Skip to content
This repository has been archived by the owner on Apr 27, 2018. It is now read-only.
/ cblrconsole Public archive

Carbonblack Live Response from the comfort of your own terminal

License

Notifications You must be signed in to change notification settings

opensourcesec/cblrconsole

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

5 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

alt tag

CBLR (Carbonblack Live Response) Console

Utilizes the Carbon Black Sensor API

Introduced in v5.0

https://github.com/carbonblack/cbapi/tree/master/sensor_apis

The Carbon Black Live Response Sensor API allows incident responders to automate investigation and triage activities on any Windows endpoint with the v5.0+ sensor installed. The API includes a number of built-in functions, including bidirectional file transfer and process execution. Upload yara and search for signatures or upload your own Powershell scripts to run scripted actions locally. It does not matter where the sensor is currently located - inside the corporate LAN or at Starbucks, if the sensor is pushing data to the Carbon Black server, the Sensor API can be used for investigations.

Versioning

The Carbon Black API is versioned. A new API revision is released in lockstep with each release of the Carbon Black Enterprise Server.

Previous version documentation can be found using git tags.

About

Carbonblack Live Response from the comfort of your own terminal

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages