MISP / misp-rfcLinks
Specifications used in the MISP project including MISP core format
☆52Updated 2 months ago
Alternatives and similar repositories for misp-rfc
Users that are interested in misp-rfc are comparing it to the libraries listed below
Sorting:
- Definition, description and relationship types of MISP objects☆100Updated last week
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆33Updated last week
- References for FIRST CTI 2019 Symposium presentation☆23Updated 6 years ago
- Python module to use the MISP Taxonomies☆29Updated last week
- A collection of typical false positive indicators☆55Updated 4 years ago
- OASIS Cyber Threat Intelligence (CTI) TC Open Repository: Convert STIX 1.2 XML to STIX 2.x JSON☆52Updated last year
- Open source training materials for law-enforcement and organisations interested in DFIR.☆60Updated 4 months ago
- Hunting IOCs all day every day...☆86Updated 2 years ago
- Client API to query any Passive DNS implementation following the Passive DNS - Common Output Format.☆82Updated 6 months ago
- Best practices in threat intelligence☆48Updated 2 years ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆65Updated last year
- intelligence-icons is a collection of icons and diagrams for building training and marketing materials around Intelligence sharing; inclu…☆41Updated 6 years ago
- misp-cloud - Cloud-ready images of MISP☆73Updated 3 years ago
- CyCAT.org taxonomies☆15Updated 4 years ago
- Deploy MISP Project software with Vagrant.☆45Updated 5 years ago
- OASIS TC Open Repository: Match STIX content against STIX patterns☆46Updated 3 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 2 months ago
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆20Updated 3 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- Converting data from services like Censys and Shodan to a common data model☆50Updated 3 months ago
- InvestigationPlaybookSpec☆72Updated 8 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 8 years ago
- A utility repo to assist with converting between MISP and STIX formats☆69Updated 4 years ago
- ☆34Updated 5 years ago
- Imports Alienvault OTX pulses to a MISP instance☆53Updated 4 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆110Updated 7 years ago
- ☆25Updated 3 years ago