.. |
ADS
|
…
|
|
abuseipdb
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
ai-chat-prompt
|
fix: [ai-chat-prompt] improved ai-chat-prompt template
|
2023-04-16 10:50:30 +02:00 |
ail-leak
|
…
|
|
ais
|
…
|
|
ais-info
|
…
|
|
android-app
|
…
|
|
android-permission
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
annotation
|
…
|
|
anonymisation
|
…
|
|
apivoid-email-verification
|
new: Add apivoid email verification API result object
|
2022-02-07 17:54:31 +01:00 |
artifact
|
chg: [artifact] Changed the `payload_bin` attribute to attachment type
|
2024-01-19 23:15:41 +01:00 |
asn
|
…
|
|
attack-pattern
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
attack-step
|
…
|
|
authentication-failure-report
|
add: [d4] authentication failure report object
|
2020-06-16 15:59:02 +02:00 |
authenticode-signerinfo
|
…
|
|
av-signature
|
…
|
|
availability-impact
|
…
|
|
bank-account
|
…
|
|
bgp-hijack
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
bgp-ranking
|
…
|
|
blog
|
…
|
|
boleto
|
…
|
|
btc-transaction
|
…
|
|
btc-wallet
|
…
|
|
c2-list
|
…
|
|
cap-alert
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
cap-info
|
…
|
|
cap-resource
|
…
|
|
cert-pl-phishing
|
chg: [cert-pl-phishing] fixed
|
2024-04-04 16:53:46 +02:00 |
cloth
|
…
|
|
coin-address
|
…
|
|
command
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
command-line
|
chg: [command-line] added sane_default
|
2024-03-16 09:48:29 +01:00 |
concordia-mtmf-intrusion-set
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
confidentiality-impact
|
…
|
|
cookie
|
…
|
|
cortex
|
…
|
|
cortex-taxonomy
|
fix: [objects description] ref #384 - Grammar fixes included in the JSON files.
|
2023-02-02 10:51:32 +01:00 |
course-of-action
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
covid19-csse-daily-report
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
covid19-dxy-live-city
|
…
|
|
covid19-dxy-live-province
|
…
|
|
cowrie
|
…
|
|
cpe-asset
|
…
|
|
credential
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
credit-card
|
…
|
|
crowdsec-ip-context
|
change type of ans name
|
2024-03-07 12:02:23 +00:00 |
crowdstrike-report
|
…
|
|
crypto-material
|
…
|
|
cryptocurrency-transaction
|
…
|
|
cs-beacon-config
|
chg: [cs-beacon-config] encoded-data as file attachment instead of text
|
2024-05-07 09:36:13 +02:00 |
cytomic-orion-file
|
…
|
|
cytomic-orion-machine
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
dark-pattern-item
|
…
|
|
ddos
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
ddos-claim
|
fix: [ddos-claim] clarify the validity based on CERT-EU feedback
|
2024-06-14 08:09:20 +02:00 |
device
|
…
|
|
diameter-attack
|
…
|
|
diamond
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
directory
|
…
|
|
dkim
|
…
|
|
dns-record
|
…
|
|
domain-crawled
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
domain-ip
|
…
|
|
edr-report
|
…
|
|
elf
|
…
|
|
elf-section
|
…
|
|
email
|
chg: [email] email-body-attachment added
|
2023-09-11 11:28:39 +02:00 |
employee
|
…
|
|
error-message
|
…
|
|
event
|
wip: [event] New object template to describe events that can happen during an incident
|
2023-06-22 12:28:47 +02:00 |
exploit
|
Add software impacted by exploit
|
2024-03-18 14:19:35 +00:00 |
exploit-poc
|
…
|
|
external-impact
|
…
|
|
facebook-account
|
chg: [dev] add user avatar
|
2020-05-28 16:40:21 -04:00 |
facebook-group
|
…
|
|
facebook-page
|
chg: [dev] run rq
|
2020-05-28 15:32:43 -04:00 |
facebook-post
|
chg: [dev] change post-id attribute type to text
|
2020-05-28 15:48:18 -04:00 |
facebook-reaction
|
…
|
|
facial-composite
|
…
|
|
fail2ban
|
…
|
|
favicon
|
chg: [favicon] jq all the things
|
2020-12-27 16:21:09 +01:00 |
file
|
…
|
|
flowintel-cm-case
|
chg: [flowintel-cm] notes
|
2024-04-18 14:40:16 +02:00 |
flowintel-cm-task
|
chg: [flowintel-cm] notes
|
2024-04-18 14:40:16 +02:00 |
flowintel-cm-task-note
|
chg: [flowintel-cm] notes
|
2024-04-18 14:40:16 +02:00 |
forensic-case
|
…
|
|
forensic-evidence
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
forged-document
|
…
|
|
ftm-Airplane
|
…
|
|
ftm-Assessment
|
…
|
|
ftm-Asset
|
…
|
|
ftm-Associate
|
new: Objects and relations for FollowTheMoney
|
2020-05-05 11:02:53 +02:00 |
ftm-Audio
|
fix: [ftm] missing description fix #363
|
2022-06-30 17:19:33 +02:00 |
ftm-BankAccount
|
…
|
|
ftm-Call
|
chg: [ftm-Call] fixed missing description
|
2022-06-30 17:12:25 +02:00 |
ftm-Company
|
…
|
|
ftm-Contract
|
…
|
|
ftm-ContractAward
|
new: Objects and relations for FollowTheMoney
|
2020-05-05 11:02:53 +02:00 |
ftm-CourtCase
|
…
|
|
ftm-CourtCaseParty
|
…
|
|
ftm-Debt
|
…
|
|
ftm-Directorship
|
…
|
|
ftm-Document
|
…
|
|
ftm-Documentation
|
…
|
|
ftm-EconomicActivity
|
…
|
|
ftm-Email
|
…
|
|
ftm-Event
|
fix: [ftm-*] Fixing missing description - #363
|
2022-06-30 17:43:44 +02:00 |
ftm-Family
|
…
|
|
ftm-Folder
|
…
|
|
ftm-HyperText
|
…
|
|
ftm-Image
|
…
|
|
ftm-Land
|
fix: [ftm-*] Fixing missing description - #363
|
2022-06-30 17:43:44 +02:00 |
ftm-LegalEntity
|
…
|
|
ftm-License
|
…
|
|
ftm-Membership
|
…
|
|
ftm-Message
|
…
|
|
ftm-Organization
|
…
|
|
ftm-Ownership
|
…
|
|
ftm-Package
|
…
|
|
ftm-Page
|
…
|
|
ftm-Pages
|
…
|
|
ftm-Passport
|
new: Objects and relations for FollowTheMoney
|
2020-05-05 11:02:53 +02:00 |
ftm-Payment
|
…
|
|
ftm-Person
|
…
|
|
ftm-PlainText
|
…
|
|
ftm-PublicBody
|
…
|
|
ftm-RealEstate
|
…
|
|
ftm-Representation
|
…
|
|
ftm-Row
|
…
|
|
ftm-Sanction
|
…
|
|
ftm-Succession
|
…
|
|
ftm-Table
|
…
|
|
ftm-TaxRoll
|
new: Objects and relations for FollowTheMoney
|
2020-05-05 11:02:53 +02:00 |
ftm-UnknownLink
|
…
|
|
ftm-UserAccount
|
fix: [ftm-*] Fixing missing description - #363
|
2022-06-30 17:43:44 +02:00 |
ftm-Vehicle
|
fix: [ftm-*] Fixing missing description - #363
|
2022-06-30 17:43:44 +02:00 |
ftm-Vessel
|
…
|
|
ftm-Video
|
…
|
|
ftm-Workbook
|
…
|
|
game-cheat
|
…
|
|
generalizing-persuasion-framework
|
new: [gpf] Split actors_speaker and settings_competition into more
|
2024-04-14 07:26:53 +02:00 |
geolocation
|
chg: [geolocation] countrycode added as requested for the VarIOT.
|
2021-10-25 15:35:23 +02:00 |
git-vuln-finder
|
…
|
|
github-user
|
…
|
|
gitlab-user
|
…
|
|
google-safe-browsing
|
…
|
|
greynoise-ip
|
…
|
|
gtp-attack
|
fix: [JSON] updated
|
2022-02-03 17:44:17 +01:00 |
hashlookup
|
…
|
|
hhhash
|
…
|
|
http-request
|
…
|
|
identity
|
…
|
|
ilr-impact
|
…
|
|
ilr-notification-incident
|
fix: [ilr-notification-incident] Typo
|
2023-09-14 16:58:22 +02:00 |
image
|
…
|
|
impersonation
|
…
|
|
imsi-catcher
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
incident
|
…
|
|
infrastructure
|
…
|
|
instant-message
|
chg: [instant-message] remove newlines
|
2024-04-24 14:30:19 +02:00 |
instant-message-group
|
…
|
|
integrity-impact
|
…
|
|
intel471-vulnerability-intelligence
|
…
|
|
intelmq_event
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
intelmq_report
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
internal-reference
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
interpol-notice
|
…
|
|
intrusion-set
|
…
|
|
iot-device
|
…
|
|
iot-firmware
|
…
|
|
ip-api-address
|
…
|
|
ip-port
|
…
|
|
irc
|
…
|
|
ja3
|
…
|
|
ja3s
|
chg: [ja3s] Add domain and hostname attributes
|
2023-07-20 10:24:42 +03:00 |
jarm
|
…
|
|
keybase-account
|
…
|
|
language-content
|
…
|
|
leaked-document
|
…
|
|
legal-entity
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
lnk
|
…
|
|
macho
|
…
|
|
macho-section
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
mactime-timeline-analysis
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
malware
|
…
|
|
malware-analysis
|
add: [malware-analysis] New object template to describe a static or dynamic analysis performed on a malware instance or family
|
2023-07-25 15:24:39 +02:00 |
malware-config
|
…
|
|
meme-image
|
…
|
|
microblog
|
…
|
|
monetary-impact
|
…
|
|
mutex
|
…
|
|
narrative
|
…
|
|
netflow
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
network-connection
|
fix: [network-connection] Using the `size-in-bytes` attribute type for information expressed in bytes
|
2024-04-11 09:42:06 +02:00 |
network-profile
|
chg: [network-element] jq
|
2021-02-24 06:48:10 +01:00 |
network-socket
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
network-traffic
|
chg: [network-traffic] Going for the `protocol` attribute in singular
|
2024-04-11 12:04:55 +02:00 |
news-agency
|
…
|
|
news-media
|
chg: [news-media] add governmental communication and also news agency
|
2024-04-12 10:22:53 +02:00 |
open-data-security
|
…
|
|
organization
|
chg: [organization] add a MISP UUID if present
|
2024-05-03 22:04:04 +02:00 |
original-imported-file
|
…
|
|
paloalto-threat-event
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
parler-account
|
…
|
|
parler-comment
|
chg: [dev] add Parler app objects
|
2020-07-05 22:03:16 -04:00 |
parler-post
|
Add sane default for boolean objects
|
2021-12-20 20:02:29 +00:00 |
passive-dns
|
…
|
|
passive-dns-dnsdbflex
|
fix: [passive-dns-dnsdbflex] newline
|
2021-05-26 14:12:10 +02:00 |
passive-ssh
|
…
|
|
paste
|
…
|
|
pcap-metadata
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
pe
|
fix: [pe] Removing the `disable_correlation` flag for a `size-in-bytes` attribute type
|
2024-04-03 17:33:30 +02:00 |
pe-optional-header
|
add: [pe-optional-header] New object template for PE optional headers
|
2024-04-03 17:32:47 +02:00 |
pe-section
|
…
|
|
persnona
|
…
|
|
person
|
chg: [person/organization] `impersonated` added to the role of person
|
2024-03-05 08:59:45 +01:00 |
personification
|
…
|
|
pgp-meta
|
…
|
|
phishing
|
…
|
|
phishing-kit
|
…
|
|
phone
|
…
|
|
phone-number
|
chg: remove categories and object_relation definitions from phone-number
|
2024-06-09 22:39:41 +03:00 |
physical-impact
|
…
|
|
postal-address
|
…
|
|
probabilistic-data-structure
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
process
|
add: [process] Environment variables attribute
|
2024-01-30 15:19:54 +01:00 |
publication
|
…
|
|
python-etvx-event-log
|
…
|
|
query
|
…
|
|
r2graphity
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
ransom-negotiation
|
Added fields
|
2022-05-20 15:53:29 +02:00 |
ransomware-group-post
|
fix: [ransomware-group-post] added the missing descriptions for `actor-geo-stats-30d` and `actor-total-stats-30d`
|
2024-04-24 16:47:47 +02:00 |
reddit-account
|
…
|
|
reddit-comment
|
…
|
|
reddit-post
|
…
|
|
reddit-subreddit
|
…
|
|
regexp
|
chg: [regexp] fixed
|
2021-02-19 21:56:35 +01:00 |
registry-key
|
chg: [registry-key] jq all the things
|
2024-04-25 11:20:46 +02:00 |
registry-key-value
|
…
|
|
regripper-NTUser
|
…
|
|
regripper-sam-hive-single-user
|
…
|
|
regripper-sam-hive-user-group
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
regripper-software-hive-BHO
|
…
|
|
regripper-software-hive-appInit-DLLS
|
…
|
|
regripper-software-hive-application-paths
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
regripper-software-hive-applications-installed
|
…
|
|
regripper-software-hive-command-shell
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
regripper-software-hive-software-run
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
regripper-software-hive-userprofile-winlogon
|
…
|
|
regripper-software-hive-windows-general-info
|
…
|
|
regripper-system-hive-firewall-configuration
|
…
|
|
regripper-system-hive-general-configuration
|
…
|
|
regripper-system-hive-network-information
|
…
|
|
regripper-system-hive-services-drivers
|
…
|
|
report
|
…
|
|
research-scanner
|
fix: [research-scanner] version updated
|
2024-05-27 10:22:53 +02:00 |
risk-assessment-report
|
…
|
|
rogue-dns
|
…
|
|
rtir
|
…
|
|
sandbox-report
|
…
|
|
sb-signature
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
scan-result
|
…
|
|
scheduled-event
|
…
|
|
scheduled-task
|
…
|
|
scrippsco2-c13-daily
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
scrippsco2-c13-monthly
|
…
|
|
scrippsco2-co2-daily
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
scrippsco2-co2-monthly
|
…
|
|
scrippsco2-o18-daily
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
scrippsco2-o18-monthly
|
…
|
|
script
|
…
|
|
security-playbook
|
…
|
|
shadowserver-malware-url-report
|
…
|
|
shell-commands
|
…
|
|
shodan-report
|
…
|
|
short-message-service
|
…
|
|
shortened-link
|
…
|
|
sigma
|
…
|
|
sigmf-archive
|
…
|
|
sigmf-expanded-recording
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
sigmf-recording
|
fix: minor fixes
|
2023-08-03 08:07:47 +02:00 |
social-media-group
|
…
|
|
software
|
…
|
|
spearphishing-attachment
|
…
|
|
spearphishing-link
|
…
|
|
splunk
|
…
|
|
ss7-attack
|
…
|
|
ssh-authorized-keys
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
stairwell
|
fixed parse error
|
2024-03-15 14:04:07 -05:00 |
stix2-pattern
|
…
|
|
stock
|
…
|
|
submarine
|
fix: Changed a few attribute types in different template
|
2024-04-13 12:24:58 +02:00 |
suricata
|
…
|
|
target-system
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
task
|
…
|
|
tattoo
|
…
|
|
telegram-account
|
chg: [telegram-account] required attributes
|
2021-01-26 11:39:22 +01:00 |
telegram-bot
|
…
|
|
temporal-event
|
fix: [temporal-event] newline issue
|
2021-12-21 08:15:06 +01:00 |
thaicert-group-cards
|
…
|
|
threatgrid-report
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
timecode
|
…
|
|
timesketch-timeline
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
timesketch_message
|
…
|
|
timestamp
|
…
|
|
tor-hiddenservice
|
…
|
|
tor-node
|
…
|
|
traceability-impact
|
…
|
|
tracking-id
|
…
|
|
transaction
|
…
|
|
translation
|
…
|
|
transport-ticket
|
…
|
|
trustar_report
|
…
|
|
tsk-chats
|
…
|
|
tsk-web-bookmark
|
…
|
|
tsk-web-cookie
|
…
|
|
tsk-web-downloads
|
…
|
|
tsk-web-history
|
…
|
|
tsk-web-search-query
|
chg: [tsk-web-search-query] jq all the things
|
2021-07-25 09:11:42 +02:00 |
twitter-account
|
…
|
|
twitter-list
|
…
|
|
twitter-post
|
…
|
|
typosquatting-finder
|
chg: [typosquatting] jq_all_the_things
|
2023-01-16 08:45:20 +01:00 |
typosquatting-finder-result
|
…
|
|
url
|
chg: [url] jq all the things
|
2021-02-02 11:57:41 +01:00 |
user-account
|
…
|
|
vehicle
|
…
|
|
victim
|
…
|
|
virustotal-graph
|
…
|
|
virustotal-report
|
…
|
|
virustotal-submission
|
…
|
|
vulnerability
|
…
|
|
weakness
|
…
|
|
whois
|
chg: Sort all the entries in the templates by default
|
2020-04-26 02:13:18 +02:00 |
windows-service
|
…
|
|
x-header
|
…
|
|
x509
|
…
|
|
yabin
|
…
|
|
yara
|
…
|
|
youtube-channel
|
…
|
|
youtube-comment
|
…
|
|
youtube-playlist
|
…
|
|
youtube-video
|
…
|
|