Commit Graph

2774 Commits (d9c1ddb7cecff3ea94fdf32474cbf658e96ceb40)

Author SHA1 Message Date
niclas bb28408b14 Add [agencies] refs 2024-03-12 11:22:30 +01:00
Daniel Plohmann 77b7ed2f01
adding aliases from UA's H1'2023 report 2024-03-12 10:15:12 +01:00
Alexandre Dulaunoy 3f039b5932
fix: [threat-actor] fix #942
`Hyppo Team` was present in two clusters. We just kept the alias
for `Turla`.
2024-03-11 10:00:15 +01:00
Delta-Sierra 5d8d0d294e Merge https://github.com/MISP/misp-galaxy 2024-03-07 14:10:29 +01:00
Delta-Sierra d9214cff89 update producers 2024-03-07 13:48:22 +01:00
Alexandre Dulaunoy b43f9d7b3d
Merge pull request #941 from NMD03/main
Add [galaxies] Tidal Cyber
2024-03-06 11:07:29 +01:00
niclas 098f0e6ecd Fix [config] uuids 2024-03-06 09:54:06 +01:00
niclas 4f07fbdcdd Fix [config] typo 2024-03-06 09:35:35 +01:00
niclas c28a001b4f Fix [tidal] check for existing sub clusters 2024-03-06 09:19:11 +01:00
niclas 03c6e3cb00 Fix [duplicates] list 2024-03-05 17:22:03 +01:00
niclas a3071cf270 Add [techniques] codeblock for duplicates 2024-03-05 17:15:21 +01:00
niclas 16366f6893 Chg [tidal] add associated to name 2024-03-05 16:24:29 +01:00
niclas a88b3ced33 Chg [groups] change name for Volt Typhoon duplicate 2024-03-05 16:15:58 +01:00
niclas 9e78c85124 Fix [references] no empty refs 2024-03-05 15:55:07 +01:00
niclas 2b383338f0 Fix [software] type as array 2024-03-05 15:46:35 +01:00
niclas b2cc4ccd08 Fix [galaxies] add version 2024-03-05 15:33:10 +01:00
niclas f756c18d1d Fix [clusters] authors 2024-03-05 15:11:57 +01:00
niclas 5be77f6c2d Fix [tidal] exclude empty meta fields 2024-03-05 14:41:53 +01:00
niclas 8e345c3684 Add [galaxies] Cyber Tidal 2024-03-05 14:27:25 +01:00
Mathieu4141 c11834aec4 [threat-actors] Add R00tK1T 2024-02-29 10:38:27 -08:00
Mathieu4141 39f89c900c [threat-actors] Add Mogilevich 2024-02-29 10:38:27 -08:00
Mathieu4141 cc68b22fe2 [threat-actors] Add UNC1549 2024-02-29 10:38:27 -08:00
Mathieu4141 7b3c8a87c3 [threat-actors] Add UAC-0184 2024-02-29 10:38:27 -08:00
Mathieu4141 b010a75426 [threat-actors] Add SPIKEDWINE 2024-02-29 10:38:27 -08:00
Alexandre Dulaunoy 838f649766
chg: [sigma] updated to the latest version 2024-02-27 14:10:36 +01:00
Delta-Sierra 7481cce57d fix double 2024-02-23 16:14:42 +01:00
Delta-Sierra 42b3319e69 typo~ 2024-02-23 16:13:14 +01:00
Delta-Sierra 8e07569da2 Fix ENORMOUS TYPO and add a few description (wip) 2024-02-23 16:11:23 +01:00
Delta-Sierra 667263a512 add producer names 2024-02-23 16:02:22 +01:00
Alexandre Dulaunoy 39d40a991f
chg: [producer] Sophos added 2024-02-23 15:51:56 +01:00
Alexandre Dulaunoy 364b835d8e
chg: [threat-actor] version updated 2024-02-23 15:46:11 +01:00
Alexandre Dulaunoy efb3c3995a
new: [producer] Skeleton for threat intelligence producer to be attached
as producer of Intelligence in MISP feed.

In the realm of cybersecurity, numerous security firms produce feeds and threat intelligence conforming to the MISP standards. However, a significant challenge arises due to the often insufficient or vague descriptions of the origins of this intelligence within these standards. This lack of clarity hinders the effectiveness and credibility of the threat intelligence shared across platforms and organizations.
2024-02-23 15:30:53 +01:00
Mathieu4141 9c85cbc223 [threat-actors] Add GoldFactory 2024-02-20 05:22:26 -08:00
Mathieu4141 82b347682c [threat-actors] Add Winter Vivern aliases 2024-02-20 05:22:26 -08:00
Mathieu4141 4e61e7275a [threat-actors] Add Cyber.Anarchy.Squad 2024-02-20 05:22:26 -08:00
Mathieu4141 ccfd207e59 [threat-actors] Add LabHost 2024-02-20 05:22:26 -08:00
Mathieu4141 83198aa663 [threat-actors] Add ShadowSyndicate 2024-02-20 05:22:25 -08:00
Mathieu4141 d3f5a26ec0 [threat-actors] Add ResumeLooters 2024-02-20 05:22:25 -08:00
Mathieu4141 6ddf39e1ae [threat-actors] Add Charming Kitten aliases 2024-02-20 05:22:25 -08:00
Mathieu4141 96adf0ba8f [threat-actors] Add ProCC 2024-02-20 05:22:25 -08:00
niclas e90ae3e5d9 Fix [mitre] new galaxy enrichments 2024-02-19 13:44:32 +01:00
niclas bdd2329163 reset enrichment 2024-02-19 13:42:27 +01:00
Alexandre Dulaunoy 7ed94eb865
chg: [threat-actor] fixed 2024-02-16 18:41:46 +01:00
jstnk9 b3a25c57b3 added new information in relation to the Mandiant-Google TAG Report
New information added via https://services.google.com/fh/files/misc/tool-of-first-resort-israel-hamas-war-cyber.pdf
2024-02-16 17:36:09 +01:00
Delta-Sierra ef8c6c95eb add relationships between surveillance vendors 2024-02-16 15:37:14 +01:00
Alexandre Dulaunoy 9cf86925f1
Merge pull request #931 from NMD03/enrich_new_mitre
Add [mitre] relations from deprecated galaxies
2024-02-15 16:31:08 +01:00
niclas 777ead0170 Fix [mitre] running jq_all_the_things.sh 2024-02-15 14:26:04 +01:00
Mathieu4141 f4d69382cf [threat-actors] Add Blackatom 2024-02-15 03:42:29 -08:00
Mathieu4141 ed26f4d246 [threat-actors] Add TA2725 2024-02-15 03:42:28 -08:00
niclas 1e60ee58a7 Add [mitre] relations from deprecated galaxies 2024-02-15 11:59:17 +01:00
Alexandre Dulaunoy 8f3c662961
chg: [sigma] updated to the latest version 2024-02-12 21:24:11 +01:00
Daniel Plohmann 8a359dbd43
merge KNOCKOUT SPIDER -> Evilnum
Based on newer public reporting grouping these.
2024-02-08 10:38:04 +01:00
Delta-Sierra a8496a939e Merge https://github.com/MISP/misp-galaxy 2024-02-07 10:53:31 +01:00
Delta-Sierra 4686aae3d5 add COATHANGER ref 2024-02-07 10:52:40 +01:00
Delta-Sierra 6222443b24 add COATHANGER RAT 2024-02-07 10:51:47 +01:00
Alexandre Dulaunoy 94051bb5ef
chg: [surveillance-vendor] updated 2024-02-07 10:39:03 +01:00
Alexandre Dulaunoy c867adcbf3
Merge branch 'main' of github.com:MISP/misp-galaxy into main 2024-02-07 10:22:24 +01:00
Alexandre Dulaunoy d07c584525
chg: [surveillance-vendor] updated following https://storage.googleapis.com/gweb-uniblog-publish-prod/documents/Buying_Spying_-_Insights_into_Commercial_Surveillance_Vendors_-_TAG_report.pdf 2024-02-07 10:21:40 +01:00
Mathieu4141 02bec6da4f [threat-actors] Add TwoSail Junk aliases 2024-02-06 07:30:07 -08:00
Mathieu4141 6235ee49f7 [threat-actors] Add Operation Emmental 2024-02-06 07:30:07 -08:00
Mathieu4141 c740c6f1e1 [threat-actors] Add Urpage 2024-02-06 07:30:06 -08:00
Mathieu4141 f58c20fc20 [threat-actors] Add APT23 aliases 2024-02-06 07:30:06 -08:00
Mathieu4141 9a2e09d86c [threat-actors] Add Operation C-Major aliases 2024-02-06 07:30:06 -08:00
Mathieu4141 5194939603 [threat-actors] Add Tonto Team aliases 2024-02-06 07:30:06 -08:00
Mathieu4141 cc4dca679b [threat-actors] Add Earth Yako 2024-02-06 07:30:06 -08:00
Mathieu4141 baaf153229 [threat-actors] Add Operation Red Signature 2024-02-06 07:30:06 -08:00
Mathieu4141 859d3f7ac0 [threat-actors] Add Earth Berberoka aliases 2024-02-06 07:30:06 -08:00
Mathieu4141 55083776a0 [threat-actors] Add Domestic Kitten aliases 2024-02-06 07:30:05 -08:00
Delta-Sierra 8643f5f555 Merge https://github.com/MISP/misp-galaxy 2024-02-06 15:11:53 +01:00
Delta-Sierra ea16f1811a adding several webshells and open source tools 2024-02-06 15:09:41 +01:00
Mathieu4141 957e848a6f [threat-actors] Add Ferocious Kitten 2024-02-05 09:20:11 -08:00
Mathieu4141 3a44200a0c [threat-actors] Add APT5 aliases 2024-02-05 09:20:11 -08:00
Mathieu4141 d2586524e3 [threat-actors] Add CardinalLizard 2024-02-05 09:20:11 -08:00
Mathieu4141 045ec7071f [threat-actors] Add Operation Ghoul 2024-02-05 09:20:11 -08:00
Mathieu4141 3a15a27584 [threat-actors] Add Operation Triangulation 2024-02-05 09:20:11 -08:00
Mathieu4141 c97fc15d59 [threat-actors] Add GhostEmperor 2024-02-05 09:20:11 -08:00
Mathieu4141 cff0da0b3a [threat-actors] Add RevengeHotels 2024-02-05 09:20:10 -08:00
Mathieu4141 40becc0ee9 [threat-actors] Add Fishing Elephant 2024-02-05 09:20:10 -08:00
Mathieu4141 dd01813e51 [threat-actors] Add ShaggyPanther 2024-02-05 09:20:10 -08:00
Mathieu4141 bffb0ef644 [threat-actors] Add Tomiris 2024-02-05 09:20:10 -08:00
Mathieu4141 3379a0777b [threat-actors] Add Karkadann 2024-02-05 09:20:10 -08:00
Alexandre Dulaunoy b35d4bd07a
chg: [threat-actor] version updated 2024-02-05 15:21:25 +01:00
Mathieu4141 ffeed3447f [threat-actors] Add Silent Librarian aliases 2024-02-05 03:39:17 -08:00
Mathieu4141 9c5bc36ab4 [threat-actors] Add MuddyWater aliases 2024-02-05 03:39:17 -08:00
Mathieu4141 4699f65425 [threat-actors] Add TA2719 2024-02-05 03:39:17 -08:00
Mathieu4141 fc173c1a78 [threat-actors] Add APT10 aliases 2024-02-05 03:39:17 -08:00
Mathieu4141 bd0d541a7a [threat-actors] Add OilRig aliases 2024-02-05 03:39:16 -08:00
Mathieu4141 9cb1fd6aa8 [threat-actors] Add Lazarus Group aliases 2024-02-05 03:39:16 -08:00
Mathieu4141 57016ac3ae [threat-actors] Add TA2722 2024-02-05 03:39:16 -08:00
Mathieu4141 be8e127590 [threat-actors] Add APT39 aliases 2024-02-05 03:39:16 -08:00
Mathieu4141 40f65a9d91 [threat-actors] Add Evilnum aliases 2024-02-05 03:39:16 -08:00
Mathieu4141 3f6ff94c89 [threat-actors] Add APT33 aliases 2024-02-05 03:39:16 -08:00
Mathieu4141 72504d286a [threat-actors] Add MUSTANG PANDA aliases 2024-02-05 03:39:16 -08:00
Mathieu4141 3690ab0e24 [threat-actors] Add TA2552 2024-02-05 03:39:16 -08:00
Mathieu4141 a456e419d8 [threat-actors] Add APT31 aliases 2024-02-05 03:39:16 -08:00
Christophe Vandeplas ca366fc16a
chg: [ATRM] bump to latest ATRM version 2024-02-05 07:34:58 +01:00
Alexandre Dulaunoy effee963cc
chg: [microsoft] updated version 2024-02-02 15:32:02 +01:00
Mathieu4141 e497ec2b38 [threat-actors] Add Storm-1575 2024-02-01 11:02:05 -08:00
Mathieu4141 a42dc67fb6 [threat-actors] Add Storm-0835 2024-02-01 11:02:05 -08:00
Mathieu4141 1589a943a9 [threat-actors] Add Storm-1674 2024-02-01 11:02:05 -08:00
Mathieu4141 0b571d7e76 [threat-actors] Add Storm-0829 2024-02-01 11:02:05 -08:00
Mathieu4141 7607dc70cf [threat-actors] Add Storm-1567 2024-02-01 11:02:05 -08:00
Mathieu4141 eb8db810c0 [threat-actors] Add Storm-1152 2024-02-01 11:02:05 -08:00
Mathieu4141 991765a1c7 [threat-actors] Add SaintBear aliases 2024-02-01 11:02:05 -08:00
Mathieu4141 b3f440203a [threat-actors] Add Storm-0539 2024-02-01 11:02:05 -08:00
Mathieu4141 b645975616 [threat-actors] Add DarkHotel aliases 2024-02-01 11:02:04 -08:00
Mathieu4141 fa7709e63c [threat-actors] Add Storm-0530 2024-02-01 11:02:04 -08:00
Mathieu4141 a6c451be2d [threat-actors] Add Storm-0381 2024-02-01 11:02:04 -08:00
Mathieu4141 3a193291b9 [threat-actors] Add Storm-1101 2024-02-01 11:02:04 -08:00
Mathieu4141 3fda32a0d6 [threat-actors] Add Ghostwriter aliases 2024-02-01 11:02:04 -08:00
Mathieu4141 de04fe33e1 [threat-actors] Add Storm-1286 2024-02-01 11:02:04 -08:00
Mathieu4141 68e0ffb006 [threat-actors] Add Storm-1099 2024-02-01 11:02:04 -08:00
Mathieu4141 972ed33536 [threat-actors] Add TA2101 aliases 2024-02-01 11:02:03 -08:00
Mathieu4141 83f874da2c [threat-actors] Add LYCEUM aliases 2024-02-01 11:02:03 -08:00
Mathieu4141 6f61a3fc3e [threat-actors] Add Storm-1084 2024-02-01 11:02:03 -08:00
Mathieu4141 73d23f6211 [threat-actors] Add Sandworm aliases 2024-02-01 11:02:03 -08:00
Mathieu4141 ba7137c5a3 [threat-actors] Add Lazarus Group aliases 2024-02-01 11:02:03 -08:00
Mathieu4141 49c3e06605 [threat-actors] Add FIN7 aliases 2024-02-01 11:02:02 -08:00
Mathieu4141 43f9587469 [threat-actors] Add POLONIUM aliases 2024-02-01 11:02:02 -08:00
Mathieu4141 ae82f07fd8 [threat-actors] Add Pink Sandstorm 2024-02-01 11:02:02 -08:00
Mathieu4141 22d3ea5ebf [threat-actors] Add Storm-1044 2024-02-01 11:02:02 -08:00
Mathieu4141 0dcbc136a7 [threat-actors] Add Opal Sleet 2024-02-01 11:02:02 -08:00
Mathieu4141 44a446c63f [threat-actors] Add APT15 aliases 2024-02-01 11:02:02 -08:00
Mathieu4141 72073b2384 [threat-actors] Add APT5 aliases 2024-02-01 11:02:01 -08:00
Mathieu4141 681784a3ec [threat-actors] Add Storm-1167 2024-02-01 11:02:01 -08:00
Mathieu4141 475dc88296 [threat-actors] Add Storm-1295 2024-02-01 11:02:01 -08:00
Mathieu4141 76430b605e [threat-actors] Add Scattered Spider aliases 2024-02-01 11:02:01 -08:00
Mathieu4141 ce3a5dd182 [threat-actors] Add MuddyWater aliases 2024-02-01 11:02:01 -08:00
Mathieu4141 ba525e4c54 [threat-actors] Add TA505 aliases 2024-02-01 11:02:01 -08:00
Mathieu4141 447c064477 [threat-actors] Add Phlox Tempest 2024-02-01 11:02:01 -08:00
Mathieu4141 a1dfeca461 [threat-actors] Add Raspberry Typhoon 2024-02-01 11:02:01 -08:00
Mathieu4141 7a2cfa4f42 [threat-actors] Add Silent Chollima aliases 2024-02-01 11:02:00 -08:00
Mathieu4141 5ffdc0f868 [threat-actors] Add APT33 aliases 2024-02-01 11:02:00 -08:00
Mathieu4141 a1ea480023 [threat-actors] Add PARINACOTA aliases 2024-02-01 11:02:00 -08:00
Mathieu4141 da57d8c5fd [threat-actors] Add Bohrium aliases 2024-02-01 11:02:00 -08:00
Mathieu4141 6fdd037988 [threat-actors] Add Ruby Sleet 2024-02-01 11:02:00 -08:00
Mathieu4141 2dc29dc6c7 [threat-actors] Add WIZARD SPIDER aliases 2024-02-01 11:02:00 -08:00
Mathieu4141 5afd682215 [threat-actors] Add MosesStaff aliases 2024-02-01 11:02:00 -08:00
Mathieu4141 837ce84344 [threat-actors] Add Lilac Typhoon 2024-02-01 11:01:59 -08:00
Mathieu4141 646206e70a [threat-actors] Add Fox Kitten aliases 2024-02-01 11:01:59 -08:00
Mathieu4141 9e940af919 [threat-actors] Add OilRig aliases 2024-02-01 11:01:59 -08:00
Mathieu4141 de63377c99 [threat-actors] Add APT31 aliases 2024-02-01 11:01:59 -08:00
Mathieu4141 42bad34d91 [threat-actors] Add Vanilla Tempest 2024-02-01 11:01:59 -08:00
Mathieu4141 0668ed368d [threat-actors] Add ENERGETIC BEAR aliases 2024-02-01 11:01:59 -08:00
Mathieu4141 9645731e76 [threat-actors] Add Kimsuky aliases 2024-02-01 11:01:58 -08:00
Mathieu4141 f35df2c9fe [threat-actors] Add Sunglow Blizzard 2024-02-01 11:01:58 -08:00
Mathieu4141 8ebdd40e42 [threat-actors] Add Velvet Tempest 2024-02-01 11:01:58 -08:00
Mathieu4141 4cbf4353b0 [threat-actors] Add Storm-0867 2024-02-01 11:01:58 -08:00
Mathieu4141 8d024a52b1 [threat-actors] Add BRONZE STARLIGHT aliases 2024-02-01 11:01:58 -08:00
Mathieu4141 3d51ce84fb [threat-actors] Add Earth Lusca aliases 2024-02-01 11:01:58 -08:00
Mathieu4141 d1dae2085b [threat-actors] Add Caramel Tsunami 2024-02-01 11:01:58 -08:00
Mathieu4141 ac0fdd61ea [threat-actors] Add FIN6 aliases 2024-02-01 11:01:57 -08:00
Mathieu4141 9756306d98 [threat-actors] Add UNC4990 2024-02-01 11:01:57 -08:00
Mathieu4141 4388309aa0 [threat-actors] Add Mustard Tempest 2024-02-01 11:01:57 -08:00
Mathieu4141 05cf259436 [threat-actors] Add GALLIUM aliases 2024-02-01 11:01:57 -08:00
Mathieu4141 c81b10b3f5 [threat-actors] Add LAPSUS aliases 2024-02-01 11:01:57 -08:00
Mathieu4141 8c5dd8672f [threat-actors] Add APT28 aliases 2024-02-01 11:01:57 -08:00
Mathieu4141 0e47e27879 [threat-actors] Add Carmine Tsunami 2024-02-01 11:01:57 -08:00
Mathieu4141 1b6a5e8b17 [threat-actors] Add APT32 aliases 2024-02-01 11:01:56 -08:00
Mathieu4141 0ffadd08ec [threat-actors] Add TiltedTemple aliases 2024-02-01 11:01:56 -08:00
Mathieu4141 54a2b4766d [threat-actors] Add HAFNIUM aliases 2024-02-01 11:01:56 -08:00
Mathieu4141 d491ae01bf [threat-actors] Add Turla aliases 2024-02-01 11:01:56 -08:00
Mathieu4141 4cec7a7322 [threat-actors] Add Pearl Sleet 2024-02-01 11:01:56 -08:00
Mathieu4141 f1d514afc4 [threat-actors] Add Cuboid Sandstorm 2024-02-01 11:01:56 -08:00
Mathieu4141 38fea405f5 [threat-actors] Add DEV-0586 aliases 2024-02-01 11:01:56 -08:00
Mathieu4141 550d062c77 [threat-actors] Add Blue Tsunami 2024-02-01 11:01:55 -08:00
Mathieu4141 3ed1619c89 [threat-actors] Add APT40 aliases 2024-02-01 11:01:55 -08:00
Mathieu4141 732d00998b [threat-actors] Add Denim Tsunami 2024-02-01 11:01:55 -08:00
Mathieu4141 58f3cc2e11 [threat-actors] Add Gamaredon Group aliases 2024-02-01 11:01:55 -08:00
Delta-Sierra 3e5bf4b373 Merge https://github.com/MISP/misp-galaxy 2024-01-31 15:51:14 +01:00
Alexandre Dulaunoy 38ddae3e9f
chg: [threat-actor] version updated 2024-01-31 10:28:57 +01:00
Mathieu4141 85f22c7d2e [threat-actors] Add UNC2452 aliases 2024-01-30 10:32:27 -08:00
Mathieu4141 5aa3b62244 [threat-actors] Add UTA0178 aliases 2024-01-30 10:32:26 -08:00
Mathieu4141 0ca98cd054 [threat-actors] Add Blackwood 2024-01-30 10:32:26 -08:00
Alexandre Dulaunoy 262b95fa79
chg: [sigma] updated 2024-01-28 12:15:57 +01:00
Delta-Sierra 68cd2fca82 add mars and oski stealers 2024-01-26 16:11:12 +01:00
Mathieu4141 b8a504c174 [threat-actors] Add Cotton Sandstorm 2024-01-22 10:01:13 -08:00
Mathieu4141 b61a0a60a2 [threat-actors] Add Caliente Bandits 2024-01-22 10:01:13 -08:00
Mathieu4141 95b2a2e188 [threat-actors] Add Cyber Partisans 2024-01-22 10:01:13 -08:00
Mathieu4141 412f1885f2 [threat-actors] Add Hezb aliases 2024-01-22 10:01:13 -08:00
Mathieu4141 bd7252ccef [threat-actors] Add Flax Typhoon 2024-01-22 10:01:13 -08:00
Mathieu4141 3f9bd89958 [threat-actors] Add TAG-28 2024-01-22 10:01:13 -08:00
Christophe Vandeplas 3f142f52ab
fix: [mitre] fixed duplicate cluster uuid 2024-01-12 17:48:53 +01:00
Christophe Vandeplas 6ea968588a
new: [mitre] MITRE Data Sources and Data Components fixes #914 2024-01-12 17:36:05 +01:00
Mathieu4141 16e22180f1 [threat-actors] Add UTA0178 2024-01-11 08:25:33 -08:00
Mathieu4141 8c32c674cd [threat-actors] Add Water Curupira 2024-01-11 08:25:33 -08:00
Christophe Vandeplas f9ecc163ea
chg: [mitre] updated to latest version 2024-01-10 19:13:24 +01:00
HiS3 f710768b05 update malpedia galaxy 2024-01-09 16:45:45 +01:00
Alexandre Dulaunoy 84fc2b2749
chg: [threat-actor] version updated 2024-01-08 16:58:54 +01:00
Mathieu4141 1669da1661 [threat-actors] Add Cyber Toufan 2024-01-08 05:23:29 -08:00
Mathieu4141 09b90261ee [threat-actors] Add Threatsec 2024-01-08 05:23:29 -08:00
Mathieu4141 97ed1bda8b [threat-actors] Add Gray Sandstorm 2024-01-08 05:23:29 -08:00
Mathieu4141 273379e5fa [threat-actors] Add UAC-0099 2024-01-08 05:23:29 -08:00
Mathieu4141 fc8db1a4d2 [threat-actors] Add HomeLand Justice 2024-01-08 05:23:29 -08:00
Mathieu4141 2c7adf27a0 [threat-actors] Add Storm-1113 2024-01-08 05:23:29 -08:00
Mathieu4141 ce4be94d8b [threat-actors] Add KelvinSecurity 2024-01-08 05:23:28 -08:00
Mathieu4141 05f260c9d8 [threat-actors] Add Team-Xecuter 2024-01-08 05:23:28 -08:00
Mathieu4141 a6564bf61c [threat-actors] Add PhantomControl 2024-01-08 05:23:28 -08:00
Mathieu4141 f0229fbdd2 [threat-actors] Add GREF 2024-01-08 05:23:28 -08:00
Alexandre Dulaunoy c8e8a14b04
chg: [sigma] updated to the latest version 2024-01-04 15:21:48 +01:00
Alexandre Dulaunoy 7950022194
fix: [mitre-atlas] tactics links fixed 2024-01-02 10:37:45 +01:00
Alexandre Dulaunoy 901f6f0965
fix: [mitre-atlas] reference to Markdown link updated 2024-01-02 10:27:33 +01:00
Alexandre Dulaunoy 919bfbce8b
chg: [sigma] updated to the latest version 2023-12-31 17:18:10 +01:00
Christophe Vandeplas bbe7b95f84
fix: [disarm] drop duplicate values 2023-12-21 09:00:58 +01:00
Christophe Vandeplas e750b1a786
Merge remote-tracking branch 'MISP/main' into feature/disarm 2023-12-20 16:37:34 +01:00
Christophe Vandeplas ad9f4ee48d
chg: [disarm] relations 2023-12-20 16:15:51 +01:00
Mathieu4141 2cd9cf28a2 [threat-actors] Add GambleForce 2023-12-20 03:40:25 -08:00
Mathieu4141 b6ea7157b4 [threat-actors] Add Tortoiseshell aliases 2023-12-20 03:40:25 -08:00
Mathieu4141 38b67da12f [threat-actors] Add Taidoor aliases 2023-12-20 03:40:25 -08:00
Mathieu4141 8e53536147 [threat-actors] Add UNC4736 2023-12-20 03:40:25 -08:00
Mathieu4141 365bbbe24a [threat-actors] Add Solntsepek 2023-12-20 03:40:25 -08:00
Mathieu4141 a4c56efca8 [threat-actors] Add Storm-1283 2023-12-20 03:40:25 -08:00
Mathieu4141 8ed4377844 [threat-actors] Add BiBiGun 2023-12-20 03:40:24 -08:00
Christophe Vandeplas f89d886566
fix: [disarm] fix UUID 2023-12-20 12:16:40 +01:00
Christophe Vandeplas cd694fff6e
new: [disarm] add Actor Types 2023-12-20 11:26:33 +01:00
Christophe Vandeplas e62301f5ce
new: [disarm] add Detections 2023-12-20 11:26:19 +01:00
Christophe Vandeplas de62b43520
new: [disarm] add Countermeasures 2023-12-20 11:26:07 +01:00
Christophe Vandeplas 217e3eb171
fix: [disarm] fix UUIDs
to be generated based on a disarm specific UUID
2023-12-20 07:50:10 +01:00
Christophe Vandeplas 1c16ab3786
fix: [disarm] remove galaxy/cluster due to duplicates
see https://github.com/DISARMFoundation/DISARMframeworks/issues/24 and the feature/disarm branch here
2023-12-19 16:25:29 +01:00
Christophe Vandeplas c6b218793f
fix: [mitre-atlas] better sorting of data 2023-12-19 16:00:09 +01:00
Christophe Vandeplas bd3934697d
fix: [disarm] value without ID 2023-12-19 15:56:48 +01:00
Christophe Vandeplas ae3202be02
fix: [mitre-atlas] value without ID 2023-12-19 15:36:44 +01:00
Alexandre Dulaunoy 8c1b7507b3
Merge pull request #908 from MISP/feature/atlas
new: [mitre] New MITRE ATLAS Galaxy
2023-12-18 14:50:48 +01:00
Alexandre Dulaunoy c306125679
fix: [threat-actor] fix JSON 2023-12-18 14:43:21 +01:00
Christophe Vandeplas adb9c2a052
new: [mitre] New MITRE ATLAS Galaxy 2023-12-18 12:49:14 +01:00
jstnk9 0dd2f95a50 new threat actor - Sandman APT
new threat actor - Sandman APT
2023-12-15 12:28:38 +01:00
Mathieu Beligon 92f9ed1148 [threat-actors] Add Callisto aliases 2023-12-14 15:00:22 +01:00
Mathieu Beligon 81c2e4d7fe [threat-actors] Add Hagga aliases 2023-12-14 15:00:22 +01:00
Mathieu Beligon 540c71d33b [threat-actors] Add Sandworm aliases 2023-12-14 15:00:22 +01:00
Alexandre Dulaunoy e5b4209f3a
chg: [cluster] Sigma rules updated 2023-12-14 11:38:53 +01:00
Alexandre Dulaunoy 30f162675c
chg: [sigma] updated to the latest version 2023-12-08 13:59:08 +01:00
Alexandre Dulaunoy 9c230f3705
Merge pull request #905 from Mathieu4141/threat-actors/dd7fd198-7ead-48ee-b763-50f2f9faa1c5
[threat-actors] Add 10 actors
2023-12-07 06:40:05 +01:00
Mathieu Beligon 6f3b85399b [threat-actors] jq 2023-12-06 17:59:16 -08:00
Mathieu Beligon fdac01cd89 [threat-actors] Add UNC2630 2023-12-06 17:42:33 -08:00
Mathieu Beligon 47f0b31a32 [threat-actors] Add UAC-0050 2023-12-06 17:42:33 -08:00
Mathieu Beligon 228bbcc21d [threat-actors] Add UAC-0118 2023-12-06 17:42:33 -08:00
Mathieu Beligon cf7cdcbc2b [threat-actors] Add DEV-0569 2023-12-06 17:42:33 -08:00
Mathieu Beligon d155f1e05d [threat-actors] Add UNC215 2023-12-06 17:42:33 -08:00
Mathieu Beligon 79210345d0 [threat-actors] Add RomCom aliases 2023-12-06 17:42:33 -08:00
Mathieu Beligon ebd216e315 [threat-actors] Add UNC2447 2023-12-06 17:42:33 -08:00
Mathieu Beligon 668fb80aec [threat-actors] Add WIP19 2023-12-06 17:42:33 -08:00
Mathieu Beligon 3719022d91 [threat-actors] Add AeroBlade 2023-12-06 17:42:33 -08:00
Mathieu Beligon 69a94b6c1e [threat-actors] Add UNC2659 2023-12-06 17:42:33 -08:00
Mathieu Beligon b72868b6cd [threat-actors] Add UNC2717 2023-12-06 17:42:33 -08:00
Mathieu Beligon 7bb3c6ab5c [threat-actors] Update Scattered Spider 2023-12-06 14:00:32 -08:00
Mathieu Beligon 287a8d49cb [threat-actors] hormonize reference field 2023-12-05 14:32:26 -08:00
Christophe Vandeplas b0ebc02b19
new: [disarm] Initial DISARM galaxy #783 2023-12-02 17:59:57 +01:00
Mathieu4141 0391d3f3a5 [threat-actors] Add Daixin Team 2023-12-01 16:21:53 -08:00
Mathieu4141 44c270e9dc [threat-actors] Add ScamClub 2023-12-01 16:21:53 -08:00
Mathieu4141 6c2cb8979f [threat-actors] Add TunnelSnake 2023-12-01 16:21:53 -08:00
Alexandre Dulaunoy dbbb075b1c
fix: [botnet] duplicate UUID removed 2023-11-30 06:38:19 +01:00
Alexandre Dulaunoy d3f163e6ac
fix: [botnet] replace duplicate UUID 2023-11-30 06:32:39 +01:00
Mathieu Beligon 31562e4701 [threat-actors] Add WildPressure 2023-11-29 11:28:37 -08:00
Mathieu Beligon 9c02509a28 [threat-actors] Add WildCard 2023-11-29 11:28:37 -08:00
Mathieu Beligon 830ded98d3 [threat-actors] Add Red-Lili 2023-11-29 11:28:37 -08:00
Mathieu Beligon d4c2788b87 [threat-actors] Add LightBasin 2023-11-29 11:28:37 -08:00
Mathieu Beligon 313dd82bb9 [threat-actors] Add DragonForce 2023-11-29 11:28:37 -08:00
Mathieu Beligon 9c0f18e9b9 [threat-actors] Add MalKamak 2023-11-29 11:28:37 -08:00
Mathieu Beligon f066061f4b [threat-actors] Add Blacktail 2023-11-29 11:28:37 -08:00
Alexandre Dulaunoy c2a712d0d4
fix: [botnet] updated version 2023-11-28 08:59:33 +01:00
Alexandre Dulaunoy ded4162649
Merge pull request #900 from semelnyk/main
Updated botnet.json with new entries
2023-11-28 08:52:34 +01:00
semelnyk 5313f22343 Ran once again jq_all_the_things.sh to format JSON files 2023-11-27 23:18:38 +01:00
semelnyk ca67778eb0 Ran jq_all_the_things.sh to format JSON files 2023-11-27 23:13:26 +01:00
semelnyk 5403d70b69 Updated botnet.json with new entries 2023-11-27 22:49:36 +01:00
Delta-Sierra 0b44ea33f0 fix version 2023-11-21 15:20:21 +01:00
Delta-Sierra 019292a1c1 Merge https://github.com/MISP/misp-galaxy 2023-11-21 12:33:20 +01:00
Delta-Sierra 53ea633504 Kimsuky target 2023-11-21 11:45:05 +01:00
Delta-Sierra 70456bd8ac Kimsuky relations 2023-11-21 11:40:50 +01:00
Alexandre Dulaunoy d6feab1586
Merge branch 'main' of github.com:MISP/misp-galaxy into main 2023-11-21 10:03:37 +01:00
Alexandre Dulaunoy e88c316e2d
chg: [sigma] updated to the latest version 2023-11-21 09:04:04 +01:00
Mathieu4141 29baf77740 [threat-actors] Add SilverFish 2023-11-20 09:29:07 -08:00
Mathieu4141 ee2a8bec32 [threat-actors] Add TA402 2023-11-20 09:29:07 -08:00
Mathieu4141 00ca4c865f [threat-actors] Add CostaRicto 2023-11-20 09:29:07 -08:00
Mathieu4141 4c9063b772 [threat-actors] Add Storm Cloud 2023-11-20 09:29:06 -08:00
Mathieu4141 c4142b2ee7 [threat-actors] Add OldGremlin 2023-11-20 09:29:06 -08:00
Mathieu4141 a08311c5f1 [threat-actors] Add TiltedTemple 2023-11-20 09:29:06 -08:00
Mathieu4141 93d9db10a3 [threat-actors] Add Moshen Dragon 2023-11-20 09:29:05 -08:00
Mathieu4141 d477275a53 [threat-actors] Add N4ughtysecTU 2023-11-20 09:29:05 -08:00
Mathieu4141 2ac369ac61 [threat-actors] Add Webworm 2023-11-20 09:29:05 -08:00
Mathieu4141 32a78f3d26 [threat-actors] Add PerSwaysion 2023-11-20 09:29:05 -08:00
Mathieu4141 fc2cb9e253 [threat-actors] Add DefrayX 2023-11-17 02:59:57 -08:00
Mathieu4141 a81ac9687f [threat-actors] Add NewsPenguin 2023-11-17 02:59:56 -08:00
Mathieu4141 5b993d2517 [threat-actors] Add UAC-0006 2023-11-17 02:59:56 -08:00
Mathieu4141 d3c15e1652 [threat-actors] Add TA444 2023-11-17 02:59:56 -08:00
Mathieu4141 3c9f09edfc [threat-actors] Add WeedSec 2023-11-17 02:59:56 -08:00
Mathieu4141 e333b15063 [threat-actors] Add TEMP_Heretic 2023-11-17 02:59:55 -08:00
Mathieu4141 68f70a1831 [threat-actors] Add DEV-0928 2023-11-17 02:59:55 -08:00
Mathieu4141 ed0d3c6f57 [threat-actors] Add CL-STA-0043 2023-11-17 02:59:55 -08:00
Mathieu4141 d3836318a2 [threat-actors] Add UNC4841 2023-11-17 02:59:55 -08:00
Mathieu4141 c832066fa5 [threat-actors] Add AppMilad 2023-11-16 07:10:19 -08:00
Mathieu4141 6e7e5e60ce [threat-actors] Add Earth Kitsune 2023-11-16 07:10:19 -08:00
Mathieu4141 5d6bcf5e55 [threat-actors] Add FusionCore 2023-11-16 07:10:18 -08:00
Mathieu4141 d365624734 [threat-actors] Add DragonSpark 2023-11-16 07:10:18 -08:00
Mathieu4141 dc9d98ffe9 [threat-actors] Add UNC4191 2023-11-16 07:10:18 -08:00
Mathieu4141 941ef757bb [threat-actors] Add DriftingCloud 2023-11-16 07:10:18 -08:00
Mathieu4141 ce555828e1 [threat-actors] Add MurenShark 2023-11-16 07:10:18 -08:00
Mathieu4141 f759525c25 [threat-actors] Add Chernovite 2023-11-16 07:10:18 -08:00
Mathieu4141 03d16eba61 [threat-actors] Add VulzSecTeam 2023-11-16 07:10:18 -08:00
Mathieu4141 622d67eb38 [threat-actors] Add MirrorFace 2023-11-16 07:10:17 -08:00
Alexandre Dulaunoy 179afe9715
chg: [surveillance] version updated and duplicates removed 2023-11-16 15:38:35 +01:00