Use Cases (2)
Real-world integrations with TheHive
Ingest Proofpoint MessagesDelivered Events into TheHive Using an Alert Feeder
Ingest Proofpoint TAP messagesDelivered events as TheHive alerts to track and respond to threats that have reached user mailboxes and may require investigation.
- License required: Platinum
- TheHive version required: 5.5+
- Related function: alertFeeder_ProofPoint_messageDelivered
Ingest Proofpoint ClicksPermitted Events into TheHive Using an Alert Feeder
Ingest Proofpoint TAP clicksPermitted events as TheHive alerts to track and respond to users who clicked on malicious links that were not blocked by Proofpoint and may require investigation.
- License required: Platinum
- TheHive version required: 5.5+
- Related function: alertFeeder_ProofPoint_clicksPermitted
Analyzers (1)
Enrich observables with intelligence
Proofpoint Lookup v1.0
Check URL, file, SHA256 against Proofpoint forensics
- Author: Emmanuel Torquato
- License: AGPL-V3
- Data Types:
url,file,hash
Functions (2)
Automate TheHive actions or ingest alerts
alertFeeder ProofPoint clicksPermitted v1.0.0
Ingests ProofPoint clicksPermitted alerts in TheHive
- Author: Fabien Bloume, StrangeBee
alertFeeder ProofPoint messageDelivered v1.0.0
Ingests ProofPoint messageDelivered alerts in TheHive
- Author: Fabien Bloume, StrangeBee





















































































