User guide of MISP https://www.circl.lu/doc/misp/
 
 
 
Go to file
Sascha Rommelfangen 962e22f9f7
added enforceWarninglist example
2019-05-15 13:28:38 +02:00
administration chg: [doc] Misp Backup documented. Misp threat_id documented 2018-11-28 16:34:58 +09:00
appendices chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
automation new: [doc] Added worker script 2018-11-28 16:39:31 +09:00
book-convention
categories-and-types chg: [datamodel] anonymise type added 2019-02-01 07:25:48 +01:00
connectors Added instructions for modifying some python files 2019-04-15 17:58:12 +08:00
create-event-report
delegation
dev-faq chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
extended-events
faq added enforceWarninglist example 2019-05-15 13:28:38 +02:00
galaxy chg: [dashboard] Added FAQ entry on how to debug misp-dashboard 2019-04-26 06:44:31 +09:00
general-concepts
general-layout
get-your-instance
managing-feeds
misp-object update misp-object chapetr 2019-02-15 15:56:22 +01:00
misp-zmq Hint to error log and python redis installation 2018-12-13 09:51:38 +01:00
modules chg: [doc] Added links to misp-modules installation 2019-04-29 09:37:13 +09:00
noticelist fix various typos in objects 2019-02-15 09:25:48 +01:00
noticelists
pymisp chg: [doc] Added more visual examples for pymisp 2018-11-28 15:51:40 +09:00
quick-start Merge remote-tracking branch 'upstream/master' 2019-04-12 18:53:28 +09:00
requirements
sharing
shortcuts
sightings
styles
taxonomy
translation chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
user-management
using-the-system Removed duplicate help description 2019-04-29 19:15:34 +02:00
warninglists
.gitignore
.travis.yml
GLOSSARY.md chg: [glossary] clarification of the observable definition 2019-04-12 12:05:05 +02:00
README.md chg: [main] references to all format added 2018-12-14 09:34:17 +01:00
SUMMARY.md new: [doc] Added a few more GLOSSARY Items 2019-04-12 18:58:42 +09:00
USAGE.md chg: [doc] Added calibre mention for PDF generation. 2018-11-28 16:37:46 +09:00
book.json chg: [fix] Fixed fontsettings plugin. It must be before CSS invocations. 2018-11-28 15:20:13 +09:00
cover.jpg
publish.sh chg: [shell] Added vague indicators where we are at in the build process. 2018-11-27 18:04:26 +09:00
serve.sh

README.md

description
Introduction to MISP - Open Source Threat Intelligence Platform (previously known as Malware Information Sharing Platform)

Introduction

Build Status

MISP logo

User guide for MISP Malware Information Sharing Platform - An Open Source Threat Intelligence Sharing Platform. This user guide is intended for ICT professionals such as security analysts, security incident handlers, or malware reverse engineers who share threat indicators using MISP or integrate MISP into other security monitoring tools. The user guide includes day-to-day usage of the MISP's graphical user interface along with its automated interfaces API, in order to integrate MISP within a security environment.

Acknowledgement

The MISP user guide is a collaborative effort between all the contributors to MISP including:

and many other contributors especially the ones during the MISP hackathons.

Contributing

We welcome contributions to the MISP book. If you want to contribute, fork the misp-book repository and pull a request with your changes. You can also open issues if you find any errors or propose changes.

Format

MISP book is available in HTML, PDF, ePub and Kindle mobi format.

License

The MISP user guide is dual-licensed under GNU Affero General Public License version 3 and CC-BY-SA 4.0 international.

  • Copyright C 2012 Christophe Vandeplas
  • Copyright C 2012 Belgian Defence
  • Copyright C 2012 NATO / NCIRC
  • Copyright C 2013-2018 Andras Iklody
  • Copyright C 2015-2018 Alexandre Dulaunoy
  • Copyright C 2014-2018 CIRCL - Computer Incident Response Center Luxembourg
  • Copyright C 2018 Camille Schneider
  • Copyright C 2018 Steve Clement