Commit Graph

84 Commits (0bb1f48ad632865c3c18fb48a8a62efaf1f38e73)

Author SHA1 Message Date
Alexandre Dulaunoy 1c8880b3bb
new: [tools] Sigma export tool added based on https://github.com/jstnk9/MISP/pull/1 2023-01-06 16:00:37 +01:00
Andras Iklody 13dbf70d77
fix: [att&ck converter] allow multiple external IDs
- There are in some cases external ID references to CAPEC in addition to ATT&CK in techniques
- convert external ID to a list rather than a single string

- as reported by @SYNchroACK
- as hurried along by a disappointed @deresz
2022-11-28 12:25:25 +01:00
Christophe Vandeplas 7b3670c4ee chg: [tool] make mitre script easier to find 2022-09-27 07:28:00 +02:00
Alexandre Dulaunoy eacab6ca27
new: [malpedia] remove duplicate UUIDs objects (coming from Malpedia API) 2022-09-26 10:58:09 +02:00
Christophe Vandeplas 0609974545 fix: [atrm] fix bug in authors 2022-09-23 15:39:49 +02:00
Christophe Vandeplas b011ddee5b fix: [360net] fixes null entries in lists 2022-09-13 22:12:51 +02:00
Christophe Vandeplas c5a5fa7cfa chg: [360net] add 360.net APT list fixes #764 2022-09-13 21:48:16 +02:00
Christophe Vandeplas 1369756810 chg: [atrm] Add Azure Threat Research Matrix Galaxy and generation script 2022-08-06 21:19:31 +02:00
marjatech 587dc8560b add script to automate malpedia update 2022-07-04 14:24:34 +02:00
Christophe Vandeplas 4a469299fd [mitre] update sorting algo
will make future ATT&CK updates less noisy in the git diff
2022-05-25 21:00:57 +02:00
Alexandre Dulaunoy c673360afa
chg: [tools] add skip list in index generation (to focus on intelligence/cyber) 2022-04-04 11:21:46 +02:00
Alexandre Dulaunoy 21478c0d8d
chg: [adoc] updated with the non-cyber releated lists 2022-04-04 11:17:40 +02:00
Alexandre Dulaunoy 2d8eff9de9
chg: [tools] adoc export now includes a skip list 2022-03-25 10:12:48 +01:00
Alexandre Dulaunoy 2c586d2f96
chg: [tools] updated for the new website 2022-02-01 11:05:25 +01:00
Alexandre Dulaunoy a0804c1194
fix: [tools] Generate index Markdown layout updated 2022-01-07 16:55:29 +01:00
Alexandre Dulaunoy d51eecdab8
new: [tools] Generate markdown index 2022-01-07 12:55:50 +01:00
Alexandre Dulaunoy adb467743e
chg: [tools] add a reference to the relationship graph 2022-01-06 19:01:40 +01:00
Christophe Vandeplas aeb5719448 chg: [att&ck] update to ATT&CK v10 2021-10-22 14:34:25 +02:00
Alexandre Dulaunoy 0ccbdb862b
chg: [tea] first version 2020-10-23 11:16:50 +02:00
Christophe Vandeplas 2334676e64 chg: [att&ck] no tag for subtechnique 2020-10-18 20:14:05 +02:00
VVX7 5e54fc2022 chg: [dev] gen_defence_university.py no longer outputs empty strings, lists 2020-08-22 13:01:20 -04:00
VVX7 b4c3ffc8eb new: [dev] add ASPI's China Defence University Tracker.
Thanks to Cormac Doherty for writing the web scraper! To update the galaxy run the included gen_defence_university.py script.

"The China Defence Universities Tracker is a database of Chinese institutions engaged in military or security-related science and technology research. It was created by ASPI’s International Cyber Policy Centre.

It includes entries on nearly 100 civilian universities, 50 People’s Liberation Army institutions, China’s nuclear weapons program, three Ministry of State Security institutions, four Ministry of Public Security universities, and 12 state-owned defence industry conglomerates.

The Tracker is a tool to inform universities, governments and scholars as they engage with the entities from the People’s Republic of China. It aims to build understanding of the expansion of military-civil fusion—the Chinese government’s policy of integrating military and civilian efforts—into the education sector.

The Tracker should be used to inform due diligence of Chinese institutions. However, the fact that an institution is not included here does not indicate that it should not raise risks or is not involved in defence research. Similarly, entries in the database may not reflect the full range and nature of an institution’s defence and security links." - ASPI (https://unitracker.aspi.org.au/about/)
2020-08-21 11:24:22 -04:00
Christophe Vandeplas d32022b241 fix: [attack] fixes old MITRE relationships not being removed 2019-10-27 21:06:26 +01:00
Christophe Vandeplas 76668d0ebb fix: [adoc] ignore deprecated galaxies 2019-10-27 18:35:44 +01:00
Christophe Vandeplas 4ab9bbbfa3 chg: [attack] update to latest ATT&CK data 2019-10-25 10:12:41 +02:00
Christophe Vandeplas eb594cba0f fix: [misinfosec] fixes inconsistent filename 2019-10-20 18:53:02 +02:00
VVX7 e4998efec9 chg: [galaxy] added AMITT galaxy/cluster generator script 2019-10-08 13:52:08 -04:00
Deborah Servili 5c35bd01de
try to please CodeFactor 2019-09-26 14:43:25 +02:00
Deborah Servili 1ea212612a
add script used to create region galaxy (Not optimised or anything) 2019-09-26 13:27:31 +02:00
Sebastian Wagner c93103bba1
Add test for empty strings
Should prevent MISP/misp-galaxy#438
2019-08-30 10:08:16 +02:00
Alexandre Dulaunoy 6e19d21d3a
chg: [tools] fix the attribution confidence level 2019-03-19 16:49:19 +01:00
Deborah Servili ecf76178e7
add attribution-confidence attribute to threat-actor 2019-03-11 11:18:12 +01:00
Christophe Vandeplas db2dbc7cb6 fix: [tool] MITRE conversion script 2018-12-09 09:14:56 +01:00
Christophe Vandeplas bdfefb4499 MITRE galaxy - initial conversion and migration script
this is not fully working yet !
2018-12-09 08:09:53 +01:00
Christophe Vandeplas bd1f22ad7d pep8, include the misp-galaxy tag in the output 2018-12-02 11:35:49 +01:00
Alexandre Dulaunoy ca1bc24f65
fix: [graph.py] small fix to make it work 2018-10-19 14:59:09 +02:00
Christophe Vandeplas bceee0f03d tool: experimental graphing tool 2018-10-19 14:30:05 +02:00
Christophe Vandeplas 1e90cac717 fix: intrusion is an actor and not a tool 2018-10-17 18:17:33 +02:00
Christophe Vandeplas c51ba2e868 chg: MITRE relationships included in the respective cluster. 2018-10-17 08:08:58 +02:00
Christophe Vandeplas c49b3242a5 chg: mappings are now in the generated adoc
plus massive performance improvement
2018-10-16 16:19:16 +02:00
Christophe Vandeplas f14d616e22 chg: magical mapping with malpedia 2018-10-12 11:00:00 +02:00
Christophe Vandeplas 65eb66a739 fix: automatically fix missing uuids 2018-10-12 10:55:24 +02:00
Davide Arcuri 253fbed356 Added Malpedia Galaxy
based on malpedia git repo

Co-Authored-By: garanews <garanews@users.noreply.github.com>
2018-10-05 14:30:31 +02:00
Christophe Vandeplas 4d232c56e0 cosmetic change 2018-08-14 09:38:38 +02:00
Christophe Vandeplas 88162aa44e chg: [mapping] Generated automatic mapping between clusters 2018-08-14 09:35:22 +02:00
Alexandre Dulaunoy bee6edc6a8
fix: cleanup the link generation based on type instead of title (Thanks
to Juan Rocha for the report)
2018-06-22 12:56:26 +02:00
Deborah Servili 2896deff13 fix typo in pre-attack-relationship script - thanks @Terrtia 2018-05-28 13:53:26 +02:00
Alexandre Dulaunoy 2f99eb4e3f
add: mitre-attack namespace for all the ATT&CK galaxies 2018-05-20 09:36:35 +02:00
Deborah Servili d82a76c08f fix scripts for nobile and pre attack attack pattern 2018-05-19 13:09:30 +02:00
Deborah Servili 730353f63d update mitre galaxies - add external id and killchain 2018-05-19 12:56:20 +02:00