Interface with multiple Carbon Black environments using a command line
Published by Sean McFeely
View source code for this contribution
CbInterface is a command line tool for interfacing with multiple Carbon Black environments to perform analysis and live response functions.
Primarily supports Carbon Black EDR (Response) and Carbon Black Cloud Enterprise EDR (Threathunter), however, a lot of functionality should also work with Carbon Black Cloud Enterprise Standard (Defense).
See the github repo for additional instructions for setup and functionality.