TheHive

TheHive

TheHive Project
+
+

Related Products

  • ManageEngine Log360
    106 Ratings
    Visit Website
  • Blumira
    144 Ratings
    Visit Website
  • Cynet All-in-One Cybersecurity Platform
    383 Ratings
    Visit Website
  • Resolver
    257 Ratings
    Visit Website
  • Hoxhunt
    4,730 Ratings
    Visit Website
  • Google Chrome Enterprise
    1,912 Ratings
    Visit Website
  • Guardz
    87 Ratings
    Visit Website
  • ConnectWise SIEM
    191 Ratings
    Visit Website
  • A10 Defend Threat Control
    32 Ratings
    Visit Website
  • Safetica
    376 Ratings
    Visit Website

About

Intezer automates Tier 1 SOC tasks, working like an extension of your team. Intezer can monitor incoming incidents from endpoint, email, or SIEM tools, then "autonomously" collects evidence, investigates, triages, triggers remediation action, and escalates only the the serious threats to your team for human intervention. Fast set up and integrations with your SOC and IR teams workflows (EDR, SOAR, SIEM, etc.) means you can starting filtering out false positives, get detailed analysis about every threat, and speed up your incident response time. Make sure every incident and artifact (such as files, URLs, endpoint memory, etc.) gets deeply analyzed, detecting malicious code in memory and other evasive threats.

About

A scalable, open source and free Security Incident Response Platform, tightly integrated with MISP (Malware Information Sharing Platform), designed to make life easier for SOCs, CSIRTs, CERTs and any information security practitioner dealing with security incidents that need to be investigated and acted upon swiftly. Multiple SOC and CERT analysts can collaborate on investigations simultaneously. Thanks to the built-in live stream, real time information pertaining to new or existing cases, tasks, observables and IOCs is available to all team members. Special notifications allow them to handle or assign new tasks, and preview new MISP events and alerts from multiple sources such as email reports, CTI providers and SIEMs. They can then import and investigate them right away. Cases and associated tasks can be created using a simple yet powerful template engine.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

CISO, VP of Security, Director, SOC Manager, IR Manager, Team Lead, SOC Analyst, IR Analyst, Security Analyst

Audience

Development teams who want a scalable, open source and free Security Incident Response Platform

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

Free
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 4.0 / 5
ease 5.0 / 5
features 5.0 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Intezer
Founded: 2015
United States and Israel
www.intezer.com

Company Information

TheHive Project
Founded: 2012
thehive-project.org

Alternatives

Alternatives

Cyber Triage

Cyber Triage

Sleuth Kit Labs
Klaxon

Klaxon

Klaxon Technologies

Categories

Categories

Incident Response Features

Attack Behavior Analytics
Automated Remediation
Compliance Reporting
Forensic Data Retention
Incident Alerting
Incident Database
Incident Logs
Incident Reporting
Privacy Breach Reporting
Security Orchestration
SIEM Data Ingestion / Correlation
SLA Tracking / Management
Threat Intelligence
Timeline Analysis
Workflow Automation
Workflow Management

Integrations

Blink
Filigran
Azure Marketplace
Censys
Chronicle SOAR
Cortex XSOAR
CrowdStrike Falcon
Cyral
Jira Service Management
Microsoft Defender for Endpoint
Mimecast Advanced Email Security
Polarity
Proofpoint Email Protection
Qintel CrossLink
Recorded Future
Samplead
SentinelOne Singularity
ServiceNow Security Operations
n8n
urlscan.io

Integrations

Blink
Filigran
Azure Marketplace
Censys
Chronicle SOAR
Cortex XSOAR
CrowdStrike Falcon
Cyral
Jira Service Management
Microsoft Defender for Endpoint
Mimecast Advanced Email Security
Polarity
Proofpoint Email Protection
Qintel CrossLink
Recorded Future
Samplead
SentinelOne Singularity
ServiceNow Security Operations
n8n
urlscan.io
Claim Intezer Analyze and update features and information
Claim Intezer Analyze and update features and information
Claim TheHive and update features and information
Claim TheHive and update features and information