Version 3.0 ReleasedArcOSI is a Python based utility available for Unix or Windows that scrapes several trusted open source intelligence sites for known malicious IP's and domains and streams them into ArcSight CEF format via Syslog for use in your SIEM content. Usage: ./arcosi.py <CEF syslog dest>
|