Commit Graph

784 Commits (74acfacde01918f46a088632a9b69bc0a81ab64f)

Author SHA1 Message Date
iglocska e7a7f30ba2
new: [widget] Eventstream widget and index widget UI added
- EventStream
  - add a lightweight event index to your dashboard
  - configure filters for the events you're interested in (tags, orgs, published)
  - set the number of events to display (limit)
  - set the list of fields it should display (id, orgc, info, tags, threat_level, analysis, date)

- Index widget UI
  - uses the generic index builder
  - build simple index like UIs
2021-02-15 18:10:15 +01:00
Jakub Onderka c999d22930
Merge pull request #6816 from JakubOnderka/filter-event-ids-optimisation
chg: [internal] Small optimisation for filterEventIds
2021-02-10 21:49:14 +01:00
Tom King d59d28eb76 fix: Elasticsearch complains when an IP is an empty string 2021-02-10 09:19:34 +00:00
Jakub Onderka e93767d814 fix: [widget] Typo in MispSystemResourceWidget 2021-02-04 09:39:12 +01:00
Jakub Onderka a368e3196f chg: [internal] Optimise fetching trending tags widget 2021-02-03 20:16:13 +01:00
Jakub Onderka 65156f5f64 fix: [internal] Bump CakePHP to 2.10.24 2021-02-02 22:12:48 +01:00
Jakub Onderka 0da01cc0b0
Merge pull request #6926 from JakubOnderka/faster-cidr-tool
chg: [internal] Optimise CidrTool
2021-01-31 17:42:28 +01:00
Andras Iklody 4254735f38
Merge pull request #6899 from marjatech/smime-signature
fix: generate S/MIME Signature in DETACHED mode
2021-01-29 15:30:08 +01:00
Jakub Onderka 6bd3bdfc3e chg: [internal] Optimise CidrTool 2021-01-29 14:31:13 +01:00
Jakub Onderka df9f1075d5
Merge pull request #6924 from JakubOnderka/cidr-tool
new: [internal] Cidr tool for faster checking CIDR ranges
2021-01-29 09:18:33 +01:00
Jakub Onderka c01028a036 new: [internal] Cidr tool for faster checking CIDR ranges 2021-01-28 19:21:09 +01:00
Jakub Onderka 2ce6d0b240 fix: [internal] Fix some warnings 2021-01-28 14:09:05 +01:00
marjatech 75e36eaa33 switch S/MIME Signature generation to DETACHED mode 2021-01-26 15:39:50 +00:00
Jakub Onderka 5d41fd829d
Merge pull request #6873 from JakubOnderka/event-output
Event output
2021-01-25 19:17:30 +01:00
mokaddem 942b6f1be8
fix: [events:eventGraph] Deleted object reference are no longer shown in the graph
- Fix #6487
2021-01-25 13:58:51 +01:00
mokaddem 149d10fac5
chg: [export:csv] Added support of decaying model. Fix #6734 2021-01-22 11:23:46 +01:00
Jakub Onderka da6d048c67 chg: [internal] Raise memory limit for TmptFileTool to 5 MB 2021-01-21 19:43:27 +01:00
Jakub Onderka ed10d2089e chg: [internal] Generate event to TmpFile 2021-01-21 19:43:27 +01:00
Alexandre Dulaunoy 3800e089ce
Merge branch '2.4' into develop 2021-01-20 10:46:39 +01:00
Alexandre Dulaunoy 9edf4c1890
chg: [pgp] default pgp key server updated to openpgp.circl.lu
openpgp.circl.lu is the replacement keyserver of pgp.circl.lu

Signed-off-by: Alexandre Dulaunoy <a@foo.be>
2021-01-20 10:43:41 +01:00
iglocska f5157ddba3
fix: [S/MIME] don't sign e-mails if no signing key is set
- fixes e-mails not going out on instances where no signing key was provided
2021-01-14 09:23:23 +01:00
Jakub Onderka 8de4a6d731 chg: [sync] Convert connection timeout to exception 2021-01-06 20:07:55 +01:00
Jakub Onderka c5f0aa19f1 new: [sync] Enable compression for server sync 2021-01-06 10:23:00 +01:00
Jakub Onderka 8c686304a0 new: [feed] Support brotli compression 2021-01-05 17:05:58 +01:00
iglocska b19ce97b5a
fix: [S/MIME] don't sign e-mails if no signing key is set
- fixes e-mails not going out on instances where no signing key was provided
2021-01-05 08:55:58 +01:00
Jakub Onderka 355abc05eb chg: [internal] Small optimisation for filterEventIds 2021-01-04 18:30:52 +01:00
Jakub Onderka 479c378fbe
Merge pull request #6804 from JakubOnderka/optimisations-vol2
Optimisations vol2
2020-12-31 12:30:13 +01:00
Jakub Onderka 6e2c15ff60 chg: [distribution-graph] Optimise loading 2020-12-31 09:55:37 +01:00
Alexandre Dulaunoy ad4431f156
Merge branch '2.4' into develop 2020-12-27 17:05:19 +01:00
Alexandre Dulaunoy 71dddf0485
Merge pull request #6747 from legoguy1000/ja3_zeek_intel_rules
Create JA3 Hash Zeek Intel Rules
2020-12-25 23:28:43 +01:00
Jakub Onderka a6b76e70ae chg: [internal] Optimise loading event correlation graph 2020-12-23 12:49:59 +01:00
Jakub Onderka bf27358584 new: [security] Check org list when accessing distribution graph 2020-12-22 23:43:30 +01:00
Jakub Onderka 1a184ebbb5 new: [internal] Allow to output directly TmpFileTool 2020-12-21 21:02:37 +01:00
Steve Clement f6eccb65b1
Merge branch '2.4' into develop 2020-12-21 13:33:26 +09:00
Jakub Onderka e2263d6c56 fix: [eventReport] Replace defanged values 2020-12-19 16:52:57 +01:00
iglocska 06bbde7141
Merge branch 'develop' into 2.4 2020-12-16 11:53:18 +01:00
Jakub Onderka 185d3e0941 fix: [distribution graph] Graph doesn't work for non sync users when event is shared to sharing group 2020-12-13 21:47:14 +01:00
Alex Resnick 0c4f196289 JA3 Zeek Intel Rules 2020-12-11 19:27:27 -06:00
Alex Resnick 8519f0c968 #6355 Create JA3 Hash Suricata Rules 2020-12-11 08:07:57 -06:00
Jakub Onderka a290629fe0
Merge pull request #6699 from folbricht-stripe/s3-fix-writable-check
fix: Don't fail writable attachment dir test for S3
2020-12-07 12:07:03 +01:00
Jakub Onderka 44caab8f48 fix: [pgp] Key info for older GPG versions 2020-12-05 01:07:18 +01:00
iglocska a332e1379c
Merge branch '2.4' into cerebrate 2020-11-30 23:49:40 +01:00
iglocska bcd261cdba
chg: [synctool] added custom model support for the setuphttpsocket() function 2020-11-30 23:37:59 +01:00
iglocska e34b1c29fa
fix: [custompagination tool] hardcoded modelname fixed 2020-11-30 23:37:27 +01:00
mokaddem db1fb361e8
fix: [csvExport] Prevent override when using `includeContext` parameter
Fix #3774
2020-11-25 09:36:49 +01:00
mokaddem 2c29b78098
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-11-25 08:20:39 +01:00
mokaddem 2681138b88
chg: [galaxyCluster:relationsTreeTool] Ignore duplicated cluster UUIDs
- Some default clusters have the same UUID. They are the same entity but
stored in a different cluster package. It should be addressed in the
future
2020-11-25 08:16:06 +01:00
iglocska 75061f6266
Merge branch '2.4' of github.com:MISP/MISP into 2.4 2020-11-25 08:14:33 +01:00
iglocska 71ba725fd1
fix: [text export] cull duplicates after fetching the data
- pros: No more full group by exceptions
        Handles duplicate culling across internally paginated workloads

- cons: The returned dataset's size will not always match the requested count as duplicates are culled
2020-11-25 08:11:28 +01:00
Jakub Onderka 54efe760a4 chg: [internal] Better exception description for PGP key validation 2020-11-24 19:21:22 +01:00
mokaddem 50185e45f0
fix: [eventReport:reportFromEvent] Correctly apply filter conditions
Fix #6631
2020-11-20 10:59:54 +01:00
mokaddem 89f307bd07 Merge branch '2.4' of github.com:MISP/MISP into galaxy-cluster2.0 2020-11-18 09:22:40 +01:00
Jakub Onderka 791dc9deab new: [internal] JSON stream convert 2020-11-17 19:28:59 +01:00
Jakub Onderka db1e7621b2 fix: [internal] MISP update without branch 2020-11-17 15:04:08 +01:00
mokaddem c8462c5791
Merge branch '2.4' of github.com:MISP/MISP into feature-report-from-event 2020-11-17 13:35:40 +01:00
mokaddem 8c87998981
chg: [export:textExport] Filter out deplicated values
Fix #6603 for attribute scope
2020-11-17 12:09:45 +01:00
mokaddem e1f82ba6ee
chg: [eventReport:reportFromEvent] Added support of attributes and objects 2020-11-13 15:59:53 +01:00
mokaddem e3d42ffe2a
new: [eventReport] Report from event 2020-11-13 13:56:28 +01:00
mokaddem 1879bc05b7
Merge branch '2.4' of github.com:MISP/MISP into galaxy-cluster2.0 2020-11-12 09:05:12 +01:00
Jakub Onderka fd82230478 fix: [internal] Do not fetch unnecessary correlations for distribution graph 2020-11-09 14:00:23 +01:00
mokaddem 150b4cb7d1
Merge remote-tracking branch 'origin/2.4' into galaxy-cluster2.0 2020-11-09 10:07:43 +01:00
Jakub Onderka df9687238d
Merge pull request #6529 from JakubOnderka/experimenteal-faster-rest-fetch
chg: [rest] Faster attributes restSearch
2020-11-08 14:16:45 +01:00
Jakub Onderka 4c586c504e
Merge pull request #6490 from JakubOnderka/json-converter-optim
chg: [internal] Slightly optimise JSONConverterTool
2020-11-02 14:30:59 +01:00
Jakub Onderka 9cf7be802d chg: [rest] Faster attributes restSearch 2020-10-30 18:49:48 +01:00
Loïc Jaquemet aeb73ecd37
Remove 'text' from required params from sendExternal
Bug fix, there is no such fields named 'text' in params. It's probably a typo from reading line 309 too fast
2020-10-29 13:36:34 -06:00
Loïc Fortemps 5896081f5f
new: [widgets] button for link (#6489) 2020-10-26 16:42:07 +01:00
Jakub Onderka 2bbff9fb70 chg: [internal] Slightly optimise JSONConverterTool 2020-10-23 15:47:54 +02:00
Jakub Onderka d06d409ca8 new: [av] Use misp-module for AV scanning 2020-10-22 16:38:26 +02:00
Jakub Onderka 49660255fe new: [av] Malware protection for uploaded files 2020-10-22 16:38:07 +02:00
Jakub Onderka 44c688d551 fix: [internal] Remove compressing by ZIP PHP extensions 2020-10-21 19:22:05 +02:00
Jakub Onderka 5e72663aef fix: [resource-widget] Use redisInfo method for getting info 2020-10-21 08:56:57 +02:00
Jakub Onderka ff4c98446a
Merge pull request #6450 from JakubOnderka/client-certificate-info
new: [sync] Show client certificate info in connection test
2020-10-20 10:15:20 +02:00
Jakub Onderka 8723fdcfcc fix: [internal] Check Crypt_GPG version 2020-10-19 14:58:23 +02:00
Jakub Onderka 46ba51a32e new: [sync] Show client certificate info in connection test 2020-10-19 09:57:06 +02:00
Jakub Onderka 6770ba8222 chg: [internal] Faster loading od Distribution graph 2020-10-14 10:20:14 +02:00
Jakub Onderka 10336acf0c chg: [internal] Provide better exception messages for signing and encrypting 2020-10-13 12:28:20 +02:00
Jakub Onderka 5d994f8799
Merge pull request #6425 from JakubOnderka/fix-smime-certificate-validation
fix: [mail] S/MIME certificate validation
2020-10-12 12:09:50 +02:00
Jakub Onderka 80a416a7b5 fix: [mail] S/MIME certificate validation, fixes #6424 2020-10-12 11:37:22 +02:00
Jakub Onderka 2f4d38b2f1 chg: [internal] Cleanup and simplify ShadowAttribute model code 2020-10-11 15:20:20 +02:00
Jakub Onderka 5c16ceb9d4
Merge pull request #6300 from JakubOnderka/validate-gpg-key
Validate gpg key
2020-10-09 23:14:33 +02:00
Jakub Onderka 380fba5405 new: [GPG] Validate fetched GPG key 2020-10-09 16:58:59 +02:00
mokaddem b628e15eb9
Merge remote-tracking branch 'origin/2.4' into feature-event-report 2020-10-09 14:54:47 +02:00
Jakub Onderka 66b0d34337 fix: [freetext] Convert CVE string to uppercase to follow attribute validation 2020-10-06 19:16:52 +02:00
Jakub Onderka 7f7b89edaf chg: [complextype] Support for uppercase hashes 2020-10-02 14:34:04 +02:00
Jakub Onderka fd822ef0c5 chg: [complextype] Speedup hash parsing from CSVs and freetexts 2020-10-02 13:41:43 +02:00
mokaddem eb84b3344f
Merge remote-tracking branch 'origin/2.4' into galaxy-cluster2.0 2020-09-22 12:08:12 +02:00
mokaddem 4408a17dff
Merge remote-tracking branch 'origin/2.4' into feature-event-report 2020-09-22 10:15:22 +02:00
Jakub Onderka 77833be960 chg: [mail] Another code cleanup for alert and contact mails template 2020-09-21 13:17:00 +02:00
mokaddem aba72c2a56
chg: [eventReport] Generic improvements and light integration with
fetchEvent and sync support
2020-09-17 15:06:55 +02:00
Loïc Fortemps ccfcb820f4
fix: [widgets] Adding images by default on the repository (#6298) 2020-09-08 15:46:14 +02:00
iglocska 754a0dafde
chg: [OpenIOC] email type added to the export tool 2020-09-03 12:06:14 +02:00
iglocska 802f813b27
chg: [complex parser] added email as an option for parsed email addresses 2020-09-03 12:05:37 +02:00
iglocska ecd8461d43
chg: [openioc] added email type 2020-09-03 12:05:23 +02:00
iglocska 34d186a2dc
chg: [nids] added email type 2020-09-03 12:05:00 +02:00
iglocska eaeff3ac59
chg: [bro] added email type 2020-09-03 12:04:41 +02:00
Golbark 3fb47d1cce chg: [internal] Using blocklist instead of blacklist 2020-09-01 16:27:36 +02:00
iglocska f82e10d1fb
new: [API] added count returnformat for the REST api, fixes #6233
- simply counts the number of attributes/events found (on each respective scope)
2020-08-31 12:32:28 +02:00
Jakub Onderka 8f806c4f1b
Merge pull request #6214 from JakubOnderka/otp-encryption
fix: [otp] Allow to send encrypted OTP by mail
2020-08-30 11:22:05 +02:00
Loïc Fortemps e0543e2fa2
Feature/achievements widget (#6129)
* Additionnal protection against XSS, the response type defaults to html while it should be JSON.
* new: widget: Achievements widget
* Update AchievementsWidget.php
* Update AchievementsWidget.php
* Visual adjustments, new badges
* i18n
* indentation to MISP convention
* AchievementsWidget minor textual improvements
* Optimized query and fix issue with i18n

Co-authored-by: Steve Clement <steve@localhost.lu>
Co-authored-by: Christophe Vandeplas <christophe@vandeplas.com>
2020-08-24 10:02:15 +02:00
Jakub Onderka 3005ef8f6e fix: [otp] Allow to send encrypted OTP by mail 2020-08-20 19:58:24 +02:00