Commit Graph

1326 Commits (3a2ac48faaa484e65be3021ad9ba0ebdb67ff171)

Author SHA1 Message Date
Deborah Servili 56fe9eb63c
add Skygofree android spyware 2018-08-13 12:20:16 +02:00
Alexandre Dulaunoy 9059a85eed
chg: [tool] KEYMARBLE malware added
ref: https://www.us-cert.gov/ncas/analysis-reports/AR18-221A
2018-08-11 16:14:39 +02:00
Alexandre Dulaunoy e8ffc75d4a
Merge pull request #245 from Delta-Sierra/master
add tools used by SamSam
2018-08-09 16:04:04 +02:00
Deborah Servili 27805ca768
add tools used by SamSam 2018-08-09 15:55:36 +02:00
Deborah Servili 37396ed6ca
Merge pull request #244 from Delta-Sierra/master
add ransomwares
2018-08-09 14:31:38 +02:00
Deborah Servili 597e7bacb9
add ransomwares 2018-08-09 13:53:04 +02:00
Alexandre Dulaunoy 6620b5575a
fix: [threat-actor] related is an array of JSON objects 2018-08-09 07:53:42 +02:00
Alexandre Dulaunoy 7d4ff9730d
fix: [JSON schema] related element is an array of JSON objects 2018-08-09 07:52:47 +02:00
Alexandre Dulaunoy cff9ec6905
Merge branch 'Delta-Sierra-master' 2018-08-08 16:39:24 +02:00
Alexandre Dulaunoy 1429b60555
chg: [threat-actor] jq document 2018-08-08 16:38:39 +02:00
Alexandre Dulaunoy 0af22724a6
chg: [schema clusters] fix the JSON indentation 2018-08-08 16:37:59 +02:00
Alexandre Dulaunoy e1c0164d8b
Merge branch 'master' of https://github.com/Delta-Sierra/misp-galaxy into Delta-Sierra-master 2018-08-08 16:36:46 +02:00
Deborah Servili ebc7287e14
update schema 2018-08-08 16:12:29 +02:00
Deborah Servili 803b75647e
update schema 2018-08-08 16:05:11 +02:00
Deborah Servili 33a300b773
tags is an array 2018-08-08 15:59:44 +02:00
Deborah Servili b857be9cab
relationship system - v2 2018-08-08 15:51:22 +02:00
Deborah Servili 050a864be0
update some clusters and try to add a relationship system 2018-08-08 14:20:38 +02:00
Deborah Servili f6f41713c5
Merge pull request #242 from Delta-Sierra/master
add RedAlpha campaigns
2018-08-07 14:02:23 +02:00
Deborah Servili 84adb50f0f
add RedAlpha campaigns 2018-08-07 13:55:05 +02:00
Alexandre Dulaunoy bdceed0b68
Merge pull request #239 from Delta-Sierra/master
more clusters
2018-08-06 09:19:11 +02:00
Deborah Servili b7de06ffcc
delete forgotten conflict marker 2018-08-06 08:49:44 +02:00
Deborah Servili 010df0a2b6
resolve merge conflict 2018-08-06 08:48:21 +02:00
Deborah Servili def23775e5
resolve merge conflict 2018-08-06 08:45:03 +02:00
Andras Iklody 38f559a3ff
Merge pull request #241 from 3c7/threat-actor/darkhydrus
Added DarkHydrus
2018-08-06 08:39:16 +02:00
Nils Kuhnert ab49b58b02
Added DarkHydrus 2018-08-06 08:33:34 +02:00
Alexandre Dulaunoy 5b35495e40
Merge pull request #240 from 3c7/fix/typos
Two small typos
2018-08-05 15:54:44 +02:00
Nils Kuhnert 4654f51889
Two small typos 2018-08-05 15:09:38 +02:00
Deborah Servili e5b185deee
Merge branch 'master' into master 2018-08-03 16:11:16 +02:00
Deborah Servili 35aa8ba34e
delete duplicate gorgon group 2018-08-03 16:08:43 +02:00
Deborah Servili a9a71ef84c
more clusters 2018-08-03 15:58:54 +02:00
Alexandre Dulaunoy b3701b6b34
chg: [threat-actor] The Gordon Group added
ref: https://researchcenter.paloaltonetworks.com/2018/08/unit42-gorgon-group-slithering-nation-state-cybercrime/
2018-08-03 10:26:52 +02:00
Alexandre Dulaunoy a0dfdd65ae
chg: [rat] Hallaj PRO Rat added
ref: https://securelist.com/attacks-on-industrial-enterprises-using-rms-and-teamviewer/87104/
misp-event: 5b63f5e4-bf24-4f46-8340-48fc02de0b81
2018-08-03 08:34:55 +02:00
Alexandre Dulaunoy 3da005a3f3
fix: jq all the things(tm) 2018-08-02 15:15:47 +02:00
Alexandre Dulaunoy 1fdf47d509
fix: [threat-actor] synonyms are always arraus 2018-08-02 15:13:18 +02:00
Alexandre Dulaunoy ece56dff38
chg: [threat-actor] leafminer - RASPITE added 2018-08-02 15:08:39 +02:00
Alexandre Dulaunoy c232b3dd5a
chg: [tool] added based on Carbanak tooling description from Crowdstrike
ref: https://www.crowdstrike.com/blog/arrests-put-new-focus-on-carbon-spider-adversary-group/
2018-08-02 10:30:47 +02:00
Alexandre Dulaunoy 43fa95df7a
chg: [threat-actor] new reference to CARBON SPIDER/Carbanak 2018-08-02 10:03:18 +02:00
Alexandre Dulaunoy 4cf84858e3
chg: [tool] Bisonal malware added (new variant with encryption capabilities) 2018-07-31 15:26:11 +02:00
Alexandre Dulaunoy 83497c54ef
Merge pull request #238 from Delta-Sierra/master
add Kronos Banking Trojan
2018-07-25 14:47:25 +02:00
Deborah Servili e7d2541929 add Kronos Banking Trojan 2018-07-25 09:46:46 +02:00
Deborah Servili 043a285a5d
Merge pull request #237 from Delta-Sierra/master
Add CFR.org metadata into the galaxy - part 2
2018-07-25 09:22:17 +02:00
Deborah Servili 381f7e4a19 Add CFR.org metadata into the galaxy - part 2 2018-07-25 09:08:16 +02:00
Deborah Servili 28456545be Merge https://github.com/MISP/misp-galaxy 2018-07-16 09:16:13 +02:00
Alexandre Dulaunoy 98db303047
chg: [threat-actor] The Big Bang campaign/group added 2018-07-10 08:49:00 +02:00
Alexandre Dulaunoy 43a2c7f0ef
chg: [botnet] Xor DDoS added 2018-07-09 14:25:19 +02:00
Alexandre Dulaunoy 11af1cad81
Merge pull request #236 from raw-data/master
[add] new cluster + galaxy
2018-07-06 21:33:54 +02:00
raw-data d35395445f [add] new backdoor cluster 2018-07-06 20:10:51 +01:00
raw-data 77cfaa8221 [add] new backdoor galaxy and cluster 2018-07-06 20:09:52 +01:00
Raphaël Vinot e5939e3248 Merge branch 'master' of github.com:MISP/misp-galaxy 2018-07-06 15:25:09 +02:00
Raphaël Vinot 6f7a7921ae new: Add entries from Bambenek Consulting 2018-07-06 15:25:05 +02:00