Sign inSign up

thehiveproject/cortex

By thehiveproject

•Updated 3 months ago

Powerful Observable Analysis and Active Response Engine

Image
16

1M+

thehiveproject/cortex repository overview

Join the chat at https://gitter.im/TheHive-Project/TheHive

Cortex tries to solve a common problem frequently encountered by SOCs, CSIRTs and security researchers in the course of threat intelligence, digital forensics and incident response: how to analyze observables they have collected, at scale, by querying a single tool instead of several?

Cortex, an open source and free software, has been created by TheHive Project⁠ for this very purpose. Observables, such as IP and email addresses, URLs, domain names, files or hashes, can be analyzed one by one or in bulk mode using a Web interface. Analysts can also automate these operations thanks to the Cortex REST API.

By using Cortex, you won't need to rewrite the wheel every time you'd like to use a service or a tool to analyze an observable and help you investigate the case at hand. Leverage one of the several analyzers it contains and if you are missing a tool or a service, create a suitable program easily and make it available for the whole team (or better, for the whole community⁠) thanks to Cortex.

Tag summary

Content type

Image

Digest

sha256:f43733e12…

Size

509.9 MB

Last updated

10 months ago

docker pull thehiveproject/cortex