81 lines
1.8 KiB
Markdown
81 lines
1.8 KiB
Markdown
# Threat Hunting Artificial Intelligence
|
|
|
|
**TLDR**: *find threats and be your electronic notebook to find the enemy **5x** quicker*
|
|
|
|
This tool helps a threat hunting to make sure analysts are checking their boxes and observing all possibilities that an attacker can use on their terrain. This bot will help with managing how to threat hunting while giving helpful advice and keeping track of what you have looked at. All of this knowledge is made possible from the amazing support I have been given. learning from my current role, SEC504, FOR508, 13Cubed and many more have allowed me to give this amazing information in one central location.
|
|
|
|
<div align="center">
|
|
<img src="https://git.infinit3i.com/matthew/Hunt-AI/raw/commit/4c3b0654cd4c5b94e8659f2d18f86e01b579ba87/Assets/threat_hunter.jpeg" alt="Threat Hunter" width="600">
|
|
</div>
|
|
|
|
## minimum requirements
|
|
- 1 brain cell
|
|
- pc with atleast a 🐹
|
|
|
|
### Depenecies
|
|
|
|
#### [Python](https://www.python.org/downloads/)
|
|
|
|
# Directions
|
|
|
|
1. Download zip in top right
|
|
|
|
2. unzip Hunt-AI.zip
|
|
|
|
3. Go to path `*/hunt-ai/`
|
|
- you should see `dco.py`
|
|
|
|
4. Set Enviroment
|
|
- On Windows
|
|
`.\venv\Scripts\activate`
|
|
- On macOS/Linux
|
|
`source venv/bin/activate`
|
|
|
|
5. Install requirements
|
|
`pip install -r requirements.txt`
|
|
|
|
6. `python3 dco.py`
|
|
|
|
|
|
## Guidance
|
|
|
|
```
|
|
check off what you have looked at by pressing the number
|
|
-# to uncheck section
|
|
ex. -1 will uncheck 1
|
|
#! will highlight section
|
|
ex. 1! will highlight 1
|
|
```
|
|
|
|
|
|
|
|
|
|
|
|
|
|
----
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
## Todo
|
|
|
|
#### IDEAS
|
|
- session management
|
|
- sysmon notes
|
|
- add more sections
|
|
- have ips be entered into links
|
|
- verify what links can be used
|
|
|
|
#### REFACTORING
|
|
- allow all to be pressed if already pressed
|
|
- stop highlighting after green if it is the all one
|
|
- fix searching to find files and present them
|
|
- have the notebook and about be on **EVERY PAGE** |