From 923365cb59740b5d74d904097ec1136a65912c34 Mon Sep 17 00:00:00 2001 From: Alexandre Dulaunoy Date: Mon, 26 Nov 2018 14:24:55 +0100 Subject: [PATCH] chg: [blog] screenshots added --- _posts/2018-11-26-MISP.2.4.98.released.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/_posts/2018-11-26-MISP.2.4.98.released.md b/_posts/2018-11-26-MISP.2.4.98.released.md index 99761a8..4c30c30 100755 --- a/_posts/2018-11-26-MISP.2.4.98.released.md +++ b/_posts/2018-11-26-MISP.2.4.98.released.md @@ -11,6 +11,9 @@ reason for the validation failing. A user can view the failed/succeeded saves re A new experimental import functionality has been included to import SleuthKit mactime timelines from MISP directly. The user can import one or more mactime timelines in MISP, which will be included as a mactime object to describe forensic activities on an analysed file system. The import is a two-step process where the user can cherry pick the forensic events which took place and select the meaningful activity to be added in a MISP event. +![SleuthKit mactime import in MISP](https://www.misp-project.org/assets/images/misp/blog/mactime1.png) +![SleuthKit mactime imported in MISP as objects](https://www.misp-project.org/assets/images/misp/blog/mactime2.png) + The API has been improved with many new features such as: - The result counts to restsearch API are now visible via the x-result-count header