From eb21a88e9f5b6c386ae875e5544347949f29088b Mon Sep 17 00:00:00 2001 From: Alexandre Dulaunoy Date: Thu, 21 Sep 2017 14:33:05 +0200 Subject: [PATCH] Reference to MISP galaxy repository added --- misp-galaxy-format/raw.md | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) diff --git a/misp-galaxy-format/raw.md b/misp-galaxy-format/raw.md index 778a827..c30d457 100644 --- a/misp-galaxy-format/raw.md +++ b/misp-galaxy-format/raw.md @@ -60,7 +60,7 @@ This document describes the MISP galaxy format which describes a simple JSON for # Introduction -Sharing threat information became a fundamental requirements on the Internet, security and intelligence community at large. Threat information can include indicators of compromise, malicious file indicators, financial fraud indicators or even detailed information about a threat actor. Some of these informations, such as malwares or threat actors are common to several security events. MISP galaxy is a public repository of known malwares, threats actors and various other collections of data that can be used to mark, classify or label data in threat information sharing.. +Sharing threat information became a fundamental requirements on the Internet, security and intelligence community at large. Threat information can include indicators of compromise, malicious file indicators, financial fraud indicators or even detailed information about a threat actor. Some of these informations, such as malware or threat actors are common to several security events. MISP galaxy is a public repository [@?MISP-G] of known malware, threats actors and various other collections of data that can be used to mark, classify or label data in threat information sharing. In the MISP galaxy context, clusters help analysts to give more informations about their cybersecurity events, indicators or threats. MISP galaxies can be used for classification, filtering, triggering actions or visualisation depending on their use in threat intelligence platforms such as MISP [@?MISP-P]. @@ -123,6 +123,14 @@ derivated_from, refs, synonyms **SHALL** be used to give further informations. r + + + MISP Galaxy - + + + + + MISP Object Relationship Types - common vocabulary of relationships