mirror of https://github.com/MISP/misp-modules
add: Updated documentation with the latest modules info
parent
189b4697ec
commit
86023fb67d
|
@ -2,6 +2,26 @@
|
|||
|
||||
## Expansion Modules
|
||||
|
||||
#### [apiosintds](https://github.com/MISP/misp-modules/tree/master/misp_modules/modules/expansion/apiosintds.py)
|
||||
|
||||
On demand query API for OSINT.digitalside.it project.
|
||||
- **features**:
|
||||
>The module simply queries the API of OSINT.digitalside.it with a domain, ip, url or hash attribute.
|
||||
>
|
||||
>The result of the query is then parsed to extract additional hashes or urls. A module parameters also allows to parse the hashes related to the urls.
|
||||
>
|
||||
>Furthermore, it is possible to cache the urls and hashes collected over the last 7 days by OSINT.digitalside.it
|
||||
- **input**:
|
||||
>A domain, ip, url or hash attribute.
|
||||
- **output**:
|
||||
>Hashes and urls resulting from the query to OSINT.digitalside.it
|
||||
- **references**:
|
||||
>https://osint.digitalside.it/#About
|
||||
- **requirements**:
|
||||
>The apiosintDS python library to query the OSINT.digitalside.it API.
|
||||
|
||||
-----
|
||||
|
||||
#### [backscatter_io](https://github.com/MISP/misp-modules/tree/master/misp_modules/modules/expansion/backscatter_io.py)
|
||||
|
||||
<img src=logos/backscatter_io.png height=60>
|
||||
|
@ -306,6 +326,22 @@ DomainTools MISP expansion module.
|
|||
|
||||
-----
|
||||
|
||||
#### [eql](https://github.com/MISP/misp-modules/tree/master/misp_modules/modules/expansion/eql.py)
|
||||
|
||||
<img src=logos/eql.png height=60>
|
||||
|
||||
Generates EQL queries from attributes
|
||||
- **features**:
|
||||
>The module simply generates EQL rules out of the input attribute.
|
||||
- **input**:
|
||||
>A filename or ip attribute.
|
||||
- **output**:
|
||||
>The EQL query generated from the input attribute.
|
||||
- **references**:
|
||||
>https://eql.readthedocs.io/en/latest/
|
||||
|
||||
-----
|
||||
|
||||
#### [eupi](https://github.com/MISP/misp-modules/tree/master/misp_modules/modules/expansion/eupi.py)
|
||||
|
||||
<img src=logos/eupi.png height=60>
|
||||
|
|
|
@ -0,0 +1,8 @@
|
|||
{
|
||||
"description": "On demand query API for OSINT.digitalside.it project.",
|
||||
"requirements": ["The apiosintDS python library to query the OSINT.digitalside.it API."],
|
||||
"input": "A domain, ip, url or hash attribute.",
|
||||
"output": "Hashes and urls resulting from the query to OSINT.digitalside.it",
|
||||
"references": ["https://osint.digitalside.it/#About"],
|
||||
"features": "The module simply queries the API of OSINT.digitalside.it with a domain, ip, url or hash attribute.\n\nThe result of the query is then parsed to extract additional hashes or urls. A module parameters also allows to parse the hashes related to the urls.\n\nFurthermore, it is possible to cache the urls and hashes collected over the last 7 days by OSINT.digitalside.it"
|
||||
}
|
|
@ -0,0 +1,9 @@
|
|||
{
|
||||
"description": "Generates EQL queries from attributes",
|
||||
"logo": "logos/eql.png",
|
||||
"requirements": [],
|
||||
"input": "A filename or ip attribute.",
|
||||
"output": "The EQL query generated from the input attribute.",
|
||||
"references": ["https://eql.readthedocs.io/en/latest/"],
|
||||
"features": "The module simply generates EQL rules out of the input attribute."
|
||||
}
|
Binary file not shown.
After Width: | Height: | Size: 61 KiB |
Loading…
Reference in New Issue