Commit Graph

1672 Commits (4da05293d723ad6f9db4a3e349e140daa5d2a28d)

Author SHA1 Message Date
Alexandre Dulaunoy 4da05293d7
fix: [malware-config] typo fixed 2023-07-31 11:21:29 +02:00
Alexandre Dulaunoy fb0ffd5d4b
chg: [malware-config] to add attachment and description of the malware config 2023-07-31 11:17:23 +02:00
Alexandre Dulaunoy 17f71b39bd
chg: [scan-results] jq all the things 2023-07-28 22:25:37 +02:00
Alexandre Dulaunoy d490eecb30
Merge pull request #401 from mFaou/main
Fix for https://github.com/MISP/misp-objects/issues/390
2023-07-28 22:25:02 +02:00
Matthieu Faou 5e201f4e0d
removed line break 2023-07-28 15:15:17 -04:00
Matthieu Faou 22477f7bc6
Added internet scanning tools to scan-result 2023-07-28 15:09:25 -04:00
Alexandre Dulaunoy 5a14e15dd4
Merge pull request #400 from 417190e5c48babc7/ja3s-hostname-and-domain-attributes
chg: [ja3s] Add domain and hostname attributes
2023-07-21 07:50:51 +02:00
417190e5c48babc7 ab1f97b881 chg: [ja3s] Add domain and hostname attributes 2023-07-20 10:24:42 +03:00
Alexandre Dulaunoy 0f5cbd49d0
Merge pull request #396 from MISP/chrisr3d_patch
New object templates to support new STIX 2.1 Incident extension objects
2023-07-19 08:39:56 +02:00
Sami Mokaddem d94ab61ff7
Merge pull request #399 from TinyHouseHippos/abuseipdb_googlesafebrowsing
Added a is-malicious attribute for abuseipdb and added a google-safe-…
2023-07-13 10:11:25 -04:00
Steph S 32e21c8806 Fixed json formatting 2023-07-13 09:48:12 -04:00
Steph S c7bade5c8b Added a is-malicious attribute for abuseipdb and added a google-safe-browsing object for the google-safe-browsing expansion module 2023-07-13 09:25:26 -04:00
Alexandre Dulaunoy a9c0447be8
Merge pull request #397 from GeekWeekSteph/abuseipdb
Added AbuseIPDB object template for the AbuseIPDB expansion module
2023-07-10 21:54:57 +02:00
Steph S 1374b0c7f0 Added AbuseIPDB object template for the AbuseIPDB expansion module 2023-07-10 15:22:27 -04:00
Alexandre Dulaunoy e6864eb745
chg: [hhhash] newline fixed 2023-07-10 16:40:22 +02:00
Alexandre Dulaunoy f7da39c557
new: [hhhassh object] An object describing a HHHash object with the hash value along with the crawling parameters. For more information: https://www.foo.be/2023/07/HTTP-Headers-Hashing_HHHash 2023-07-10 16:38:12 +02:00
Christian Studer 2b7d563439
chg: [relationships] Added some relationships defined in STIX 2.1 & updated some opposite relationships in consequence 2023-07-08 11:52:40 +02:00
Christian Studer e215a0ff1a
add: [incident] Added the score attribute
- We will probably parse scores and build the
  attribute value the following way:
  "{name} - {description}: {score}"
2023-07-07 11:36:42 +02:00
Christian Studer 7b5eddc509 Merge branch 'main' of github.com:MISP/misp-objects into chrisr3d_patch 2023-07-07 10:56:45 +02:00
Alexandre Dulaunoy da801ab146
chg: [relationships] relationships names used by LookyLoo added 2023-06-29 16:22:50 +02:00
Alexandre Dulaunoy 5dd99015d0
chg: [relationships] because newlines 2023-06-26 13:51:04 +02:00
Alexandre Dulaunoy e9446939ae
chg: [relationships] add the `redirects-to` relationship as used in
LookyLoo
2023-06-26 13:46:50 +02:00
Christian Studer ae62d5f9b3
fix: [impacts] Typo 2023-06-22 15:50:54 +02:00
Christian Studer 49a715e1cf
fix: [confidentiality-impact] JQed 2023-06-22 15:41:06 +02:00
Christian Studer e3556784b5
wip: [task] New object template for tasks as described in STIX 2.1 Incident object extensions 2023-06-22 15:39:02 +02:00
Christian Studer 3c17729f0e
wip: [impacts] New template for different types of impacts as described in STIX 2.1 Incident object extensions 2023-06-22 15:16:48 +02:00
Christian Studer c5c8f35fb4
wip: [event] New object template to describe events that can happen during an incident 2023-06-22 12:28:47 +02:00
Christian Studer 1a05a9f253
add: [incident] Added the required object relation 2023-06-22 12:28:04 +02:00
Christian Studer ef04ff8020
add: [incident] Incident object based on the STIX 2.1 Incident object as well as its core extension 2023-06-21 16:32:30 +02:00
Christian Studer acfb208406 Merge branch 'main' of github.com:MISP/misp-objects into chrisr3d_patch 2023-06-21 16:29:45 +02:00
Alexandre Dulaunoy e2fd7a0290
Merge pull request #395 from MISP/chrisr3d_patch
Added `contact_information` & `sector` attributes to the `organization` template
2023-06-15 23:24:49 +02:00
Christian Studer f6d069dc3d
fix: [organization] Fixed missing comma
- Managed to improve the description too
2023-06-15 13:51:08 +02:00
Christian Studer 1f3b9312cc
add: [organization] Added the generic `contact_information` and `sector` fields for an organization 2023-06-15 13:27:55 +02:00
Christian Studer d1d97fde08 Merge branch 'main' of github.com:MISP/misp-objects into chrisr3d_patch 2023-06-15 11:55:46 +02:00
Alexandre Dulaunoy e26541e89e
Merge branch 'main' of github.com:MISP/misp-objects into main 2023-06-14 19:21:37 +02:00
Alexandre Dulaunoy 5d307f7c30
chg: [cookie] cookie can be also only a key or a value
This change is required for the AIL project export
2023-06-14 17:36:22 +02:00
Alexandre Dulaunoy e088768946
Merge pull request #394 from MichaelTrenker/new-Diamond-object
new:added Diamond Object
2023-06-14 08:13:52 -04:00
Michael Trenker 241f4455ac ran jq_all_the_things.sh 2023-06-14 11:54:46 +00:00
Michael Trewen 25e1790e74 jq 2023-06-13 19:15:23 +02:00
Michael Trewen 71cc235a5d new:added Diamond Object 2023-06-13 10:47:28 +02:00
Alexandre Dulaunoy 2ca2667d76
Merge pull request #393 from MISP/chrisr3d_patch
add: [crowdsec-ip-context] `classifications` & `false-positive` attributes
2023-05-26 14:25:27 +02:00
Christian Studer ec8645f421
add: [crowdsec-ip-context] Added the `false-positives` attribute that comes alongside with the `classifications` 2023-05-26 14:17:10 +02:00
Christian Studer 35285505a1
add: [crowdsec-ip-context] Added the classifications multiple attribute 2023-05-24 16:29:06 +02:00
Christian Studer 37e43490c0 Merge branch 'main' of github.com:MISP/misp-objects into chrisr3d_patch 2023-05-24 16:20:27 +02:00
Alexandre Dulaunoy 61608e5d44
chg: [scan-result] updated list of potential scanning tool
Source: https://gist.github.com/SteveClement/baf3a9ae0ba030283ecc30acd6f7c2ae
2023-05-24 11:03:47 +02:00
Alexandre Dulaunoy 20f567757d
chg: [scan-result] jq all the things 2023-05-22 14:08:34 +02:00
Alexandre Dulaunoy 8b0276f3b4
Merge branch 'main' of github.com:MISP/misp-objects into main 2023-05-22 14:06:01 +02:00
Alexandre Dulaunoy e33e893b44
new: [scan-result] object for scanning result
This is the metadata of a scanning result including the raw output of
the scan result.

This objects can be used for tools like Nessus or even source code
scanner to share the details about a scan.

For additional information such IP address or alike, other objects will
be used with the proper relationship added.
2023-05-22 14:04:48 +02:00
Alexandre Dulaunoy dec2cbb917
new: [scan-result] object for scanning result
This is the metadata of a scanning result including the raw output of
the scan result.

This objects can be used for tools like Nessus or even source code
scanner to share the details about a scan.

For additional information such IP address or alike, other objects will
be used with the proper relationship added.
2023-05-22 13:59:57 +02:00
Alexandre Dulaunoy f61702d030
Merge pull request #391 from tmbc-nl/fix-typo
chg: [relationships] Fixed a typo.
2023-05-20 00:28:57 +02:00