Commit Graph

311 Commits (765240f63edcf297346121b8ca05180f802c8754)

Author SHA1 Message Date
Alexandre Dulaunoy 765240f63e Merge pull request #69 from Delta-Sierra/master
mapping tlp
2017-05-21 09:16:39 +02:00
Deborah Servili e682024dc2 correct typo~ 2017-05-19 15:50:50 +02:00
Deborah Servili b7dbf6e996 Merge https://github.com/MISP/misp-taxonomies 2017-05-19 15:12:09 +02:00
Deborah Servili e4165d104d mapping tlp 2017-05-19 15:11:06 +02:00
Alexandre Dulaunoy 827d32a528 Fix #67 - typo in the description of Culture-oriented organisation. 2017-05-19 12:18:49 +02:00
Alexandre Dulaunoy 49d2e5c4aa Merge pull request #68 from Delta-Sierra/master
add action-taken taxonomy
2017-05-19 12:16:42 +02:00
Deborah Servili 04cca13462 jq 2017-05-19 11:37:25 +02:00
Deborah Servili e0c58471bb add action-taken taxonomy 2017-05-19 11:20:15 +02:00
Alexandre Dulaunoy 017ea1b387 Documentation links added 2017-05-14 22:34:28 +02:00
Alexandre Dulaunoy 0122eff56b Fix: table of content level reduced for asciidoctor output 2017-05-07 12:22:14 +02:00
Alexandre Dulaunoy 3a3fb87693 minItem for the array 2017-05-04 11:34:59 +02:00
Alexandre Dulaunoy b6546bf546 type added to only allow tagging on users or organisations 2017-05-04 11:00:21 +02:00
Alexandre Dulaunoy 3e90e2838f Schema updated to include the type - https://github.com/MISP/MISP/issues/2159
By default all taxonomies are applicable to events and attributes. But
new features will be introduced to support specific tagging for
users or organisations.

For more information: https://github.com/MISP/MISP/issues/2159
2017-05-04 10:54:38 +02:00
Alexandre Dulaunoy 3f271bec22 New type added - user and org only 2017-05-04 10:26:23 +02:00
Alexandre Dulaunoy ee6754f45e Merge branch 'master' of github.com:MISP/misp-taxonomies 2017-05-04 08:33:03 +02:00
Alexandre Dulaunoy 20c20e1553 New taxonomy event-assessment - series of assessment predicates
describing the event assessment performed to make judgement(s)
under a certain level of uncertainty.
2017-05-04 07:52:05 +02:00
Alexandre Dulaunoy cb08b44455 New taxonomy to describe Tor network infrastructure added 2017-05-04 07:48:05 +02:00
Alexandre Dulaunoy ccf19dcc4b Merge pull request #63 from gallypette/master
New items to analyst assessment, removal of analysis-related items
2017-05-03 23:41:30 +02:00
gallypette 8b8f59e945 adds experience related to web application security. 2017-05-03 10:37:08 +02:00
gallypette 71022da639 adds experience related to crypto. 2017-05-03 10:31:28 +02:00
gallypette f772cf2ba5 Adds OS, and web-related items 2017-05-02 17:31:49 +02:00
gallypette f91a15bcec removes parts that belong to the analysis, adds predicates relating to reversing 2017-05-02 16:54:17 +02:00
Alexandre Dulaunoy f9d423643e Fix the asciidoctor admonition reference to have a proper output 2017-04-30 11:32:11 +02:00
Alexandre Dulaunoy d0029b49af machinetag list is now sorted by default 2017-04-30 11:03:19 +02:00
Alexandre Dulaunoy 081be4fcdd A first version of A series of assessment predicates describing the
analyst capabilities to perform analysis or making judgments under a
certain level of uncertainty. These assessment can be assigned by the
analyst him/herself or by another party evaluating the analyst or
the analysis.

This is based on various documents but especially those two documents:

- Psychology of Intelligence Analysis (Richards J. Heuer, Jr.)
- Judgment under Uncertainty: Heuristics and Biases (Amos Tversky; Daniel Kahneman)

The challenge when doing such taxonomy is to describes a human process
into a machine-readable taxonomy. So feedback (via PR or issues)
is more than welcome.
2017-04-19 21:19:32 +02:00
Alexandre Dulaunoy 3ea0aedc16 Merge pull request #61 from FloatingGhost/master
Basic binary taxonomy
2017-04-06 07:48:15 +02:00
Hannah Ward 311f30487c
fix: Typo in readme 2017-04-05 12:09:51 +01:00
Hannah Ward 6ae728cc3d
chg: Added binary-class to README 2017-04-05 12:08:16 +01:00
Hannah Ward ec73ce3ad4
new: Added basic binary file taxonomy.
Fixes #59
2017-04-05 12:00:00 +01:00
Alexandre Dulaunoy 6b783ef9ec Vocabulaire des probabilités estimatives added to index 2017-04-03 19:13:23 +02:00
Alexandre Dulaunoy 7f2c310d37 Merge branch 'master' of github.com:MISP/misp-taxonomies 2017-04-03 19:08:22 +02:00
Alexandre Dulaunoy 6a7d498b10 Vocabulaire des probabilités estimatives added based on the document
from "Service canadien de renseignements criminels".
2017-04-03 19:07:39 +02:00
Raphaël Vinot dbcc46cd0f Merge branch 'master' of github.com:MISP/misp-taxonomies 2017-04-02 22:07:23 +02:00
Raphaël Vinot 8930ad0a2e Make pep8 happy 2017-04-02 22:06:32 +02:00
Andras Iklody 0b02703c40 Typo corrected 2017-03-28 13:35:50 +02:00
Alexandre Dulaunoy 853939605e A first taxonomy covering DDoS attack 2017-03-05 17:02:49 +01:00
Raphaël Vinot 3ae38176b4 Merge pull request #60 from MISP/access
[WIP] Add assessnow taxonomy
2017-03-02 23:17:37 +01:00
Alexandre Dulaunoy dec71fc0cc Clean-up 2017-03-02 22:01:44 +01:00
Alexandre Dulaunoy 4bc5cbaab7 Proposal for blocking module expansion 2017-03-02 22:00:56 +01:00
Raphaël Vinot 136697abcc Add assessnow taxonomy 2017-02-23 15:46:02 +01:00
Raphaël Vinot 1c6ece2ae6 Update schema, fix taxonomies accordingly. 2017-02-13 16:39:06 +01:00
Raphaël Vinot fcde7e1af8 Merge branch 'master' of github.com:MISP/misp-taxonomies 2017-02-13 12:03:15 +01:00
Raphaël Vinot 3099290e4c JQ all the things 2017-02-13 12:02:51 +01:00
Raphaël Vinot 94290cfaa9 Add schema 2017-02-13 12:01:05 +01:00
Alexandre Dulaunoy 14cf779bf3 Diamond model added to the README and MANIFEST 2017-01-29 14:34:42 +01:00
Alexandre Dulaunoy a3e31c92c2 Merge pull request #58 from FloatingGhost/master
Update machinetag to allow running from any directory
2017-01-20 10:45:59 +01:00
Hannah Ward 2ef7392555
Update machinetag to allow running from any directory 2017-01-20 09:35:28 +00:00
Alexandre Dulaunoy f65e0a9b6e Merge pull request #57 from gbossert/killchain-weaponization
Typo fix: replaces weaponiSation by weaponiZation
2017-01-09 13:28:18 +01:00
Georges Bossert 2b47a71110 Upgrade version number from 1 to 2 in cyber killchain taxo. 2017-01-09 13:25:55 +01:00
Georges Bossert 8c5096b8d3 Typo fix: replaces weaponiSation by weaponiZation
The official term (see. http://www.lockheedmartin.com/us/what-we-do/aerospace-defense/cyber/cyber-kill-chain.html) relies on the American/Oxford
spelling.
2017-01-09 13:21:14 +01:00