MISP / misp-rfcLinks
Specifications used in the MISP project including MISP core format
☆52Updated 3 months ago
Alternatives and similar repositories for misp-rfc
Users that are interested in misp-rfc are comparing it to the libraries listed below
Sorting:
- Definition, description and relationship types of MISP objects☆101Updated 3 weeks ago
- Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists☆33Updated 2 weeks ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- References for FIRST CTI 2019 Symposium presentation☆23Updated 6 years ago
- ☆15Updated 7 years ago
- Hunting IOCs all day every day...☆86Updated 2 years ago
- This project contains code for comparing or ranking APT capabilities and operational capacity. The metrics are meant to quantify, rank, o…☆35Updated 6 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- OASIS TC Open Repository: Match STIX content against STIX patterns☆46Updated 3 years ago
- Fang and defang indicators of compromise. You can test this project in a GUI here: http://ioc-fanger.hightower.space .☆65Updated 2 years ago
- Python module to use the MISP Taxonomies☆30Updated last month
- Imports Alienvault OTX pulses to a MISP instance☆53Updated 4 years ago
- CyCAT.org API back-end server including crawlers☆29Updated 2 years ago
- CyCAT.org taxonomies☆15Updated 4 years ago
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆20Updated 3 years ago
- Best practices in threat intelligence☆48Updated 2 years ago
- A utility repo to assist with converting between MISP and STIX formats☆69Updated 4 years ago
- Client API to query any Passive DNS implementation following the Passive DNS - Common Output Format.☆82Updated 7 months ago
- misp-cloud - Cloud-ready images of MISP☆74Updated 3 years ago
- Utility for parsing Bro log files into CSV or JSON format☆41Updated 2 years ago
- OASIS Cyber Threat Intelligence (CTI) TC Open Repository: Convert STIX 1.2 XML to STIX 2.x JSON☆52Updated last year
- Passive DNS Common Output Format☆37Updated last year
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 8 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆110Updated 7 years ago
- Open source training materials for law-enforcement and organisations interested in DFIR.☆61Updated 4 months ago
- Scripts for accessing and transforming cyber threat intelligence☆26Updated 9 years ago
- Converting data from services like Censys and Shodan to a common data model☆50Updated 3 months ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)☆103Updated 3 months ago