.. |
ail-leak
|
…
|
|
ais-info
|
…
|
|
android-app
|
new: android-app object template
|
2020-06-21 21:45:46 +02:00 |
android-permission
|
…
|
|
annotation
|
…
|
|
anonymisation
|
…
|
|
asn
|
…
|
|
attack-pattern
|
…
|
|
authentication-failure-report
|
add: [d4] authentication failure report object
|
2020-06-16 15:59:02 +02:00 |
authenticode-signerinfo
|
…
|
|
av-signature
|
…
|
|
bank-account
|
…
|
|
bgp-hijack
|
…
|
|
blog
|
…
|
|
boleto
|
…
|
|
btc-transaction
|
…
|
|
btc-wallet
|
…
|
|
cap-alert
|
…
|
|
cap-info
|
…
|
|
cap-resource
|
…
|
|
coin-address
|
…
|
|
command
|
…
|
|
command-line
|
…
|
|
cookie
|
…
|
|
cortex
|
…
|
|
cortex-taxonomy
|
chg: [cortex-taxonomy] sort attributes
|
2020-07-02 13:29:32 +02:00 |
course-of-action
|
…
|
|
covid19-csse-daily-report
|
…
|
|
covid19-dxy-live-city
|
…
|
|
covid19-dxy-live-province
|
…
|
|
cowrie
|
…
|
|
credential
|
…
|
|
credit-card
|
…
|
|
crypto-material
|
…
|
|
cytomic-orion-file
|
…
|
|
cytomic-orion-machine
|
…
|
|
dark-pattern-item
|
…
|
|
ddos
|
…
|
|
device
|
…
|
|
diameter-attack
|
…
|
|
dns-record
|
Add more rrtypes to dns-record
|
2020-08-15 14:57:53 +02:00 |
domain-crawled
|
…
|
|
domain-ip
|
…
|
|
elf
|
…
|
|
elf-section
|
…
|
|
email
|
…
|
|
employee
|
…
|
|
exploit-poc
|
…
|
|
facebook-account
|
…
|
|
facebook-group
|
…
|
|
facebook-page
|
…
|
|
facebook-post
|
…
|
|
facial-composite
|
…
|
|
fail2ban
|
…
|
|
file
|
add SHA3 Hash on definition.json
|
2020-08-23 19:30:17 +02:00 |
forensic-case
|
…
|
|
forensic-evidence
|
…
|
|
forged-document
|
…
|
|
ftm-Airplane
|
…
|
|
ftm-Assessment
|
…
|
|
ftm-Asset
|
…
|
|
ftm-Associate
|
…
|
|
ftm-Audio
|
…
|
|
ftm-BankAccount
|
…
|
|
ftm-Call
|
…
|
|
ftm-Company
|
…
|
|
ftm-Contract
|
…
|
|
ftm-ContractAward
|
…
|
|
ftm-CourtCase
|
…
|
|
ftm-CourtCaseParty
|
…
|
|
ftm-Debt
|
…
|
|
ftm-Directorship
|
…
|
|
ftm-Document
|
…
|
|
ftm-Documentation
|
…
|
|
ftm-EconomicActivity
|
…
|
|
ftm-Email
|
…
|
|
ftm-Event
|
…
|
|
ftm-Family
|
…
|
|
ftm-Folder
|
…
|
|
ftm-HyperText
|
…
|
|
ftm-Image
|
…
|
|
ftm-Land
|
…
|
|
ftm-LegalEntity
|
…
|
|
ftm-License
|
…
|
|
ftm-Membership
|
…
|
|
ftm-Message
|
…
|
|
ftm-Organization
|
…
|
|
ftm-Ownership
|
…
|
|
ftm-Package
|
…
|
|
ftm-Page
|
…
|
|
ftm-Pages
|
…
|
|
ftm-Passport
|
…
|
|
ftm-Payment
|
…
|
|
ftm-Person
|
…
|
|
ftm-PlainText
|
…
|
|
ftm-PublicBody
|
…
|
|
ftm-RealEstate
|
…
|
|
ftm-Representation
|
…
|
|
ftm-Row
|
…
|
|
ftm-Sanction
|
…
|
|
ftm-Succession
|
…
|
|
ftm-Table
|
…
|
|
ftm-TaxRoll
|
…
|
|
ftm-UnknownLink
|
…
|
|
ftm-UserAccount
|
…
|
|
ftm-Vehicle
|
…
|
|
ftm-Vessel
|
…
|
|
ftm-Video
|
…
|
|
ftm-Workbook
|
…
|
|
geolocation
|
…
|
|
git-vuln-finder
|
…
|
|
gtp-attack
|
…
|
|
http-request
|
…
|
|
ilr-impact
|
…
|
|
ilr-notification-incident
|
…
|
|
image
|
…
|
|
impersonation
|
…
|
|
imsi-catcher
|
…
|
|
instant-message
|
…
|
|
instant-message-group
|
…
|
|
intelmq_event
|
…
|
|
intelmq_report
|
…
|
|
internal-reference
|
…
|
|
interpol-notice
|
…
|
|
iot-device
|
…
|
|
iot-firmware
|
…
|
|
ip-api-address
|
…
|
|
ip-port
|
…
|
|
irc
|
…
|
|
ja3
|
…
|
|
keybase-account
|
Revert "added description field in attributes"
|
2020-09-03 11:55:31 +02:00 |
leaked-document
|
…
|
|
legal-entity
|
…
|
|
lnk
|
…
|
|
macho
|
…
|
|
macho-section
|
…
|
|
mactime-timeline-analysis
|
…
|
|
malware-config
|
…
|
|
meme-image
|
…
|
|
microblog
|
…
|
|
mutex
|
…
|
|
narrative
|
…
|
|
netflow
|
…
|
|
network-connection
|
…
|
|
network-socket
|
…
|
|
news-agency
|
…
|
|
news-media
|
…
|
|
organization
|
…
|
|
original-imported-file
|
…
|
|
parler-account
|
chg: [dev] add Parler app objects
|
2020-07-05 22:03:16 -04:00 |
parler-comment
|
chg: [dev] add Parler app objects
|
2020-07-05 22:03:16 -04:00 |
parler-post
|
chg: [dev] add Parler app objects
|
2020-07-05 22:03:16 -04:00 |
passive-dns
|
…
|
|
paste
|
…
|
|
pcap-metadata
|
…
|
|
pe
|
chg: [misp-objects] newline newline newline is the evil
|
2020-08-20 10:53:06 +02:00 |
pe-section
|
…
|
|
person
|
…
|
|
pgp-meta
|
…
|
|
phishing
|
…
|
|
phishing-kit
|
…
|
|
phone
|
…
|
|
process
|
…
|
|
publication
|
…
|
|
python-etvx-event-log
|
…
|
|
r2graphity
|
…
|
|
reddit-account
|
chg: [dev] make Reddit attributes (mostly) reflect Reddit API.
|
2020-06-08 11:16:59 -04:00 |
reddit-comment
|
chg: [dev] make Reddit attributes (mostly) reflect Reddit API.
|
2020-06-08 11:16:59 -04:00 |
reddit-post
|
chg: [dev] make Reddit attributes (mostly) reflect Reddit API.
|
2020-06-08 11:16:59 -04:00 |
reddit-subreddit
|
chg: [dev] make Reddit attributes (mostly) reflect Reddit API.
|
2020-06-08 11:16:59 -04:00 |
regexp
|
…
|
|
registry-key
|
…
|
|
regripper-NTUser
|
…
|
|
regripper-sam-hive-single-user
|
…
|
|
regripper-sam-hive-user-group
|
…
|
|
regripper-software-hive-BHO
|
…
|
|
regripper-software-hive-appInit-DLLS
|
…
|
|
regripper-software-hive-application-paths
|
…
|
|
regripper-software-hive-applications-installed
|
…
|
|
regripper-software-hive-command-shell
|
…
|
|
regripper-software-hive-software-run
|
…
|
|
regripper-software-hive-userprofile-winlogon
|
…
|
|
regripper-software-hive-windows-general-info
|
…
|
|
regripper-system-hive-firewall-configuration
|
…
|
|
regripper-system-hive-general-configuration
|
…
|
|
regripper-system-hive-network-information
|
…
|
|
regripper-system-hive-services-drivers
|
…
|
|
report
|
…
|
|
research-scanner
|
…
|
|
rogue-dns
|
…
|
|
rtir
|
…
|
|
sandbox-report
|
…
|
|
sb-signature
|
…
|
|
scheduled-event
|
…
|
|
scrippsco2-c13-daily
|
…
|
|
scrippsco2-c13-monthly
|
…
|
|
scrippsco2-co2-daily
|
…
|
|
scrippsco2-co2-monthly
|
…
|
|
scrippsco2-o18-daily
|
…
|
|
scrippsco2-o18-monthly
|
…
|
|
script
|
…
|
|
shell-commands
|
…
|
|
shodan-report
|
…
|
|
short-message-service
|
…
|
|
shortened-link
|
…
|
|
social-media-group
|
…
|
|
splunk
|
…
|
|
ss7-attack
|
…
|
|
ssh-authorized-keys
|
…
|
|
stix2-pattern
|
…
|
|
suricata
|
…
|
|
target-system
|
…
|
|
threatgrid-report
|
…
|
|
timecode
|
…
|
|
timesketch-timeline
|
…
|
|
timesketch_message
|
…
|
|
timestamp
|
…
|
|
tor-hiddenservice
|
…
|
|
tor-node
|
…
|
|
tracking-id
|
…
|
|
transaction
|
…
|
|
translation
|
…
|
|
trustar_report
|
…
|
|
tsk-chats
|
…
|
|
tsk-web-bookmark
|
…
|
|
tsk-web-cookie
|
…
|
|
tsk-web-downloads
|
…
|
|
tsk-web-history
|
…
|
|
tsk-web-search-query
|
…
|
|
twitter-account
|
chg: [jq] all the things
|
2020-08-28 16:45:47 +02:00 |
twitter-list
|
…
|
|
twitter-post
|
chg: [dev] disable correlation on some attributes. fix underscore typo in account profile-image.
|
2020-06-11 19:35:02 -04:00 |
url
|
…
|
|
user-account
|
…
|
|
vehicle
|
…
|
|
victim
|
…
|
|
virustotal-graph
|
…
|
|
virustotal-report
|
…
|
|
vulnerability
|
chg: [jq] all the things
|
2020-08-28 16:08:39 +02:00 |
weakness
|
…
|
|
whois
|
…
|
|
x509
|
…
|
|
yabin
|
…
|
|
yara
|
…
|
|
youtube-channel
|
…
|
|
youtube-comment
|
…
|
|
youtube-playlist
|
…
|
|
youtube-video
|
…
|
|