Alexandre Dulaunoy
1d0065e852
new: [iot] a first version of the IoT object
...
Ref: based on the workshop discussion in https://github.com/C00kie-/workshop-materials
The idea is to have this root object when a new IoT device is documented
and further objects will be connected such as firmware or even file object
2020-02-17 07:46:58 +01:00
Alexandre Dulaunoy
48bb38d67a
Merge pull request #232 from Terrtia/master
...
domain-crawled object
2020-02-16 21:04:16 +01:00
Terrtia
42df9d2e2f
chg: [crawled domain] rename object
2020-02-14 17:11:42 +01:00
Terrtia
5c46a3aad4
chg: add domain crawled object
2020-02-14 17:08:37 +01:00
Deborah Servili
fdc24a8df8
update version
2020-02-13 12:30:08 +01:00
Deborah Servili
6380007b10
allow several subjects or sender for email objects
2020-02-13 12:28:47 +01:00
ater49
2738648e81
Adding some parts from HAR format description ( http://www.softwareishard.com/blog/har-12-spec/ ) (More to come)
2020-02-10 14:59:35 +01:00
VVX7
1a40095f1a
new: [objects] add instant-message object. add instant-message-group object.
2020-02-09 11:39:36 -05:00
Alexandre Dulaunoy
3ba77c9d2c
chg: [sms] the SMS center is a phone number
2020-02-06 12:06:26 +01:00
Alexandre Dulaunoy
371788589c
chg: [rtir] disable correlation on incident state
2020-02-06 11:55:27 +01:00
Alexandre Dulaunoy
c32c7f4155
chg: [sms] missing Cellebrite fields added
2020-02-06 11:36:13 +01:00
Alexandre Dulaunoy
013c2c9c22
Merge branch 'master' of github.com:MISP/misp-objects
2020-02-06 11:04:53 +01:00
Alexandre Dulaunoy
3f9aca8e27
chg: [email] ip-src added in the email object templated as requested by Norberto Chavez
...
Ref: https://twitter.com/NORBERTOCHAVEZ/status/1225213457429127170
2020-02-06 11:03:33 +01:00
Raphaël Vinot
0c3aa14165
fix: attachment object relation does not exists.
2020-02-06 10:57:44 +01:00
Alexandre Dulaunoy
78fe4325b7
chg: [vehicule] image + type of vehicle added
2020-02-05 15:15:23 +01:00
Alexandre Dulaunoy
ab6d7c3885
chg: [organization] typo fixed + description added
2020-02-05 15:06:37 +01:00
Alexandre Dulaunoy
ccc0f4dd1f
chg: [phone] add brand and model
2020-02-05 15:04:10 +01:00
Andras Iklody
195fc46a13
fix: added iban as an alternative to bank account for the requirements
...
- fixes https://github.com/MISP/MISP/issues/5358
2020-02-04 11:46:24 +01:00
Alexandre Dulaunoy
5897fa7c37
Merge pull request #227 from Terrtia/master
...
chg: [new object pgp-meta]
2020-02-03 18:47:37 +01:00
Terrtia
ae11730a82
fix: [new object pgp-meta] remove first seen/last seen + fix description
2020-02-03 16:45:28 +01:00
Terrtia
b036b52e36
chg: [new object pgp-meta] Metadata extracted from a PGP keyblock, message or signature
2020-02-03 16:03:34 +01:00
VVX7
bde68265e3
chg: [object fields] allow additional requiredOneOf fields in blog, microblog, meme-image objects. add attachment field to blog object. add username to news-media.
2020-02-02 20:08:44 -05:00
VVX7
bc052e17f4
chg: [object field] add profile picture to user-account
2020-01-31 18:27:42 -05:00
VVX7
ed8e72bdb4
chg: [object field] enable multiple URL/link in microblog
2020-01-31 17:11:29 -05:00
VVX7
3bb42c766f
chg: [object field] add title to microblog
2020-01-31 17:01:57 -05:00
VVX7
e4d217172e
chg: [object field] add link for user-account page
2020-01-30 21:51:56 -05:00
VVX7
329d92162c
chg: [object fields] add forged-document types, add microblog state
2020-01-30 21:31:06 -05:00
VVX7
4c4a3aabe5
new: [objects] news-agency, news-media
2020-01-30 19:57:39 -05:00
VVX7
8fa0166b24
chg: [microblog] allow multiple attachments per the enhancement request
2020-01-30 16:41:40 -05:00
VVX7
804e2116ce
chg: [microblog] add attachment field for issue #186
2020-01-30 16:36:56 -05:00
VVX7
ce20ea05fe
chg: [misinfosec objects] add archive (Internet Archive, Archive.is, etc) fields, change blog post title description
2020-01-30 14:08:19 -05:00
VVX7
0b5c9bde29
chg: [blog] add title field to object
2020-01-29 21:55:26 -05:00
VVX7
acf22d496c
chg: [meme-image] uuid and name duplicate
2020-01-28 22:08:45 -05:00
VVX7
79026cb1d6
Merge remote-tracking branch 'upstream/master'
2020-01-28 21:49:12 -05:00
VVX7
84909f1ff2
new: [objects] blog, forged-document, leaked-document, meme-image
2020-01-28 21:24:04 -05:00
Raphaël Vinot
fb878a6901
fix: Wrong name in requiredOneOf
2020-01-28 10:47:18 +01:00
Alexandre Dulaunoy
cdc463ef1a
chg: [domain-ip] port added (required by AIL crawling)
2020-01-24 15:46:06 +01:00
Raphaël Vinot
e6659c7c7e
new: TruStar report object
2020-01-24 12:58:28 +01:00
Alexandre Dulaunoy
1a3d6392f3
Merge pull request #219 from N1col4s5742/master
...
Add vehicle state
2020-01-24 11:23:28 +01:00
Nicolas
e8583c5e13
change definition.json for vehicle and geolocation with verification sponge
2020-01-24 10:40:50 +01:00
Nicolas
6fd7dfc896
change definition.json for vehicle and geolocation
2020-01-24 10:30:22 +01:00
Nicolas
6cc3f4a51c
change definition.json for vehicle
2020-01-24 10:25:32 +01:00
Raphaël Vinot
fa63480391
fix: to_ids must be a bool
2020-01-16 13:46:53 +01:00
Andras Iklody
92ebb542c2
fix: [microblog] to_ids changes
2020-01-16 10:44:51 +01:00
StefanKelm
1e096535ef
Update definition.json
...
Add compilation timestamp (similar to pe object)
2020-01-10 15:00:19 +01:00
Alexandre Dulaunoy
ce80fb6384
chg: [microblog] disable correlation for the verified-username state
2019-12-27 11:27:53 +01:00
Alexandre Dulaunoy
faf2b07599
chg: [annotation] 'full report' type added
2019-12-26 18:29:57 +01:00
N1col4s5742
c611736e35
Vehicle state
2019-12-20 14:20:08 +01:00
N1col4s5742
59027ddc6a
Bump version
2019-12-20 14:18:10 +01:00
N1col4s5742
5f1e6c5fec
Add vehicle state
2019-12-20 14:14:49 +01:00
Alexandre Dulaunoy
bce1018325
Merge branch 'master' of github.com:MISP/misp-objects
2019-12-17 14:59:50 +01:00
Alexandre Dulaunoy
e832f5ce64
chg: [organization] VAT - TAX-ID added in the template
2019-12-17 14:59:00 +01:00
Deborah Servili
33a7d6b574
Merge pull request #217 from Delta-Sierra/master
...
add imphash in file object
2019-12-10 12:26:08 +01:00
Deborah Servili
c0877cfd7c
add imphash in file object
2019-12-10 12:19:29 +01:00
Alexandre Dulaunoy
ab484998ff
chg: [microblog] add the ability to have non-malicious links
...
Fix #215
2019-12-06 14:59:12 +01:00
Jean-Louis Huynen
0fd9ff6670
chg: [dark-pattern] typos
2019-12-04 16:17:45 +01:00
Alexandre Dulaunoy
4185e2b8e2
chg: [script] attachment field added
2019-12-04 13:41:08 +01:00
Jean-Louis Huynen
b69657b7b1
add: [dark-pattern] new object to share dark-patterns
2019-12-03 16:23:54 +01:00
Alexandre Dulaunoy
5e9aeadc7a
Merge branch 'master' of github.com:MISP/misp-objects
2019-12-03 08:07:50 +01:00
Alexandre Dulaunoy
34ac927065
new: [virustotal-graph] VirusTotal graph object added
...
Based on the discussion with VT, virustotal-graph object has been added which will
be used with the expansion modules and also to trigger the specific
quick-tab in MISP to display the VT graph result in an iframe if this
object is present.
2019-12-03 07:39:28 +01:00
m4tze
33a75fe4f2
updated "version" to 4
2019-11-29 09:09:30 +01:00
m4tze
cd08dc32a0
added "type" to "requiredOneOf"
2019-11-29 08:56:55 +01:00
Raphaël Vinot
68d61d25d9
fix: Type asn -> AS
2019-11-25 16:23:42 +01:00
Raphaël Vinot
2ce8794528
fix: ui-priority is required in the object template
2019-11-25 16:21:19 +01:00
Raphaël Vinot
185fae4a61
fix: Make jq happy
2019-11-25 14:48:51 +01:00
Raphaël Vinot
2fe41c1c46
new: IntelQM objects
2019-11-25 14:43:28 +01:00
Raphaël Vinot
3d7b09e9c4
chg: Update crypto-material and url
2019-11-18 18:03:01 +01:00
Alexandre Dulaunoy
4b76b30061
chg: [microblog] verified field added to add the state of the username
2019-11-16 21:13:10 +01:00
Deborah Servili
bdad48d587
switch requiredOneOf list to required since it contains only one element
2019-11-08 15:35:14 +01:00
Jean-Louis Huynen
7b2e5061bb
chg: [x509, crypto-material] several changes:
...
- enables correlation on n, p, q;
- allows for only providing modulus for crypto material;
- specifies the expected data format of several fields.
2019-10-31 10:09:40 +01:00
Alexandre Dulaunoy
58d6722f5e
chg: [crypto-material] new object to described key materials (public and private)
2019-10-17 15:41:01 +02:00
Alexandre Dulaunoy
0859a97535
chg: [x509] to map with D4 project snakeoil database
2019-10-17 14:48:21 +02:00
Alexandre Dulaunoy
edf8b59af7
chg: [cowrie] to add HASSH of the client SSH session following Salesforce algorithm
...
As mentioned in #84
2019-10-05 10:05:26 +02:00
Raphaël Vinot
2cd5329b00
fix: duplicate in coin-address
2019-10-01 13:21:28 -07:00
Alexandre Dulaunoy
49e6c989d5
chg: [coin-address] DASH cryptocurrency address added
2019-10-01 20:17:44 +02:00
Alexandre Dulaunoy
ffc120106c
Update definition.json
...
Following discussion during MISP training - new language seen in a malware campaign.
2019-09-25 12:15:04 +02:00
Deborah Servili
6622083a2b
rename object misc to organization + update version
2019-09-23 12:57:09 +02:00
Deborah Servili
d116b7e4b2
Update version of paste object
2019-09-23 09:54:41 +02:00
Alexandre Dulaunoy
4ab14e785a
chg: [translation] double entry fixed in requiredOneOf
...
Signed-off by: By de leaduh of JavaScript and decayin' indicatawhs
2019-09-20 09:05:49 +02:00
Alexandre Dulaunoy
52e8f9e98b
chg: [translation] list of sane default for the languages + type of translation
2019-09-20 07:30:30 +02:00
Deborah Servili
4081dc8f8f
jq
2019-09-19 16:26:41 +02:00
Deborah Servili
2721d103e5
add translation object
2019-09-19 16:14:48 +02:00
Deborah Servili
a210cb0490
add hashtag attribute in microblog object
2019-09-19 13:33:45 +02:00
Deborah Servili
85f9aee365
Merge https://github.com/MISP/misp-objects
2019-09-17 15:00:51 +02:00
Deborah Servili
ca70c9ca9b
update microblog object - use link for non malicious link of the microblog post and embedded-link forlink into the microblog post
2019-09-17 14:59:34 +02:00
Alexandre Dulaunoy
a7157678af
Merge pull request #204 from saadkadhi/patch-1
...
Better wording
2019-09-12 11:12:36 +02:00
Saad Kadhi
0f76563ffc
Better wording
2019-09-11 22:02:48 +02:00
Saad Kadhi
a98631d533
Better wording
2019-09-11 21:59:37 +02:00
Alexandre Dulaunoy
0910f0b15f
chg: [credential] adding disable correlation when required
2019-09-11 10:27:27 +02:00
Alexandre Dulaunoy
951abf10fe
chg: [new object templates] various updates
2019-09-11 09:11:28 +02:00
Alexandre Dulaunoy
ebcb886037
Merge branch 'master' of https://github.com/Delta-Sierra/misp-objects into Delta-Sierra-master
2019-09-11 08:52:20 +02:00
Deborah Servili
b9d16a38ad
draft command object
2019-09-10 16:15:40 +02:00
Deborah Servili
0d40f64815
add impersonation object
2019-09-09 16:36:16 +02:00
Christophe Vandeplas
a347aa78fe
fix: [virustotal] corrected typo in category
2019-08-08 14:01:09 +02:00
Christophe Vandeplas
7c3ee740fa
fix: [timesketch] fix incorrect attribute type
2019-08-08 12:11:13 +02:00
Pierre-Jean Grenier
006e792829
fix: [process] change undefined attributes
...
misp-attributes 'uuid' and 'src-port' do not exist, change those to something else so that we can use this object properly
2019-08-06 10:39:43 +02:00
Pierre-Jean Grenier
fc182be371
Change undefined category to "External analysis"
2019-08-02 14:37:08 +02:00
chrisr3d
29febb2de0
fix: JQed all the things
2019-08-01 15:50:29 +02:00
chrisr3d
ad83a3a56f
new: Weakness & attack-pattern objects to describe CWE & CAPEC related to a CVE
...
- The attack-pattern object is using a new
attribute type called weakness to describe CWE
id, which will link to its own information as
described in https://cve.circl.lu
2019-08-01 14:34:30 +02:00
Raphaël Vinot
e5cd4c761a
chg: Rename category environment -> climate
2019-07-24 09:31:15 +02:00