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs

什麼是The Prime Hunt?

The Prime Hunt是由SOC Prime Inc.開發的Chrome擴展程式,該擴展的主要功能是“SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs”。

擴展截圖

screenshot
screenshot
screenshot
screenshot
screenshot
screenshot

下載The Prime Hunt擴展crx文件

下載The Prime Hunt擴展crx格式的文件,手動將Chrome擴充功能安裝到瀏覽器中,也可以將crx文件分享給朋友,輕鬆安裝Chrome擴充功能。

擴展使用說明

                        The Prime Hunt is a LGPL browser extension for threat hunting developed as an open-source project on GitHub (https://github.com/socprime/the-prime-hunt). The Prime Hunt introduces a One UI idea to simplify and speed up the investigation process regardless of the SIEMs or EDR in use. This is useful both for threat hunters starting off their careers and for seasoned professionals. The former can master the different security platforms and query languages faster, learning the right methodology from the very beginning, while the latter benefit from a streamlined workflow.
One UI for different technologies mirrors the concept of Sigma as a single language for cybersecurity. Sigma rules can be translated into multiple platform formats. This extension helps any threat hunter easily run and tune Sigma rule translations in those platforms, ensuring the community is Sigma-enabled. Meanwhile, sharing query hits (coming soon) helps the entire community measure and consolidate the MITRE ATT&CK® technique prevalence and rule quality.
With The Prime Hunt, you can easily see what accounts and assets are affected by the suspicious activity your query detects. Filter for or filter out query results by any field values with one click or look for all events related to them. Easily drill down to any CTI or any other sources that can help you in the investigation                    

擴展基本資訊

名稱 The Prime Hunt The Prime Hunt
ID jgelecjbbjlmghiejapgafechokhpmcc
官方網址 https://chromewebstore.google.com/detail/the-prime-hunt/jgelecjbbjlmghiejapgafechokhpmcc
簡介 SOC Prime’s open-source browser extension for more efficient threat hunting with one UI for different SIEMs/EDRs
檔案大小 390 KB
安裝次數 113
目前版本 1.4.2
更新時間 2024-02-05
上架時間 2023-02-11
評分 5.00/5 共 9 次評分
開發者 SOC Prime Inc.
電子郵箱 [email protected]
付費類型 free
擴展官網 https://socprime.com
說明頁面URL https://github.com/socprime/the-prime-hunt
支援的語言 en
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "version": "1.4.2",
    "description": "__MSG_extension_description__",
    "name": "__MSG_extension_name__",
    "default_locale": "en",
    "manifest_version": 3,
    "icons": {
        "16": "icons\/16.png",
        "48": "icons\/48.png",
        "64": "icons\/64.png",
        "96": "icons\/96.png",
        "128": "icons\/128.png",
        "256": "icons\/256.png",
        "512": "icons\/512.png"
    },
    "content_scripts": [
        {
            "matches": [
                "https:\/\/*\/*"
            ],
            "all_frames": true,
            "js": [
                "content.js"
            ],
            "run_at": "document_end"
        }
    ],
    "permissions": [
        "webRequest",
        "storage"
    ],
    "host_permissions": [
        ""
    ],
    "web_accessible_resources": [
        {
            "resources": [
                "inline-microsoft-sentinel.js",
                "inline-microsoft-defender.js",
                "inline-splunk.js",
                "inline-qradar.js",
                "inline-elastic.js",
                "inline-arcsight.js",
                "inline-amazon-athena.js",
                "inline-opensearch.js",
                "inline-logscale.js",
                "inline-chronicle.js",
                "app-styles.css"
            ],
            "matches": [
                ""
            ]
        }
    ],
    "action": {
        "default_icon": {
            "16": "icons\/16.png",
            "48": "icons\/48.png",
            "64": "icons\/64.png",
            "96": "icons\/96.png",
            "128": "icons\/128.png",
            "256": "icons\/256.png",
            "512": "icons\/512.png"
        }
    },
    "background": {
        "service_worker": "background.js"
    }
}