bk-cs / rtr

Real-time Response scripts and schema

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

bk-cs/rtr

Scripts and schema for use with CrowdStrike Falcon Real-time Response and Falcon Fusion Workflows.

[ US-1 | US-2 | US-GOV-1 | EU-1 ]

NOTE: If you enter your Humio Cloud and Token values inside of the $Humio value at the beginning of each script, the results from the script will be output to Real-time Response and also sent to your Humio repository.

$Humio = @{ Cloud = 'https://cloud.community.humio.com'; Token = '<my_ingest_token_guid>' }

About

Real-time Response scripts and schema


Languages

Language:PowerShell 98.5%Language:Shell 1.5%