razornbv / visualizations

Samples of visualization add-ons to QRadar, utilizing public REST APIs

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

This repository contains samples of visualization add-ons to QRadar, utilizing public REST APIs.

These samples are provided for reference purposes on an "as is" basis, and are without warranties of any kind.

Any issues discovered using the samples should not be directed to QRadar support, but be reported on the Github issues tracker.

incident_overview

A stand alone visualization that displays incidents from QRadar. Incidents are represented based on magnitude and linked via IP addresses. Details (including geographic map and IP relationship chart) of the offense are available by clicking on an incident. Originally shown at RSA 2015 and Blackhat 2015.

offense_visualizer

A visualization that runs in a web browser, showing an interactive bubble chart of offenses

excel

Ability to execute an advanced query directly from excel and have the results come back into excel

About

Samples of visualization add-ons to QRadar, utilizing public REST APIs

License:Apache License 2.0


Languages

Language:JavaScript 90.8%Language:Java 5.7%Language:CSS 3.0%Language:HTML 0.4%Language:Shell 0.0%Language:Python 0.0%