TheHive
Scalable open-source Security Incident Response Platform (SIRP) for SOC analysts and CERT teams.
Why consider TheHive?
TheHive is an open-source security incident response platform built with Scala and React. It allows SOC analysts to organize security incidents into structured case investigations, assign analyst tasks, and query threat intelligence observables.
Learn TheHive by building
Practical setup notes, real use cases, and copy-ready examples in one focused guide.
In this guide2 sections
Overview of TheHive
TheHive coordinates incident investigation tasks and links indicators of compromise to known threats.
Quickstart
git clone https://github.com/TheHive-Project/TheHive.gitcd TheHivedocker compose up -dAccess http://localhost:9000 to initialize security investigation cases and collaborate with SOC analysts.
TheHive is licensed under the GNU Affero General Public License v3.0.
Related tools
More options with a similar category or technology profile.
McFly
Fly through your shell history with an intelligent neural network search engine.
cheat
Interactive command-line cheatsheets for system administrators and software engineers.
Pipenv
Python development workflow for humans uniting Pipfile, pip, and virtualenv.
Rye
Comprehensive Python package and workspace management tool written in Rust.