Commit Graph

1190 Commits (253fbed3561e4cd280a06688dccc7c3c72607867)

Author SHA1 Message Date
Deborah Servili f3c02ad195
merge black ruby duplicate (delete the newer) 2018-08-14 12:20:29 +02:00
Alexandre Dulaunoy 65a8c7c132
Merge pull request #247 from Delta-Sierra/master
New clusters
2018-08-14 12:13:23 +02:00
Deborah Servili 31142b41ac
merge 2018-08-14 12:09:21 +02:00
Deborah Servili a28c50203e
fix 2018-08-14 12:07:12 +02:00
Deborah Servili 2081dc1627
resolve merge confilct -I hope- 2018-08-14 12:06:42 +02:00
Deborah Servili 4e911b2c17
Merge branch 'master' into master 2018-08-14 11:43:59 +02:00
Deborah Servili 7829e0fab6
fix typo and missing uuid 2018-08-14 11:41:06 +02:00
Deborah Servili a646a835fe
add Rosenbridge backdoor 2018-08-14 10:09:26 +02:00
Christophe Vandeplas 4d232c56e0 cosmetic change 2018-08-14 09:38:38 +02:00
Christophe Vandeplas 88162aa44e chg: [mapping] Generated automatic mapping between clusters 2018-08-14 09:35:22 +02:00
Christophe Vandeplas 5478f0aa45 no change: dump files with sort_keys=True
This is needed to keep better track of the changes when other tools load and save the json files.
2018-08-13 17:06:29 +02:00
Christophe Vandeplas 021107e597 fix: [threat-actor] added missing uuids 2018-08-13 17:00:40 +02:00
Deborah Servili b100b0cedd
add KEYPASS ransomware 2018-08-13 15:50:09 +02:00
Deborah Servili f1dcb05576
Merge pull request #246 from Delta-Sierra/master
add Skygofree android spyware
2018-08-13 12:28:30 +02:00
Deborah Servili 56fe9eb63c
add Skygofree android spyware 2018-08-13 12:20:16 +02:00
Alexandre Dulaunoy 9059a85eed
chg: [tool] KEYMARBLE malware added
ref: https://www.us-cert.gov/ncas/analysis-reports/AR18-221A
2018-08-11 16:14:39 +02:00
Alexandre Dulaunoy e8ffc75d4a
Merge pull request #245 from Delta-Sierra/master
add tools used by SamSam
2018-08-09 16:04:04 +02:00
Deborah Servili 27805ca768
add tools used by SamSam 2018-08-09 15:55:36 +02:00
Deborah Servili 37396ed6ca
Merge pull request #244 from Delta-Sierra/master
add ransomwares
2018-08-09 14:31:38 +02:00
Deborah Servili 597e7bacb9
add ransomwares 2018-08-09 13:53:04 +02:00
Alexandre Dulaunoy 6620b5575a
fix: [threat-actor] related is an array of JSON objects 2018-08-09 07:53:42 +02:00
Alexandre Dulaunoy 7d4ff9730d
fix: [JSON schema] related element is an array of JSON objects 2018-08-09 07:52:47 +02:00
Alexandre Dulaunoy cff9ec6905
Merge branch 'Delta-Sierra-master' 2018-08-08 16:39:24 +02:00
Alexandre Dulaunoy 1429b60555
chg: [threat-actor] jq document 2018-08-08 16:38:39 +02:00
Alexandre Dulaunoy 0af22724a6
chg: [schema clusters] fix the JSON indentation 2018-08-08 16:37:59 +02:00
Alexandre Dulaunoy e1c0164d8b
Merge branch 'master' of https://github.com/Delta-Sierra/misp-galaxy into Delta-Sierra-master 2018-08-08 16:36:46 +02:00
Deborah Servili ebc7287e14
update schema 2018-08-08 16:12:29 +02:00
Deborah Servili 803b75647e
update schema 2018-08-08 16:05:11 +02:00
Deborah Servili 33a300b773
tags is an array 2018-08-08 15:59:44 +02:00
Deborah Servili b857be9cab
relationship system - v2 2018-08-08 15:51:22 +02:00
Deborah Servili 050a864be0
update some clusters and try to add a relationship system 2018-08-08 14:20:38 +02:00
Deborah Servili f6f41713c5
Merge pull request #242 from Delta-Sierra/master
add RedAlpha campaigns
2018-08-07 14:02:23 +02:00
Deborah Servili 84adb50f0f
add RedAlpha campaigns 2018-08-07 13:55:05 +02:00
Alexandre Dulaunoy bdceed0b68
Merge pull request #239 from Delta-Sierra/master
more clusters
2018-08-06 09:19:11 +02:00
Deborah Servili b7de06ffcc
delete forgotten conflict marker 2018-08-06 08:49:44 +02:00
Deborah Servili 010df0a2b6
resolve merge conflict 2018-08-06 08:48:21 +02:00
Deborah Servili def23775e5
resolve merge conflict 2018-08-06 08:45:03 +02:00
Andras Iklody 38f559a3ff
Merge pull request #241 from 3c7/threat-actor/darkhydrus
Added DarkHydrus
2018-08-06 08:39:16 +02:00
Nils Kuhnert ab49b58b02
Added DarkHydrus 2018-08-06 08:33:34 +02:00
Alexandre Dulaunoy 5b35495e40
Merge pull request #240 from 3c7/fix/typos
Two small typos
2018-08-05 15:54:44 +02:00
Nils Kuhnert 4654f51889
Two small typos 2018-08-05 15:09:38 +02:00
Deborah Servili e5b185deee
Merge branch 'master' into master 2018-08-03 16:11:16 +02:00
Deborah Servili 35aa8ba34e
delete duplicate gorgon group 2018-08-03 16:08:43 +02:00
Deborah Servili a9a71ef84c
more clusters 2018-08-03 15:58:54 +02:00
Alexandre Dulaunoy b3701b6b34
chg: [threat-actor] The Gordon Group added
ref: https://researchcenter.paloaltonetworks.com/2018/08/unit42-gorgon-group-slithering-nation-state-cybercrime/
2018-08-03 10:26:52 +02:00
Alexandre Dulaunoy a0dfdd65ae
chg: [rat] Hallaj PRO Rat added
ref: https://securelist.com/attacks-on-industrial-enterprises-using-rms-and-teamviewer/87104/
misp-event: 5b63f5e4-bf24-4f46-8340-48fc02de0b81
2018-08-03 08:34:55 +02:00
Alexandre Dulaunoy 3da005a3f3
fix: jq all the things(tm) 2018-08-02 15:15:47 +02:00
Alexandre Dulaunoy 1fdf47d509
fix: [threat-actor] synonyms are always arraus 2018-08-02 15:13:18 +02:00
Alexandre Dulaunoy ece56dff38
chg: [threat-actor] leafminer - RASPITE added 2018-08-02 15:08:39 +02:00
Alexandre Dulaunoy c232b3dd5a
chg: [tool] added based on Carbanak tooling description from Crowdstrike
ref: https://www.crowdstrike.com/blog/arrests-put-new-focus-on-carbon-spider-adversary-group/
2018-08-02 10:30:47 +02:00