User guide of MISP https://www.circl.lu/doc/misp/
 
 
 
Go to file
Alexandre Dulaunoy fce2f55a59
chg: [datamodel] anonymise type added
2019-02-01 07:25:48 +01:00
administration clarify disabling is preferred vs removing 2018-11-26 14:42:17 +01:00
appendices chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
automation Document pagination options for /events/restSearch 2018-11-27 11:34:55 +01:00
book-convention chg: [doc] First pass over the general layout chapter to check if everything is documented that is actually implemented as of MISP 2.4.95. Removed obsolete figures. 2018-09-07 19:11:14 +02:00
categories-and-types chg: [datamodel] anonymise type added 2019-02-01 07:25:48 +01:00
create-event-report Editorial changes in README.md concerning Freetext Import option 2018-08-17 16:56:22 +02:00
delegation
dev-faq chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
extended-events - Added place-holder information on exteended events, notice lists and warning lists 2018-05-14 11:06:15 +02:00
faq chg: [faq] how to search for deleted events? 2019-01-17 22:55:53 +01:00
galaxy new: [doc] Added script to generate galaxy section from repo 2018-11-26 15:06:13 +09:00
general-concepts
general-layout chg: [doc] First pass over the general layout chapter to check if everything is documented that is actually implemented as of MISP 2.4.95. Removed obsolete figures. 2018-09-07 19:11:14 +02:00
get-your-instance chg: [doc] Update the get your instance instructions to 2.4.95 2018-09-07 21:39:04 +02:00
managing-feeds
misp-object
misp-zmq Hint to error log and python redis installation 2018-12-13 09:51:38 +01:00
modules - Added place-holder information on exteended events, notice lists and warning lists 2018-05-14 11:06:15 +02:00
noticelists - Added place-holder information on exteended events, notice lists and warning lists 2018-05-14 11:06:15 +02:00
pymisp
quick-start chg: [doc] Added quick sections in tl;dr 2018-09-06 09:04:38 +02:00
requirements chg: [doc] Added ToC 2018-11-01 16:38:48 +09:00
sharing fix: ISO 27010 example community visual exported to PNG 2018-04-08 16:12:32 +02:00
shortcuts Add documentation for shortcuts in MISP. 2018-02-06 10:24:54 -05:00
sightings typo 2018-06-24 16:10:50 -04:00
styles - Added possibility to make page-breaks, 2018-05-10 12:15:28 +09:00
taxonomy Moves Warning List information from taxonomy page. 2018-09-07 14:41:09 +02:00
translation chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
user-management Update pages with password guideline 2018-04-11 18:00:46 +02:00
using-the-system clarification for the IDS flag 2018-11-07 09:10:42 +01:00
warninglists Moves Warning List information from taxonomy page. 2018-09-07 14:41:09 +02:00
.gitignore
.travis.yml chg: [tools] Added serve.sh in case gitbook --watch is broken 2018-09-07 15:09:41 +02:00
GLOSSARY.md chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
README.md chg: [main] references to all format added 2018-12-14 09:34:17 +01:00
SUMMARY.md chg: [doc] Updated various aspects of the Book. Added dev-faq (mostly pointing to GH) 2018-11-17 19:30:59 +09:00
USAGE.md chg: [fix] Fixed fontsettings plugin. It must be before CSS invocations. 2018-11-28 15:20:13 +09:00
book.json chg: [fix] Fixed fontsettings plugin. It must be before CSS invocations. 2018-11-28 15:20:13 +09:00
cover.jpg
publish.sh chg: [shell] Added vague indicators where we are at in the build process. 2018-11-27 18:04:26 +09:00
serve.sh chg: [tools] Added serve.sh in case gitbook --watch is broken 2018-09-07 15:09:41 +02:00

README.md

description
Introduction to MISP - Open Source Threat Intelligence Platform (previously known as Malware Information Sharing Platform)

Introduction

Build Status

MISP logo

User guide for MISP Malware Information Sharing Platform - An Open Source Threat Intelligence Sharing Platform. This user guide is intended for ICT professionals such as security analysts, security incident handlers, or malware reverse engineers who share threat indicators using MISP or integrate MISP into other security monitoring tools. The user guide includes day-to-day usage of the MISP's graphical user interface along with its automated interfaces API, in order to integrate MISP within a security environment.

Acknowledgement

The MISP user guide is a collaborative effort between all the contributors to MISP including:

and many other contributors especially the ones during the MISP hackathons.

Contributing

We welcome contributions to the MISP book. If you want to contribute, fork the misp-book repository and pull a request with your changes. You can also open issues if you find any errors or propose changes.

Format

MISP book is available in HTML, PDF, ePub and Kindle mobi format.

License

The MISP user guide is dual-licensed under GNU Affero General Public License version 3 and CC-BY-SA 4.0 international.

  • Copyright C 2012 Christophe Vandeplas
  • Copyright C 2012 Belgian Defence
  • Copyright C 2012 NATO / NCIRC
  • Copyright C 2013-2018 Andras Iklody
  • Copyright C 2015-2018 Alexandre Dulaunoy
  • Copyright C 2014-2018 CIRCL - Computer Incident Response Center Luxembourg
  • Copyright C 2018 Camille Schneider
  • Copyright C 2018 Steve Clement