SOCMaster: Get Info on OS Commands, IPs, Domains, URLs, Hashes, Windows Events and Registry Keys
Add-on stats
Ranking
Other platforms
Add-on summary
Highlight, click, and get the information of IOCs on your browser tab!
Swiftly transform data into actionable intelligence by enabling threat hunters, SOC/cybersecurity analysts, system administrators, or incident responders to display an artifact's reputation, context, and documentation from the browser tab of the SIEM, EDR, or any other webpage.
Searchable artifacts are IP addresses, Domains, URLs, File Hashes, Operating System commands and Binaries, File Names, Windows Event IDs, Registry Keys, and any string of characters.
This tool aims to increase the productivity and efficiency of threat hunting activities, reduce alert triage time, improve investigation quality by allowing analysts to quickly enrich context to events, and to automate commonly searched items by SOC teams.
============================== USAGE
- From the web browser, select or highlight an artifact and right-click
- Select "SOCMaster"
- Click one of the options available
Add-on safety
Risk impact
SOCMaster requires a few sensitive permissions. Exercise caution before installing.
Risk likelihood
SOCMaster has earned a fairly good reputation and likely can be trusted.