Commit Graph

84 Commits (ee70028eee46a5db590cbf642ccddb3fca60e891)

Author SHA1 Message Date
Alexandre Dulaunoy ee70028eee
chg: [core format] date updated 2020-05-27 10:09:51 +02:00
Alexandre Dulaunoy 32bb51a185
chg: [new types] git-commit-id added 2020-05-27 10:04:58 +02:00
Alexandre Dulaunoy 4505f65523
chg: [core] missing first_seen/last_seen in JSON schema added 2020-01-22 10:38:41 +01:00
Alexandre Dulaunoy 413992447e
new: [attributes] chrome-extension-id added 2020-01-21 09:44:58 +01:00
Alexandre Dulaunoy fb779dd1d6
new: [attribute type] kusto-query attribute type
Kusto query is the query language for the Kusto services in Azure used
to search large dataset. It's used in Windows Defender ATP Hunting-Queries
and also Azure Sentinel (Cloud-native SIEM).
2019-12-28 15:30:03 +01:00
Alexandre Dulaunoy 13a640a9af
chg: [types] updated 2019-12-05 19:19:07 +01:00
Alexandre Dulaunoy 5e9e9dc970
chg: [types] updated 2019-10-01 20:10:36 +02:00
Christophe Vandeplas 77c44154b8 chg: [misp-core-format] updated to the latest version of type/categories 2019-08-08 12:14:43 +02:00
Alexandre Dulaunoy c7db81bf63
chg: [core] updated to the latest version of mmark format 2019-07-16 07:27:48 +02:00
Alexandre Dulaunoy d87256edfa
Merge pull request #27 from mokaddem/fl_seen
first_seen / last_seen addition
2019-07-10 10:06:10 +02:00
mokaddem 60d1b1dad8 chg: *-seen rephrasing 2 2019-06-24 16:06:39 +02:00
mokaddem b46942e0a2 chg: *-seen rephrasing 2019-06-24 16:05:11 +02:00
mokaddem cd6174e3ac chg: precision and example about the ISO 8601 datetime for fs/ls 2019-06-24 10:42:19 +02:00
Alexandre Dulaunoy 8885fa2f49
chg: [misp-core] JSON reference is now RFC 8259 - Comment from Carsten Bormann 2019-06-23 17:16:21 +02:00
mokaddem e2e78f5fc2 chg: Added first_seen/last_seen sections 2019-06-20 09:36:37 +02:00
Alexandre Dulaunoy 27ded7460a
chg: [add] anonymise type added 2019-02-01 07:26:22 +01:00
Alexandre Dulaunoy 96e49165a6
chg: [core] zeek type added 2019-01-30 23:19:23 +01:00
Alexandre Dulaunoy 602ea6ccde
chg: [datamodels] new types added 2019-01-13 12:27:47 +01:00
Alexandre Dulaunoy 111c55e481
chg: [core] new types added 2018-12-30 12:54:53 +01:00
Alexandre Dulaunoy b501364088
chg: [misp-core-format] fix title section for the references 2018-10-07 10:26:11 +02:00
Alexandre Dulaunoy 8ff4c098a5
chg: [core-format] bro attribute type added 2018-08-28 21:11:28 +02:00
Christophe Vandeplas bba9452d4e chg: update categories/types mapping to reality 2018-08-08 11:15:58 +02:00
Christophe Vandeplas 9d349925f3 core - hostname|port 2018-08-03 14:34:20 +02:00
Alexandre Dulaunoy f3ae6a7f1f
chg: [misp-core-format] Acknowledgment updated 2018-06-08 06:35:38 +02:00
Nicolas Bareil 7fc9b3f254 Updating JSON Schema 2018-06-04 14:33:58 +02:00
Nicolas Bareil d00db38763
Update raw.md 2018-06-04 10:00:41 +02:00
Alexandre Dulaunoy bf79457aed
small fix 2018-04-10 15:25:46 +02:00
Alexandre Dulaunoy fd568ff71f
add: extends_uuid added - to extend another event from a MISP event 2018-04-10 10:46:03 +02:00
Alexandre Dulaunoy 5da925324a
fix: as default detached signature expect .asc file, the manifest
detached signature should be a .asc file
2018-03-09 07:16:34 +01:00
Alexandre Dulaunoy 20adf6f11b
a definition of human-readable id format added - fix #9 2018-03-08 14:29:05 +01:00
Alexandre Dulaunoy 9e7723878e
fix: clarification regarding published_timestamp
Following a discussion with @mokaddem @adulau and @iglocska
The clarification came because it was not clear in the RFC
about the value of the timestamp if the event was never published.
2018-03-08 09:44:19 +01:00
Andras Iklody fd55d7dea7
Some minor corrections 2018-02-09 14:04:36 +01:00
Alexandre Dulaunoy adfab9e436
add: first version of the sighting object (as now available and exported
via the API)
2018-02-09 11:51:56 +01:00
Alexandre Dulaunoy aed4ea06e9
add: attribute type identity-card-number 2018-02-09 07:32:02 +01:00
Alexandre Dulaunoy 63283dbbc5
add: attribute type whois-registrant-type added 2018-02-09 07:29:37 +01:00
Alexandre Dulaunoy f70d64dd26
add: attribute type mime-type added 2018-02-09 07:25:33 +01:00
Alexandre Dulaunoy a643567089
add: gene attribute type GENE - Go Evtx sigNature Engine 2018-02-09 07:21:29 +01:00
Alexandre Dulaunoy 5f14c4d89a
add: stix2-pattern attribute type added (used in STIX2 export) 2018-02-09 07:16:46 +01:00
Alexandre Dulaunoy 8663fd2960
Acknowledgment update 2017-09-21 15:50:14 +02:00
Alexandre Dulaunoy 467b73a3ab
MISP objects updated 2017-09-20 12:08:50 +02:00
Andras Iklody 11a3a371e5 Object relationship types added 2017-09-20 10:02:01 +02:00
Andras Iklody 2ee8e15162 Added object references 2017-09-20 09:49:15 +02:00
Andras Iklody 83e91e556b Added first version of the objects 2017-09-19 11:37:33 +02:00
Alexandre Dulaunoy c037269888
phone-number added in the default attributes 2017-09-04 21:18:11 +02:00
Alexandre Dulaunoy 33f68887ce cookie attribute type added 2017-07-21 09:47:10 +02:00
Alexandre Dulaunoy 1cbd86e044 Small typo fixed 2017-05-11 15:57:49 +02:00
Alexandre Dulaunoy d05dd10212 Threat level fixed to the current implemented level (incorrect order).
Initial level were from the updated misp taxonomy -
https://github.com/MISP/misp-taxonomies/blob/master/misp/machinetag.json
2017-04-26 16:13:51 +02:00
Alexandre Dulaunoy bada6e305e Very basic introduction to MISP galaxy with an example 2017-04-11 15:05:04 +02:00
Alexandre Dulaunoy 1b0af3a468 Tag taxonomy usage is now RECOMMENDED 2017-04-11 11:44:22 +02:00
Alexandre Dulaunoy e5b871461e JSON schema added 2017-04-11 11:37:03 +02:00