https://github.com/sandialabs/scot4-inbox
SCOT4 Inbox Processor
https://github.com/sandialabs/scot4-inbox
scr-1627 snl-applications snl-cyber-sec
Last synced: 3 months ago
JSON representation
SCOT4 Inbox Processor
- Host: GitHub
- URL: https://github.com/sandialabs/scot4-inbox
- Owner: sandialabs
- License: other
- Created: 2024-08-13T13:55:16.000Z (10 months ago)
- Default Branch: main
- Last Pushed: 2025-02-13T21:39:47.000Z (4 months ago)
- Last Synced: 2025-02-13T22:33:06.139Z (4 months ago)
- Topics: scr-1627, snl-applications, snl-cyber-sec
- Language: Perl
- Homepage:
- Size: 38.1 KB
- Stars: 0
- Watchers: 2
- Forks: 0
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
- License: LICENSE
Awesome Lists containing this project
README
# scot4-inbox
# Inbox (IMAP/MSGRAPH) processor for SCOT4
Creates a container to run the SCOT4 inbox processor. The processor will read IMAP inboxes and Microsoft Graph API inboxes and insert the contents of those messages into SCOT alerts, events, or dispatches.
This is a convenient way to input data from detection systems, threat intel feeds, and analysts directly into SCOT.
For more information and instructions, consult the main SCOT4 documentaton Repository.
https://sandialabs.github.io/scot4-docs/index.html