Commit graph

2933 commits

Author SHA1 Message Date
Deborah Servili
a646a835fe
add Rosenbridge backdoor 2018-08-14 10:09:26 +02:00
Christophe Vandeplas
4d232c56e0 cosmetic change 2018-08-14 09:38:38 +02:00
Christophe Vandeplas
88162aa44e chg: [mapping] Generated automatic mapping between clusters 2018-08-14 09:35:22 +02:00
Christophe Vandeplas
5478f0aa45 no change: dump files with sort_keys=True
This is needed to keep better track of the changes when other tools load and save the json files.
2018-08-13 17:06:29 +02:00
Christophe Vandeplas
021107e597 fix: [threat-actor] added missing uuids 2018-08-13 17:00:40 +02:00
Deborah Servili
b100b0cedd
add KEYPASS ransomware 2018-08-13 15:50:09 +02:00
Deborah Servili
f1dcb05576
Merge pull request #246 from Delta-Sierra/master
add Skygofree android spyware
2018-08-13 12:28:30 +02:00
Deborah Servili
56fe9eb63c
add Skygofree android spyware 2018-08-13 12:20:16 +02:00
9059a85eed
chg: [tool] KEYMARBLE malware added
ref: https://www.us-cert.gov/ncas/analysis-reports/AR18-221A
2018-08-11 16:14:39 +02:00
e8ffc75d4a
Merge pull request #245 from Delta-Sierra/master
add tools used by SamSam
2018-08-09 16:04:04 +02:00
Deborah Servili
27805ca768
add tools used by SamSam 2018-08-09 15:55:36 +02:00
Deborah Servili
37396ed6ca
Merge pull request #244 from Delta-Sierra/master
add ransomwares
2018-08-09 14:31:38 +02:00
Deborah Servili
597e7bacb9
add ransomwares 2018-08-09 13:53:04 +02:00
6620b5575a
fix: [threat-actor] related is an array of JSON objects 2018-08-09 07:53:42 +02:00
7d4ff9730d
fix: [JSON schema] related element is an array of JSON objects 2018-08-09 07:52:47 +02:00
cff9ec6905
Merge branch 'Delta-Sierra-master' 2018-08-08 16:39:24 +02:00
1429b60555
chg: [threat-actor] jq document 2018-08-08 16:38:39 +02:00
0af22724a6
chg: [schema clusters] fix the JSON indentation 2018-08-08 16:37:59 +02:00
e1c0164d8b
Merge branch 'master' of https://github.com/Delta-Sierra/misp-galaxy into Delta-Sierra-master 2018-08-08 16:36:46 +02:00
Deborah Servili
ebc7287e14
update schema 2018-08-08 16:12:29 +02:00
Deborah Servili
803b75647e
update schema 2018-08-08 16:05:11 +02:00
Deborah Servili
33a300b773
tags is an array 2018-08-08 15:59:44 +02:00
Deborah Servili
b857be9cab
relationship system - v2 2018-08-08 15:51:22 +02:00
Deborah Servili
050a864be0
update some clusters and try to add a relationship system 2018-08-08 14:20:38 +02:00
Deborah Servili
f6f41713c5
Merge pull request #242 from Delta-Sierra/master
add RedAlpha campaigns
2018-08-07 14:02:23 +02:00
Deborah Servili
84adb50f0f
add RedAlpha campaigns 2018-08-07 13:55:05 +02:00
bdceed0b68
Merge pull request #239 from Delta-Sierra/master
more clusters
2018-08-06 09:19:11 +02:00
Deborah Servili
b7de06ffcc
delete forgotten conflict marker 2018-08-06 08:49:44 +02:00
Deborah Servili
010df0a2b6
resolve merge conflict 2018-08-06 08:48:21 +02:00
Deborah Servili
def23775e5
resolve merge conflict 2018-08-06 08:45:03 +02:00
38f559a3ff
Merge pull request #241 from 3c7/threat-actor/darkhydrus
Added DarkHydrus
2018-08-06 08:39:16 +02:00
Nils Kuhnert
ab49b58b02
Added DarkHydrus 2018-08-06 08:33:34 +02:00
5b35495e40
Merge pull request #240 from 3c7/fix/typos
Two small typos
2018-08-05 15:54:44 +02:00
Nils Kuhnert
4654f51889
Two small typos 2018-08-05 15:09:38 +02:00
Deborah Servili
e5b185deee
Merge branch 'master' into master 2018-08-03 16:11:16 +02:00
Deborah Servili
35aa8ba34e
delete duplicate gorgon group 2018-08-03 16:08:43 +02:00
Deborah Servili
a9a71ef84c
more clusters 2018-08-03 15:58:54 +02:00
b3701b6b34
chg: [threat-actor] The Gordon Group added
ref: https://researchcenter.paloaltonetworks.com/2018/08/unit42-gorgon-group-slithering-nation-state-cybercrime/
2018-08-03 10:26:52 +02:00
a0dfdd65ae
chg: [rat] Hallaj PRO Rat added
ref: https://securelist.com/attacks-on-industrial-enterprises-using-rms-and-teamviewer/87104/
misp-event: 5b63f5e4-bf24-4f46-8340-48fc02de0b81
2018-08-03 08:34:55 +02:00
3da005a3f3
fix: jq all the things(tm) 2018-08-02 15:15:47 +02:00
1fdf47d509
fix: [threat-actor] synonyms are always arraus 2018-08-02 15:13:18 +02:00
ece56dff38
chg: [threat-actor] leafminer - RASPITE added 2018-08-02 15:08:39 +02:00
c232b3dd5a
chg: [tool] added based on Carbanak tooling description from Crowdstrike
ref: https://www.crowdstrike.com/blog/arrests-put-new-focus-on-carbon-spider-adversary-group/
2018-08-02 10:30:47 +02:00
43fa95df7a
chg: [threat-actor] new reference to CARBON SPIDER/Carbanak 2018-08-02 10:03:18 +02:00
4cf84858e3
chg: [tool] Bisonal malware added (new variant with encryption capabilities) 2018-07-31 15:26:11 +02:00
83497c54ef
Merge pull request #238 from Delta-Sierra/master
add Kronos Banking Trojan
2018-07-25 14:47:25 +02:00
Deborah Servili
e7d2541929 add Kronos Banking Trojan 2018-07-25 09:46:46 +02:00
Deborah Servili
043a285a5d
Merge pull request #237 from Delta-Sierra/master
Add CFR.org metadata into the galaxy - part 2
2018-07-25 09:22:17 +02:00
Deborah Servili
381f7e4a19 Add CFR.org metadata into the galaxy - part 2 2018-07-25 09:08:16 +02:00
Deborah Servili
28456545be Merge https://github.com/MISP/misp-galaxy 2018-07-16 09:16:13 +02:00