Commit graph

2501 commits

Author SHA1 Message Date
Mathieu4141
0ca98cd054 [threat-actors] Add Blackwood 2024-01-30 10:32:26 -08:00
262b95fa79
chg: [sigma] updated 2024-01-28 12:15:57 +01:00
Delta-Sierra
68cd2fca82 add mars and oski stealers 2024-01-26 16:11:12 +01:00
Mathieu4141
b8a504c174 [threat-actors] Add Cotton Sandstorm 2024-01-22 10:01:13 -08:00
Mathieu4141
b61a0a60a2 [threat-actors] Add Caliente Bandits 2024-01-22 10:01:13 -08:00
Mathieu4141
95b2a2e188 [threat-actors] Add Cyber Partisans 2024-01-22 10:01:13 -08:00
Mathieu4141
412f1885f2 [threat-actors] Add Hezb aliases 2024-01-22 10:01:13 -08:00
Mathieu4141
bd7252ccef [threat-actors] Add Flax Typhoon 2024-01-22 10:01:13 -08:00
Mathieu4141
3f9bd89958 [threat-actors] Add TAG-28 2024-01-22 10:01:13 -08:00
Christophe Vandeplas
3f142f52ab
fix: [mitre] fixed duplicate cluster uuid 2024-01-12 17:48:53 +01:00
Christophe Vandeplas
6ea968588a
new: [mitre] MITRE Data Sources and Data Components fixes #914 2024-01-12 17:36:05 +01:00
Mathieu4141
16e22180f1 [threat-actors] Add UTA0178 2024-01-11 08:25:33 -08:00
Mathieu4141
8c32c674cd [threat-actors] Add Water Curupira 2024-01-11 08:25:33 -08:00
Christophe Vandeplas
f9ecc163ea
chg: [mitre] updated to latest version 2024-01-10 19:13:24 +01:00
HiS3
f710768b05 update malpedia galaxy 2024-01-09 16:45:45 +01:00
84fc2b2749
chg: [threat-actor] version updated 2024-01-08 16:58:54 +01:00
Mathieu4141
1669da1661 [threat-actors] Add Cyber Toufan 2024-01-08 05:23:29 -08:00
Mathieu4141
09b90261ee [threat-actors] Add Threatsec 2024-01-08 05:23:29 -08:00
Mathieu4141
97ed1bda8b [threat-actors] Add Gray Sandstorm 2024-01-08 05:23:29 -08:00
Mathieu4141
273379e5fa [threat-actors] Add UAC-0099 2024-01-08 05:23:29 -08:00
Mathieu4141
fc8db1a4d2 [threat-actors] Add HomeLand Justice 2024-01-08 05:23:29 -08:00
Mathieu4141
2c7adf27a0 [threat-actors] Add Storm-1113 2024-01-08 05:23:29 -08:00
Mathieu4141
ce4be94d8b [threat-actors] Add KelvinSecurity 2024-01-08 05:23:28 -08:00
Mathieu4141
05f260c9d8 [threat-actors] Add Team-Xecuter 2024-01-08 05:23:28 -08:00
Mathieu4141
a6564bf61c [threat-actors] Add PhantomControl 2024-01-08 05:23:28 -08:00
Mathieu4141
f0229fbdd2 [threat-actors] Add GREF 2024-01-08 05:23:28 -08:00
c8e8a14b04
chg: [sigma] updated to the latest version 2024-01-04 15:21:48 +01:00
7950022194
fix: [mitre-atlas] tactics links fixed 2024-01-02 10:37:45 +01:00
901f6f0965
fix: [mitre-atlas] reference to Markdown link updated 2024-01-02 10:27:33 +01:00
919bfbce8b
chg: [sigma] updated to the latest version 2023-12-31 17:18:10 +01:00
Christophe Vandeplas
bbe7b95f84
fix: [disarm] drop duplicate values 2023-12-21 09:00:58 +01:00
Christophe Vandeplas
e750b1a786
Merge remote-tracking branch 'MISP/main' into feature/disarm 2023-12-20 16:37:34 +01:00
Christophe Vandeplas
ad9f4ee48d
chg: [disarm] relations 2023-12-20 16:15:51 +01:00
Mathieu4141
2cd9cf28a2 [threat-actors] Add GambleForce 2023-12-20 03:40:25 -08:00
Mathieu4141
b6ea7157b4 [threat-actors] Add Tortoiseshell aliases 2023-12-20 03:40:25 -08:00
Mathieu4141
38b67da12f [threat-actors] Add Taidoor aliases 2023-12-20 03:40:25 -08:00
Mathieu4141
8e53536147 [threat-actors] Add UNC4736 2023-12-20 03:40:25 -08:00
Mathieu4141
365bbbe24a [threat-actors] Add Solntsepek 2023-12-20 03:40:25 -08:00
Mathieu4141
a4c56efca8 [threat-actors] Add Storm-1283 2023-12-20 03:40:25 -08:00
Mathieu4141
8ed4377844 [threat-actors] Add BiBiGun 2023-12-20 03:40:24 -08:00
Christophe Vandeplas
f89d886566
fix: [disarm] fix UUID 2023-12-20 12:16:40 +01:00
Christophe Vandeplas
cd694fff6e
new: [disarm] add Actor Types 2023-12-20 11:26:33 +01:00
Christophe Vandeplas
e62301f5ce
new: [disarm] add Detections 2023-12-20 11:26:19 +01:00
Christophe Vandeplas
de62b43520
new: [disarm] add Countermeasures 2023-12-20 11:26:07 +01:00
Christophe Vandeplas
217e3eb171
fix: [disarm] fix UUIDs
to be generated based on a disarm specific UUID
2023-12-20 07:50:10 +01:00
Christophe Vandeplas
1c16ab3786
fix: [disarm] remove galaxy/cluster due to duplicates
see https://github.com/DISARMFoundation/DISARMframeworks/issues/24 and the feature/disarm branch here
2023-12-19 16:25:29 +01:00
Christophe Vandeplas
c6b218793f
fix: [mitre-atlas] better sorting of data 2023-12-19 16:00:09 +01:00
Christophe Vandeplas
bd3934697d
fix: [disarm] value without ID 2023-12-19 15:56:48 +01:00
Christophe Vandeplas
ae3202be02
fix: [mitre-atlas] value without ID 2023-12-19 15:36:44 +01:00
8c1b7507b3
Merge pull request #908 from MISP/feature/atlas
new: [mitre] New MITRE ATLAS Galaxy
2023-12-18 14:50:48 +01:00
c306125679
fix: [threat-actor] fix JSON 2023-12-18 14:43:21 +01:00
Christophe Vandeplas
adb9c2a052
new: [mitre] New MITRE ATLAS Galaxy 2023-12-18 12:49:14 +01:00
jstnk9
0dd2f95a50 new threat actor - Sandman APT
new threat actor - Sandman APT
2023-12-15 12:28:38 +01:00
Mathieu Beligon
92f9ed1148 [threat-actors] Add Callisto aliases 2023-12-14 15:00:22 +01:00
Mathieu Beligon
81c2e4d7fe [threat-actors] Add Hagga aliases 2023-12-14 15:00:22 +01:00
Mathieu Beligon
540c71d33b [threat-actors] Add Sandworm aliases 2023-12-14 15:00:22 +01:00
e5b4209f3a
chg: [cluster] Sigma rules updated 2023-12-14 11:38:53 +01:00
30f162675c
chg: [sigma] updated to the latest version 2023-12-08 13:59:08 +01:00
9c230f3705
Merge pull request #905 from Mathieu4141/threat-actors/dd7fd198-7ead-48ee-b763-50f2f9faa1c5
[threat-actors] Add 10 actors
2023-12-07 06:40:05 +01:00
Mathieu Beligon
6f3b85399b [threat-actors] jq 2023-12-06 17:59:16 -08:00
Mathieu Beligon
fdac01cd89 [threat-actors] Add UNC2630 2023-12-06 17:42:33 -08:00
Mathieu Beligon
47f0b31a32 [threat-actors] Add UAC-0050 2023-12-06 17:42:33 -08:00
Mathieu Beligon
228bbcc21d [threat-actors] Add UAC-0118 2023-12-06 17:42:33 -08:00
Mathieu Beligon
cf7cdcbc2b [threat-actors] Add DEV-0569 2023-12-06 17:42:33 -08:00
Mathieu Beligon
d155f1e05d [threat-actors] Add UNC215 2023-12-06 17:42:33 -08:00
Mathieu Beligon
79210345d0 [threat-actors] Add RomCom aliases 2023-12-06 17:42:33 -08:00
Mathieu Beligon
ebd216e315 [threat-actors] Add UNC2447 2023-12-06 17:42:33 -08:00
Mathieu Beligon
668fb80aec [threat-actors] Add WIP19 2023-12-06 17:42:33 -08:00
Mathieu Beligon
3719022d91 [threat-actors] Add AeroBlade 2023-12-06 17:42:33 -08:00
Mathieu Beligon
69a94b6c1e [threat-actors] Add UNC2659 2023-12-06 17:42:33 -08:00
Mathieu Beligon
b72868b6cd [threat-actors] Add UNC2717 2023-12-06 17:42:33 -08:00
Mathieu Beligon
7bb3c6ab5c [threat-actors] Update Scattered Spider 2023-12-06 14:00:32 -08:00
Mathieu Beligon
287a8d49cb [threat-actors] hormonize reference field 2023-12-05 14:32:26 -08:00
Christophe Vandeplas
b0ebc02b19
new: [disarm] Initial DISARM galaxy #783 2023-12-02 17:59:57 +01:00
Mathieu4141
0391d3f3a5 [threat-actors] Add Daixin Team 2023-12-01 16:21:53 -08:00
Mathieu4141
44c270e9dc [threat-actors] Add ScamClub 2023-12-01 16:21:53 -08:00
Mathieu4141
6c2cb8979f [threat-actors] Add TunnelSnake 2023-12-01 16:21:53 -08:00
dbbb075b1c
fix: [botnet] duplicate UUID removed 2023-11-30 06:38:19 +01:00
d3f163e6ac
fix: [botnet] replace duplicate UUID 2023-11-30 06:32:39 +01:00
Mathieu Beligon
31562e4701 [threat-actors] Add WildPressure 2023-11-29 11:28:37 -08:00
Mathieu Beligon
9c02509a28 [threat-actors] Add WildCard 2023-11-29 11:28:37 -08:00
Mathieu Beligon
830ded98d3 [threat-actors] Add Red-Lili 2023-11-29 11:28:37 -08:00
Mathieu Beligon
d4c2788b87 [threat-actors] Add LightBasin 2023-11-29 11:28:37 -08:00
Mathieu Beligon
313dd82bb9 [threat-actors] Add DragonForce 2023-11-29 11:28:37 -08:00
Mathieu Beligon
9c0f18e9b9 [threat-actors] Add MalKamak 2023-11-29 11:28:37 -08:00
Mathieu Beligon
f066061f4b [threat-actors] Add Blacktail 2023-11-29 11:28:37 -08:00
c2a712d0d4
fix: [botnet] updated version 2023-11-28 08:59:33 +01:00
ded4162649
Merge pull request #900 from semelnyk/main
Updated botnet.json with new entries
2023-11-28 08:52:34 +01:00
semelnyk
5313f22343 Ran once again jq_all_the_things.sh to format JSON files 2023-11-27 23:18:38 +01:00
semelnyk
ca67778eb0 Ran jq_all_the_things.sh to format JSON files 2023-11-27 23:13:26 +01:00
semelnyk
5403d70b69 Updated botnet.json with new entries 2023-11-27 22:49:36 +01:00
Delta-Sierra
0b44ea33f0 fix version 2023-11-21 15:20:21 +01:00
Delta-Sierra
019292a1c1 Merge https://github.com/MISP/misp-galaxy 2023-11-21 12:33:20 +01:00
Delta-Sierra
53ea633504 Kimsuky target 2023-11-21 11:45:05 +01:00
Delta-Sierra
70456bd8ac Kimsuky relations 2023-11-21 11:40:50 +01:00
d6feab1586
Merge branch 'main' of github.com:MISP/misp-galaxy into main 2023-11-21 10:03:37 +01:00
e88c316e2d
chg: [sigma] updated to the latest version 2023-11-21 09:04:04 +01:00
Mathieu4141
29baf77740 [threat-actors] Add SilverFish 2023-11-20 09:29:07 -08:00
Mathieu4141
ee2a8bec32 [threat-actors] Add TA402 2023-11-20 09:29:07 -08:00
Mathieu4141
00ca4c865f [threat-actors] Add CostaRicto 2023-11-20 09:29:07 -08:00
Mathieu4141
4c9063b772 [threat-actors] Add Storm Cloud 2023-11-20 09:29:06 -08:00
Mathieu4141
c4142b2ee7 [threat-actors] Add OldGremlin 2023-11-20 09:29:06 -08:00
Mathieu4141
a08311c5f1 [threat-actors] Add TiltedTemple 2023-11-20 09:29:06 -08:00
Mathieu4141
93d9db10a3 [threat-actors] Add Moshen Dragon 2023-11-20 09:29:05 -08:00
Mathieu4141
d477275a53 [threat-actors] Add N4ughtysecTU 2023-11-20 09:29:05 -08:00
Mathieu4141
2ac369ac61 [threat-actors] Add Webworm 2023-11-20 09:29:05 -08:00
Mathieu4141
32a78f3d26 [threat-actors] Add PerSwaysion 2023-11-20 09:29:05 -08:00
Mathieu4141
fc2cb9e253 [threat-actors] Add DefrayX 2023-11-17 02:59:57 -08:00
Mathieu4141
a81ac9687f [threat-actors] Add NewsPenguin 2023-11-17 02:59:56 -08:00
Mathieu4141
5b993d2517 [threat-actors] Add UAC-0006 2023-11-17 02:59:56 -08:00
Mathieu4141
d3c15e1652 [threat-actors] Add TA444 2023-11-17 02:59:56 -08:00
Mathieu4141
3c9f09edfc [threat-actors] Add WeedSec 2023-11-17 02:59:56 -08:00
Mathieu4141
e333b15063 [threat-actors] Add TEMP_Heretic 2023-11-17 02:59:55 -08:00
Mathieu4141
68f70a1831 [threat-actors] Add DEV-0928 2023-11-17 02:59:55 -08:00
Mathieu4141
ed0d3c6f57 [threat-actors] Add CL-STA-0043 2023-11-17 02:59:55 -08:00
Mathieu4141
d3836318a2 [threat-actors] Add UNC4841 2023-11-17 02:59:55 -08:00
Mathieu4141
c832066fa5 [threat-actors] Add AppMilad 2023-11-16 07:10:19 -08:00
Mathieu4141
6e7e5e60ce [threat-actors] Add Earth Kitsune 2023-11-16 07:10:19 -08:00
Mathieu4141
5d6bcf5e55 [threat-actors] Add FusionCore 2023-11-16 07:10:18 -08:00
Mathieu4141
d365624734 [threat-actors] Add DragonSpark 2023-11-16 07:10:18 -08:00
Mathieu4141
dc9d98ffe9 [threat-actors] Add UNC4191 2023-11-16 07:10:18 -08:00
Mathieu4141
941ef757bb [threat-actors] Add DriftingCloud 2023-11-16 07:10:18 -08:00
Mathieu4141
ce555828e1 [threat-actors] Add MurenShark 2023-11-16 07:10:18 -08:00
Mathieu4141
f759525c25 [threat-actors] Add Chernovite 2023-11-16 07:10:18 -08:00
Mathieu4141
03d16eba61 [threat-actors] Add VulzSecTeam 2023-11-16 07:10:18 -08:00
Mathieu4141
622d67eb38 [threat-actors] Add MirrorFace 2023-11-16 07:10:17 -08:00
179afe9715
chg: [surveillance] version updated and duplicates removed 2023-11-16 15:38:35 +01:00
6ab8f62cb8
Merge branch 'threat-actors/fe99d09c-e4e7-4842-bd26-3ed3f4350bed' of https://github.com/Mathieu4141/misp-galaxy into Mathieu4141-threat-actors/fe99d09c-e4e7-4842-bd26-3ed3f4350bed 2023-11-16 15:35:31 +01:00
b0a5801ae7
fix: [mitre-tool] fix following request the lead developer of flowintel-cm 2023-11-16 15:32:08 +01:00
Mathieu4141
3209c45b42 [threat-actors] Add KAX17 2023-11-15 08:19:01 -08:00
Mathieu4141
247dd86523 [threat-actors] Add Bohrium 2023-11-15 08:19:01 -08:00
semelnyk
293947d863 Updated surveillance-vendor.json with new entries 2023-11-14 15:23:09 +01:00
Daniel Plohmann
99b23e31a3
adding Prolific Puma 2023-11-13 14:43:08 +01:00
Mathieu4141
28e02d308f [threat-actors] Add DarkCasino 2023-11-13 04:36:57 -08:00
Mathieu4141
b3584d5f9c [threat-actors] Add Zarya 2023-11-13 04:36:57 -08:00
Mathieu4141
a3802487a4 [threat-actors] Add XakNet 2023-11-13 04:36:57 -08:00
Mathieu4141
cf895b3b20 [threat-actors] Add TA482 2023-11-13 04:36:57 -08:00
Mathieu4141
775451488d [threat-actors] Add TAG-56 2023-11-13 04:36:57 -08:00
Mathieu4141
91e5c37a40 [threat-actors] Add Water Labbu 2023-11-13 04:36:56 -08:00
Mathieu4141
dc054efb62 [threat-actors] Add Caracal Kitten 2023-11-13 04:36:56 -08:00
Mathieu4141
59930c1b0b [threat-actors] Add WIRTE 2023-11-13 04:36:56 -08:00
Mathieu4141
9ff1b1d2e3 [threat-actors] Add WeRedEvils 2023-11-13 04:36:56 -08:00
Mathieu4141
7b7ffa4532 [threat-actors] Add DEV-0950 2023-11-13 04:36:56 -08:00
Mathieu4141
f5b7ad5478 [threat-actors] Add DiceyF 2023-11-08 06:14:54 -08:00
Mathieu4141
23b95c50d5 [threat-actors] Add SCARLETEEL 2023-11-08 06:14:54 -08:00
Mathieu4141
b59b270500 [threat-actors] Add SingularityMD 2023-11-08 06:14:54 -08:00
Mathieu4141
f52382a29a [threat-actors] Add Dalbit 2023-11-07 10:37:08 -08:00
Mathieu4141
56f990d100 [threat-actors] Add BlueBottle 2023-11-07 10:37:08 -08:00
Mathieu4141
59bd2763bc [threat-actors] Add Xcatze 2023-11-07 10:37:08 -08:00
Mathieu4141
44617774b6 [threat-actors] Add TwoSail Junk 2023-11-07 10:37:08 -08:00
Mathieu4141
c0dda66200 [threat-actors] Add DEV-1028 2023-11-07 10:37:08 -08:00
Mathieu4141
5069f86555 [threat-actors] Add Kiss-a-Dog 2023-11-07 10:37:08 -08:00
Mathieu4141
c36ddd75db [threat-actors] Add Confucious 2023-11-07 10:37:08 -08:00
Mathieu4141
34e03e6b56 [threat-actors] Add Desorden Group 2023-11-07 10:37:08 -08:00
Mathieu4141
e1eec18aa3 [threat-actors] Add UNC2565 2023-11-07 10:37:07 -08:00
Mathieu4141
6da7b218fc [threat-actors] Add TheDarkOverlord 2023-11-07 10:37:07 -08:00
32062206be
fix: [threat-actor] replace aliases -> synonyms + version updated 2023-11-07 16:08:19 +01:00
Mathieu Beligon
a1f64c63de [threat-actors] Add TraderTraitor 2023-11-07 14:47:12 +01:00
Mathieu Beligon
c0fd66e3cd [threat-actors] Add UAC-0094 2023-11-07 14:47:12 +01:00
Mathieu Beligon
7163ed2068 [threat-actors] Add UserSec 2023-11-07 14:47:12 +01:00
Mathieu Beligon
c3b6878cf3 [threat-actors] Add IronHusky 2023-11-07 14:47:12 +01:00
Mathieu Beligon
1246088d76 [threat-actors] Add ShinyHunters 2023-11-07 14:47:12 +01:00
Mathieu Beligon
798cebc970 [threat-actors] Add ShroudedSnooper 2023-11-07 14:47:12 +01:00
Mathieu Beligon
2111f50968 [threat-actors] Add 1937CN 2023-11-07 14:47:12 +01:00
Mathieu Beligon
40fb100ff9 [threat-actors] Add Altahrea Team 2023-11-07 14:47:12 +01:00
Mathieu Beligon
4093632674 [threat-actors] Add Cyber Av3ngers 2023-11-07 14:47:12 +01:00
Mathieu Beligon
58fb9162b0 [threat-actors] Add KromSec 2023-11-07 14:47:12 +01:00
Mathieu Beligon
d1f382602c [threat-actors] Add DustSquad 2023-11-07 14:47:11 +01:00
Mathieu Beligon
bc8904110b [threat-actors] Add Guacamaya 2023-11-07 14:47:11 +01:00
Mathieu Beligon
10d27206a7 [threat-actors] Add SharpPanda 2023-11-07 14:47:11 +01:00
Mathieu Beligon
ff9a8ddfe3 [threat-actors] Add BadRory 2023-11-07 14:47:11 +01:00
e24fecbd40
fix: [threat-actor] synonyms not aliases 2023-11-07 11:22:32 +01:00
b13eee558f
chg: [threat-actor] TA499 added 2023-11-07 11:12:35 +01:00
f2cc04fca8
chg: [threat-actor] version updated 2023-11-07 09:27:07 +01:00
Mathieu4141
5828ba1a9d [threat-actors] Add Storm-1133 2023-11-06 05:26:26 -08:00
Mathieu4141
4a3968e873 [threat-actors] Add REF2924 2023-11-06 05:26:26 -08:00
Mathieu4141
18811f8056 [threat-actors] Add REF5961 2023-11-06 05:26:26 -08:00
Mathieu4141
ee354d9d75 [threat-actors] Add HiddenArt 2023-11-06 05:26:26 -08:00
Mathieu4141
bfb03504a9 [threat-actors] Add OilAlpha 2023-11-06 05:26:26 -08:00
Mathieu4141
152ab38b10 [threat-actors] Add GhostSec 2023-11-06 05:26:26 -08:00
Mathieu4141
5a4a697e8c [threat-actors] Add IndigoZebra 2023-11-06 05:26:25 -08:00
Mathieu4141
971b17b79f [threat-actors] Add NB65 2023-11-06 05:26:25 -08:00
Mathieu4141
84fec96df9 [threat-actors] Add Witchetty 2023-11-06 05:26:25 -08:00
Mathieu4141
eb43d9faf2 [threat-actors] Add RedStinger 2023-11-06 05:26:25 -08:00
Mathieu Beligon
025345e1b6 [threat-actors] remove duplicate 2023-11-03 20:09:05 +01:00
Mathieu Beligon
a65bb60d90 [threat-actors] Add UNC3890 2023-11-03 19:02:12 +01:00
Mathieu Beligon
84fda6ef72 [threat-actors] Add Carderbee 2023-11-03 19:02:12 +01:00
Mathieu Beligon
1343cdb35a [threat-actors] Add RansomVC 2023-11-03 19:02:12 +01:00
Mathieu Beligon
ea227222ea [threat-actors] Add SiegedSec 2023-11-03 19:02:12 +01:00
Mathieu Beligon
44d7b3e88f [threat-actors] Add Metador 2023-11-03 19:02:12 +01:00
Mathieu Beligon
0133c023d2 [threat-actors] Add YoroTrooper 2023-11-03 19:02:12 +01:00
Mathieu Beligon
58e8dfef71 [threat-actors] Add Kasablanka 2023-11-03 19:02:12 +01:00
Mathieu Beligon
0f1777df92 [threat-actors] Add SparklingGoblin 2023-11-03 19:02:12 +01:00
Mathieu Beligon
419c62cea1 [threat-actors] Add Storm-0062 2023-11-03 19:02:12 +01:00
Mathieu Beligon
13c770f0a7 [threat-actors] Add LofyGang 2023-11-03 19:02:12 +01:00
0b5b9ca5a3
chg: [threat-actor] version updated 2023-11-03 14:00:21 +01:00
Mathieu Beligon
9d6315346e [threat-actors] jq 2023-11-03 11:32:24 +01:00
Mathieu Beligon
9c502d0d1f [threat-actors] Add Lancefly 2023-11-03 11:13:11 +01:00
Mathieu Beligon
73c73606ff [threat-actors] Add GoldenJackal 2023-11-03 11:13:11 +01:00
Mathieu Beligon
64f0a87ed7 [threat-actors] Add Earth Estries 2023-11-03 11:13:11 +01:00