|
|
|
@ -77,7 +77,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -148,13 +153,13 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--46498844-7689-4e7b-be25-b119d8401159"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a315ce0b-1211-478e-812a-cd6d3eecc3c1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
@ -194,7 +199,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -265,8 +275,8 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"marking-definition"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"marking-definition--9a4efc30-a7ac-42d0-8776-16f390a0fd44"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:06.779241Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"marking-definition--4b8e86b5-d505-46a4-91b4-a8db17f4ff4d"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:50.587649Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"definition_type"</span><span class=\"p\">:</span> <span class=\"s2\">"statement"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"definition"</span><span class=\"p\">:</span> <span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"statement"</span><span class=\"p\">:</span> <span class=\"s2\">"Copyright 2017, Example Corp"</span>\n",
|
|
|
|
@ -308,7 +318,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -379,15 +394,15 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--75d66696-9960-4229-ba89-2caac50891b3"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:29.80259Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:29.80259Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--91ed23a6-c5f0-4b16-8369-64cf39f974bf"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:52.602254Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:52.602254Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:29.80259Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:52.602254Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--9a4efc30-a7ac-42d0-8776-16f390a0fd44"</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--4b8e86b5-d505-46a4-91b4-a8db17f4ff4d"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
|
"<span class=\"p\">}</span>\n",
|
|
|
|
|
"</pre></div>\n"
|
|
|
|
@ -416,7 +431,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -487,13 +507,13 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--757ea853-138c-44e2-bb00-e78eebfaa378"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:43.703563Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:43.703563Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--42ae262e-4839-4c1a-a50a-3a6690623a9d"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:54.207797Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:54.207797Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:56:43.703563Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:54.207797Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
@ -525,13 +545,18 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 8,
|
|
|
|
|
"execution_count": 7,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -602,15 +627,15 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"malware"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"malware--1752bbec-765a-4711-a304-f0e92ca902ae"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:21:07.148194Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:21:07.148194Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"malware--2658ac6a-44e9-44ea-8c8a-d67abae4d0d5"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:56.556801Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:56.556801Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"name"</span><span class=\"p\">:</span> <span class=\"s2\">"Poison Ivy"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"description"</span><span class=\"p\">:</span> <span class=\"s2\">"A ransomware related to ..."</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"is_family"</span><span class=\"p\">:</span> <span class=\"kc\">false</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"granular_markings"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"marking_ref"</span><span class=\"p\">:</span> <span class=\"s2\">"marking-definition--9a4efc30-a7ac-42d0-8776-16f390a0fd44"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"marking_ref"</span><span class=\"p\">:</span> <span class=\"s2\">"marking-definition--4b8e86b5-d505-46a4-91b4-a8db17f4ff4d"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"selectors"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"description"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
@ -629,7 +654,7 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 8,
|
|
|
|
|
"execution_count": 7,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -662,7 +687,7 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 9,
|
|
|
|
|
"execution_count": 8,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
@ -706,13 +731,18 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 10,
|
|
|
|
|
"execution_count": 9,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -783,16 +813,16 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--46498844-7689-4e7b-be25-b119d8401159"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:21:39.898475Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a315ce0b-1211-478e-812a-cd6d3eecc3c1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:00:01.165749Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--9a4efc30-a7ac-42d0-8776-16f390a0fd44"</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--4b8e86b5-d505-46a4-91b4-a8db17f4ff4d"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
|
"<span class=\"p\">}</span>\n",
|
|
|
|
|
"</pre></div>\n"
|
|
|
|
@ -801,7 +831,7 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 10,
|
|
|
|
|
"execution_count": 9,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -820,13 +850,18 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 11,
|
|
|
|
|
"execution_count": 10,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -897,13 +932,13 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--46498844-7689-4e7b-be25-b119d8401159"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:21:43.529702Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a315ce0b-1211-478e-812a-cd6d3eecc3c1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:00:03.00911Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
@ -914,14 +949,14 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 11,
|
|
|
|
|
"execution_count": 10,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
|
],
|
|
|
|
|
"source": [
|
|
|
|
|
"indicator5 = indicator4.remove_markings(marking_definition)\n",
|
|
|
|
|
"print(indicator5)"
|
|
|
|
|
"print(indicator5.serialize(pretty=True))"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
@ -933,13 +968,18 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 12,
|
|
|
|
|
"execution_count": 11,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1010,16 +1050,16 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--46498844-7689-4e7b-be25-b119d8401159"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:21:47.703212Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a315ce0b-1211-478e-812a-cd6d3eecc3c1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:00:04.531083Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--9a4efc30-a7ac-42d0-8776-16f390a0fd44"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--34098fce-860f-48ae-8e50-ebd3cc5e41da"</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--34098fce-860f-48ae-8e50-ebd3cc5e41da"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--4b8e86b5-d505-46a4-91b4-a8db17f4ff4d"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
|
"<span class=\"p\">}</span>\n",
|
|
|
|
|
"</pre></div>\n"
|
|
|
|
@ -1028,7 +1068,7 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 12,
|
|
|
|
|
"execution_count": 11,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1037,7 +1077,7 @@
|
|
|
|
|
"from stix2 import TLP_GREEN\n",
|
|
|
|
|
"\n",
|
|
|
|
|
"indicator6 = indicator5.set_markings([TLP_GREEN, marking_definition])\n",
|
|
|
|
|
"print(indicator6)"
|
|
|
|
|
"print(indicator6.serialize(pretty=True))"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
@ -1049,13 +1089,18 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 13,
|
|
|
|
|
"execution_count": 12,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1126,13 +1171,13 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--46498844-7689-4e7b-be25-b119d8401159"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:21:53.287178Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a315ce0b-1211-478e-812a-cd6d3eecc3c1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:00:06.512465Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T20:55:56.088861Z"</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T13:59:48.911595Z"</span>\n",
|
|
|
|
|
"<span class=\"p\">}</span>\n",
|
|
|
|
|
"</pre></div>\n"
|
|
|
|
|
],
|
|
|
|
@ -1140,14 +1185,14 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 13,
|
|
|
|
|
"execution_count": 12,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
|
],
|
|
|
|
|
"source": [
|
|
|
|
|
"indicator7 = indicator5.clear_markings()\n",
|
|
|
|
|
"print(indicator7)"
|
|
|
|
|
"print(indicator7.serialize(pretty=True))"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
@ -1168,17 +1213,17 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 14,
|
|
|
|
|
"execution_count": 13,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/plain": [
|
|
|
|
|
"['marking-definition--9a4efc30-a7ac-42d0-8776-16f390a0fd44',\n",
|
|
|
|
|
" 'marking-definition--34098fce-860f-48ae-8e50-ebd3cc5e41da']"
|
|
|
|
|
"['marking-definition--34098fce-860f-48ae-8e50-ebd3cc5e41da',\n",
|
|
|
|
|
" 'marking-definition--4b8e86b5-d505-46a4-91b4-a8db17f4ff4d']"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 14,
|
|
|
|
|
"execution_count": 13,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1196,7 +1241,7 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 15,
|
|
|
|
|
"execution_count": 14,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
@ -1205,7 +1250,7 @@
|
|
|
|
|
"['marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9']"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 15,
|
|
|
|
|
"execution_count": 14,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1225,7 +1270,7 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 16,
|
|
|
|
|
"execution_count": 15,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
@ -1234,7 +1279,7 @@
|
|
|
|
|
"['marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9']"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 16,
|
|
|
|
|
"execution_count": 15,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1252,7 +1297,7 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 17,
|
|
|
|
|
"execution_count": 16,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
@ -1261,7 +1306,7 @@
|
|
|
|
|
"True"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 17,
|
|
|
|
|
"execution_count": 16,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1272,7 +1317,7 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 18,
|
|
|
|
|
"execution_count": 17,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
@ -1281,7 +1326,7 @@
|
|
|
|
|
"True"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 18,
|
|
|
|
|
"execution_count": 17,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1292,7 +1337,7 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"execution_count": 18,
|
|
|
|
|
"metadata": {
|
|
|
|
|
"scrolled": true
|
|
|
|
|
},
|
|
|
|
@ -1303,7 +1348,7 @@
|
|
|
|
|
"False"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"execution_count": 18,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1323,13 +1368,18 @@
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"cell_type": "code",
|
|
|
|
|
"execution_count": 20,
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"outputs": [
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1400,9 +1450,9 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--f4004de9-a6d9-4c7b-823e-3d8199173c09"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a2fd263a-ec46-4fff-84af-27419f0b9f15"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"description"</span><span class=\"p\">:</span> <span class=\"s2\">"Una descripcion sobre este indicador"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"indicator_types"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"malware"</span>\n",
|
|
|
|
@ -1410,7 +1460,7 @@
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">],</span>\n",
|
|
|
|
@ -1435,14 +1485,19 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 20,
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1517,14 +1572,19 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 20,
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1599,14 +1659,19 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 20,
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1681,7 +1746,7 @@
|
|
|
|
|
"<IPython.core.display.HTML object>"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
"execution_count": 20,
|
|
|
|
|
"execution_count": 19,
|
|
|
|
|
"metadata": {},
|
|
|
|
|
"output_type": "execute_result"
|
|
|
|
|
}
|
|
|
|
@ -1706,7 +1771,7 @@
|
|
|
|
|
" }\n",
|
|
|
|
|
" ]\n",
|
|
|
|
|
")\n",
|
|
|
|
|
"print(v21_indicator)\n",
|
|
|
|
|
"print(v21_indicator.serialize(pretty=True))\n",
|
|
|
|
|
"\n",
|
|
|
|
|
"# Gets both lang and marking_ref markings for 'description'\n",
|
|
|
|
|
"print(v21_indicator.get_markings('description'))\n",
|
|
|
|
@ -1733,7 +1798,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1804,9 +1874,9 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--f4004de9-a6d9-4c7b-823e-3d8199173c09"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:14.54482Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a2fd263a-ec46-4fff-84af-27419f0b9f15"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:03:11.817032Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"description"</span><span class=\"p\">:</span> <span class=\"s2\">"Una descripcion sobre este indicador"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"indicator_types"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"malware"</span>\n",
|
|
|
|
@ -1814,7 +1884,7 @@
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">]</span>\n",
|
|
|
|
@ -1831,7 +1901,8 @@
|
|
|
|
|
}
|
|
|
|
|
],
|
|
|
|
|
"source": [
|
|
|
|
|
"print(v21_indicator.clear_markings(\"description\")) # By default, both types of markings will be removed"
|
|
|
|
|
"# By default, both types of markings will be removed\n",
|
|
|
|
|
"print(v21_indicator.clear_markings(\"description\").serialize(pretty=True))"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
@ -1842,7 +1913,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -1913,9 +1989,9 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--f4004de9-a6d9-4c7b-823e-3d8199173c09"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:39.298138Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a2fd263a-ec46-4fff-84af-27419f0b9f15"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:03:24.701927Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"description"</span><span class=\"p\">:</span> <span class=\"s2\">"Una descripcion sobre este indicador"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"indicator_types"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"malware"</span>\n",
|
|
|
|
@ -1923,7 +1999,7 @@
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">],</span>\n",
|
|
|
|
@ -1949,7 +2025,7 @@
|
|
|
|
|
],
|
|
|
|
|
"source": [
|
|
|
|
|
"# If lang is False, no lang markings will be removed\n",
|
|
|
|
|
"print(v21_indicator.clear_markings(\"description\", lang=False))"
|
|
|
|
|
"print(v21_indicator.clear_markings(\"description\", lang=False).serialize(pretty=True))"
|
|
|
|
|
]
|
|
|
|
|
},
|
|
|
|
|
{
|
|
|
|
@ -1960,7 +2036,12 @@
|
|
|
|
|
{
|
|
|
|
|
"data": {
|
|
|
|
|
"text/html": [
|
|
|
|
|
"<style type=\"text/css\">.highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
"<style type=\"text/css\">pre { line-height: 125%; }\n",
|
|
|
|
|
"td.linenos .normal { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos { color: inherit; background-color: transparent; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"td.linenos .special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
"span.linenos.special { color: #000000; background-color: #ffffc0; padding-left: 5px; padding-right: 5px; }\n",
|
|
|
|
|
".highlight .hll { background-color: #ffffcc }\n",
|
|
|
|
|
".highlight { background: #f8f8f8; }\n",
|
|
|
|
|
".highlight .c { color: #408080; font-style: italic } /* Comment */\n",
|
|
|
|
|
".highlight .err { border: 1px solid #FF0000 } /* Error */\n",
|
|
|
|
@ -2031,9 +2112,9 @@
|
|
|
|
|
".highlight .il { color: #666666 } /* Literal.Number.Integer.Long */</style><div class=\"highlight\"><pre><span></span><span class=\"p\">{</span>\n",
|
|
|
|
|
" <span class=\"nt\">"type"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"spec_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--f4004de9-a6d9-4c7b-823e-3d8199173c09"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:42.684794Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"id"</span><span class=\"p\">:</span> <span class=\"s2\">"indicator--a2fd263a-ec46-4fff-84af-27419f0b9f15"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"created"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"modified"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:03:29.751985Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"description"</span><span class=\"p\">:</span> <span class=\"s2\">"Una descripcion sobre este indicador"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"indicator_types"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"malware"</span>\n",
|
|
|
|
@ -2041,7 +2122,7 @@
|
|
|
|
|
" <span class=\"nt\">"pattern"</span><span class=\"p\">:</span> <span class=\"s2\">"[file:hashes.md5 = 'd41d8cd98f00b204e9800998ecf8427e']"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_type"</span><span class=\"p\">:</span> <span class=\"s2\">"stix"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"pattern_version"</span><span class=\"p\">:</span> <span class=\"s2\">"2.1"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2020-06-24T21:35:08.630228Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"valid_from"</span><span class=\"p\">:</span> <span class=\"s2\">"2021-04-09T14:02:31.991141Z"</span><span class=\"p\">,</span>\n",
|
|
|
|
|
" <span class=\"nt\">"object_marking_refs"</span><span class=\"p\">:</span> <span class=\"p\">[</span>\n",
|
|
|
|
|
" <span class=\"s2\">"marking-definition--f88d31f6-486f-44da-b317-01333bde0b82"</span>\n",
|
|
|
|
|
" <span class=\"p\">],</span>\n",
|
|
|
|
@ -2067,7 +2148,7 @@
|
|
|
|
|
],
|
|
|
|
|
"source": [
|
|
|
|
|
"# If marking_ref is False, no marking-definition markings will be removed\n",
|
|
|
|
|
"print(v21_indicator.clear_markings(\"description\", marking_ref=False))"
|
|
|
|
|
"print(v21_indicator.clear_markings(\"description\", marking_ref=False).serialize(pretty=True))"
|
|
|
|
|
]
|
|
|
|
|
}
|
|
|
|
|
],
|
|
|
|
@ -2087,7 +2168,7 @@
|
|
|
|
|
"name": "python",
|
|
|
|
|
"nbconvert_exporter": "python",
|
|
|
|
|
"pygments_lexer": "ipython3",
|
|
|
|
|
"version": "3.9.0a6"
|
|
|
|
|
"version": "3.9.2"
|
|
|
|
|
}
|
|
|
|
|
},
|
|
|
|
|
"nbformat": 4,
|
|
|
|
|