chg: [datamodels] zeek added

pull/8/head
Alexandre Dulaunoy 2019-01-30 23:09:49 +01:00
parent 63e8861e7c
commit 1d45fec5ad
No known key found for this signature in database
GPG Key ID: 09E2CD4944E6CBCD
1 changed files with 4 additions and 0 deletions

View File

@ -175,6 +175,7 @@ The MISP format is described as Internet-Draft in [misp-rfc](https://github.com/
|x509-fingerprint-sha256| | X | X | X | | | |x509-fingerprint-sha256| | X | X | X | | |
|xmr| | | | | X | | |xmr| | | | | X | |
|yara| | X | | | | | |yara| | X | | | | |
|zeek| | | | X | | |
|Category| Network activity | Other | Payload delivery | Payload installation | Payload type | Persistence mechanism | |Category| Network activity | Other | Payload delivery | Payload installation | Payload type | Persistence mechanism |
| --- |:---:|:---:|:---:|:---:|:---:|:---:| | --- |:---:|:---:|:---:|:---:|:---:|:---:|
@ -334,6 +335,7 @@ The MISP format is described as Internet-Draft in [misp-rfc](https://github.com/
|x509-fingerprint-sha256| X | | X | X | | | |x509-fingerprint-sha256| X | | X | X | | |
|xmr| | | | | | | |xmr| | | | | | |
|yara| | | X | X | | | |yara| | | X | X | | |
|zeek| X | | | | | |
|Category| Person | Social network | Support Tool | Targeting data | |Category| Person | Social network | Support Tool | Targeting data |
| --- |:---:|:---:|:---:|:---:| | --- |:---:|:---:|:---:|:---:|
@ -493,6 +495,7 @@ The MISP format is described as Internet-Draft in [misp-rfc](https://github.com/
|x509-fingerprint-sha256| | | | | |x509-fingerprint-sha256| | | | |
|xmr| | | | | |xmr| | | | |
|yara| | | | | |yara| | | | |
|zeek| | | | |
### Categories ### Categories
@ -672,6 +675,7 @@ The MISP format is described as Internet-Draft in [misp-rfc](https://github.com/
* **x509-fingerprint-sha256**: X509 fingerprint in SHA-256 format * **x509-fingerprint-sha256**: X509 fingerprint in SHA-256 format
* **xmr**: Monero Address * **xmr**: Monero Address
* **yara**: Yara signature * **yara**: Yara signature
* **zeek**: An NIDS rule in the Zeek rule-format
## MISP objects ## MISP objects