misp-objects/objects
Alexandre Dulaunoy 0c98a925f3
chg: [forensic-case] object added based on the original one from @Aks6193
The idea is to separate the evidences from the case itself as you can
have multiple acquisitions for a specific case. Another object template
is required such as [forensic-evidence] to be able to link between the
forensic-case object and one or more evidences.
2018-09-03 13:54:59 +02:00
..
ail-leak modify ail-leak object for the tagging system 2018-06-12 11:47:44 +02:00
ais-info Chg: jq all the things 2018-06-19 21:11:24 +02:00
android-permission
annotation
asn
av-signature
bank-account
cap-alert
cap-info
cap-resource
coin-address chg: [coin-address] ETN symbol added 2018-07-13 17:07:35 +02:00
cookie
course-of-action
cowrie
credential
credit-card
ddos
diameter-attack
domain-ip chg: allow multiple domains too fix #108 2018-07-20 10:12:09 +02:00
elf
elf-section
email url is not a field of email object, then not one of the requiredOneOf 2018-07-26 15:49:44 +02:00
exploit-poc chg: [exploit-poc] a same context can contains multiple PoC samples 2018-07-10 09:32:12 +02:00
fail2ban
file fix file object version 2018-07-27 15:19:15 +02:00
forensic-case chg: [forensic-case] object added based on the original one from @Aks6193 2018-09-03 13:54:59 +02:00
geolocation chg: [geolocation] disable correlation on specific attributes 2018-08-15 18:34:35 +02:00
gtp-attack
http-request
ip-port
ja3 chg: [ja3] categories removed (default attributes categories will be used) 2018-08-28 14:30:29 +02:00
legal-entity
macho
macho-section
microblog
mutex
netflow
network-connection
network-socket
passive-dns
paste chg: [paste object] add a link attribute when the paste reference is not malicious 2018-07-26 14:06:39 +02:00
pe
pe-section
person
phone
process
r2graphity
regexp
registry-key
report
rtir
sandbox-report
sb-signature
script chg: new script template object 2018-06-09 11:36:58 +02:00
short-message-service new: [short-message-service] Short Message Service (SMS) object template describing one or more SMS message added 2018-07-18 09:52:31 +02:00
shortened-link
ss7-attack
stix2-pattern
suricata fix: [suricata] allow multiple Suricata rules in the object (similar context) and fix the rule to be in Snort format 2018-07-09 21:50:44 +02:00
target-system
threatgrid-report new: threatgrid-report object template 2018-07-16 13:48:56 +02:00
timecode
timesketch-timeline add: missing timesketch-timeline object template 2018-06-22 07:44:20 +02:00
timestamp
tor-node
transaction
url
vehicle chg: [vehicle] Vehicle object template to describe a vehicle information and registration 2018-08-04 15:39:38 +02:00
victim
virustotal-report
vulnerability chg: [vulnerability] is now in its own vulnerability meta-category 2018-07-10 07:38:28 +02:00
whois
x509
yabin
yara