Deborah Servili
|
d6e4c166c5
|
add an unnamed ransomware
|
2018-05-04 15:59:37 +02:00 |
|
Deborah Servili
|
ba631f1b43
|
add spymaster pro as rat
|
2018-05-04 15:12:56 +02:00 |
|
Deborah Servili
|
58e3e5f5d6
|
add ZooPark campaign
|
2018-05-04 10:16:01 +02:00 |
|
|
6b1d7d2201
|
add: threat actors from Dragos Inc. (based on https://dragos.com/adversaries.html)
|
2018-05-03 21:22:09 +02:00 |
|
Deborah Servili
|
979c784640
|
jq
|
2018-05-03 16:08:27 +02:00 |
|
Deborah Servili
|
83581c62b0
|
add Rubella Macro Builder
|
2018-05-03 15:38:06 +02:00 |
|
Deborah Servili
|
434716df86
|
add GravityRAT
|
2018-05-03 14:35:20 +02:00 |
|
Deborah Servili
|
55504f93d6
|
add HOGFISH as APT10 synonym
|
2018-05-03 11:10:21 +02:00 |
|
Deborah Servili
|
9a800ebec1
|
add Henbox
|
2018-05-03 10:57:39 +02:00 |
|
Deborah Servili
|
11f0963468
|
add Orangeworm, Kwampirs, Iron ransomware and Ton ransomware
|
2018-04-24 10:20:11 +02:00 |
|
Deborah Servili
|
6bf2004bd5
|
add Muhstik botnet
|
2018-04-23 09:26:28 +02:00 |
|
Stefan Kelm
|
0b63cb683b
|
NMCRYPT ransomware
|
2018-04-20 11:28:02 +02:00 |
|
Deborah Servili
|
f95f7b6057
|
Merge branch 'master' of https://github.com/Delta-Sierra/misp-galaxy
|
2018-04-20 10:27:54 +02:00 |
|
Deborah Servili
|
338eb7ab61
|
jq
|
2018-04-20 10:26:11 +02:00 |
|
Deborah Servili
|
6e2c0ea809
|
Update Ransomware galaxy version
|
2018-04-20 10:18:33 +02:00 |
|
Deborah Servili
|
f87da7a3a6
|
add Xiaoba
|
2018-04-20 10:13:52 +02:00 |
|
Deborah Servili
|
0e0c806e9e
|
Merge https://github.com/MISP/misp-galaxy
|
2018-04-19 16:04:18 +02:00 |
|
Deborah Servili
|
473bf61fc7
|
add some ransomwares
|
2018-04-19 15:00:30 +02:00 |
|
Daniel Roethlisberger
|
8c861848f8
|
Add Comnie RAT.
|
2018-04-17 15:49:05 +02:00 |
|
StefanKelm
|
74610731ee
|
Added 'Chtonic' synonym
|
2018-04-16 15:37:23 +02:00 |
|
StefanKelm
|
eff4ace398
|
Remove Chthonic since it's a duplicate (banker.json)
|
2018-04-16 15:34:59 +02:00 |
|
Deborah Servili
|
c785ee6384
|
add some ransomwares & threat actors
|
2018-04-16 09:24:11 +02:00 |
|
Deborah Servili
|
1a18ffb3eb
|
add Rovnix
|
2018-04-11 16:30:58 +02:00 |
|
Deborah Servili
|
e4b95abce3
|
add IcedID reference
|
2018-04-11 11:59:35 +02:00 |
|
Deborah Servili
|
c773597155
|
add GoScanSSH tool
|
2018-04-10 15:56:27 +02:00 |
|
Deborah Servili
|
113599bb24
|
add LockCrypt ransomware
|
2018-04-10 15:15:08 +02:00 |
|
Deborah Servili
|
a11bd66cf3
|
jq
|
2018-04-10 10:54:58 +02:00 |
|
Deborah Servili
|
ef8b428838
|
add PUBG ransomware
|
2018-04-10 10:54:36 +02:00 |
|
Deborah Servili
|
6f3921076a
|
update matrix ransomware
|
2018-04-09 15:49:11 +02:00 |
|
Deborah Servili
|
20b1508e4b
|
update version
|
2018-04-09 14:59:12 +02:00 |
|
Deborah Servili
|
e67a7b015d
|
update matrix ransomware
|
2018-04-09 14:52:07 +02:00 |
|
Deborah Servili
|
8596ff3e10
|
update threat actor galaxy based on https://www.fireeye.com/content/dam/collateral/en/mtrends-2018.pdf
|
2018-04-09 11:52:12 +02:00 |
|
Deborah Servili
|
386349c607
|
add BlackRuby& WhiteRose ransomwares (+some fix)
|
2018-04-06 12:00:57 +02:00 |
|
Deborah Servili
|
47a0fbed8c
|
merge the two Igexin clusters - fix #183
|
2018-04-05 13:47:09 +02:00 |
|
Deborah Servili
|
2bd3344eb6
|
add 2 -supposed- wipers
|
2018-04-05 11:51:13 +02:00 |
|
Deborah Servili
|
a0e8e45321
|
update ransomware galaxy versionC
|
2018-04-05 10:46:48 +02:00 |
|
Deborah Servili
|
7584c5f2a1
|
update cryptomix
|
2018-04-05 10:45:26 +02:00 |
|
Deborah Servili
|
b31f2632fd
|
update botnet version
|
2018-04-05 09:49:57 +02:00 |
|
Deborah Servili
|
73e14c53eb
|
complete hajime botnet
|
2018-04-04 16:22:50 +02:00 |
|
Deborah Servili
|
572404dcc7
|
add hajime botnet
|
2018-04-04 14:41:57 +02:00 |
|
Deborah Servili
|
a78972e0ac
|
Merge pull request #181 from Delta-Sierra/master
add external_id to values (MITRE galaxies)
|
2018-04-04 14:09:49 +02:00 |
|
Deborah Servili
|
8d4053741b
|
jq
|
2018-04-04 12:54:04 +02:00 |
|
Deborah Servili
|
804fcedb5c
|
add external_id to values
|
2018-04-03 15:53:17 +02:00 |
|
|
f4d7fe0166
|
add: SHARPKNOT
|
2018-03-29 16:31:05 +02:00 |
|
Kafeine
|
6c7d0f8684
|
+ThreadKit
|
2018-03-26 18:05:14 +01:00 |
|
Raphaël Vinot
|
24fa5b8b1b
|
Merge branch 'master' of github.com:MISP/misp-galaxy
|
2018-03-23 10:40:32 +01:00 |
|
Raphaël Vinot
|
f6695f5b56
|
fix: Duplicate UUID in tools
|
2018-03-23 10:40:21 +01:00 |
|
Deborah Servili
|
0f14c2e563
|
Merge https://github.com/MISP/misp-galaxy
|
2018-03-23 08:28:20 +01:00 |
|
Deborah Servili
|
3ae0e5f113
|
add several tools
|
2018-03-23 08:27:14 +01:00 |
|
StefanKelm
|
cdf5344719
|
Update mitre-enterprise-attack-intrusion-set.json
|
2018-03-22 14:32:59 +01:00 |
|
StefanKelm
|
9add19ae7f
|
Update and rename mitre-entreprise-attack-tool.json to mitre-enterprise-attack-tool.json
|
2018-03-22 14:03:31 +01:00 |
|
StefanKelm
|
a1daa975aa
|
Update and rename mitre-entreprise-attack-relationship.json to mitre-enterprise-attack-relationship.json
|
2018-03-22 14:02:30 +01:00 |
|
StefanKelm
|
9d612ba3d9
|
Update and rename mitre-entreprise-attack-malware.json to mitre-enterprise-attack-malware.json
|
2018-03-22 14:01:27 +01:00 |
|
StefanKelm
|
b9aef43c73
|
Update and rename mitre-entreprise-attack-intrusion-set.json to mitre-enterprise-attack-intrusion-set.json
|
2018-03-22 14:00:20 +01:00 |
|
StefanKelm
|
36204644f1
|
Update mitre-enterprise-attack-course-of-action.json
|
2018-03-22 13:59:42 +01:00 |
|
StefanKelm
|
b619c8fc32
|
Update and rename mitre-entreprise-attack-course-of-action.json to mitre-enterprise-attack-course-of-action.json
|
2018-03-22 13:58:39 +01:00 |
|
StefanKelm
|
24930772c5
|
Update and rename mitre-entreprise-attack-attack-pattern.json to mitre-enterprise-attack-attack-pattern.json
|
2018-03-22 13:57:45 +01:00 |
|
Deborah Servili
|
011e0e9574
|
update Android galaxy based on: https://source.android.com/security/reports/Google_Android_Security_2017_Report_Final.pdf - possible duplicates!
|
2018-03-21 16:17:33 +01:00 |
|
Deborah Servili
|
181d4604a5
|
add Zenis ransomware
|
2018-03-21 15:22:21 +01:00 |
|
Deborah Servili
|
8cfd258ee3
|
Merge branch 'master' into master
|
2018-03-21 08:31:56 +01:00 |
|
Deborah Servili
|
510347c730
|
add gamut botnet
|
2018-03-21 08:29:41 +01:00 |
|
Kafeine
|
9e30ff1345
|
+Glazunov
|
2018-03-19 09:23:27 +00:00 |
|
Daniel Plohmann (jupiter)
|
83fd4a9af9
|
added leviathan
|
2018-03-17 11:57:10 +01:00 |
|
Dennis Rand
|
080e68a30f
|
Added RoyalCli and RoyalDNS related to APT15 based on information from NCC Group
|
2018-03-15 22:08:06 +00:00 |
|
|
468f9dcb9d
|
Merge pull request #171 from Delta-Sierra/master
add qwerty ransomware
|
2018-03-15 10:47:37 +01:00 |
|
Deborah Servili
|
2e9827d9a3
|
jq
|
2018-03-15 10:41:37 +01:00 |
|
Deborah Servili
|
37a0b96a7b
|
add qwertyransomware
|
2018-03-15 10:40:34 +01:00 |
|
eCrimeLabs
|
bfeb9d772c
|
Malware Used by APT37
Malware Used by APT37
|
2018-03-14 22:11:43 +00:00 |
|
eCrimeLabs
|
84215d0003
|
Added tools from APT37
Malware Used by APT37
|
2018-03-14 21:53:35 +00:00 |
|
Deborah Servili
|
5fa09c0962
|
update version
|
2018-03-12 11:54:29 +01:00 |
|
Deborah Servili
|
e6a703e359
|
jq
|
2018-03-12 11:53:06 +01:00 |
|
Deborah Servili
|
e3c6e7e238
|
add missing uuid
|
2018-03-12 11:52:51 +01:00 |
|
Deborah Servili
|
4aa73942e7
|
add ref for BS2005
|
2018-03-12 11:46:04 +01:00 |
|
Deborah Servili
|
73eb11fedd
|
update Mirage Threat actor
|
2018-03-12 10:44:57 +01:00 |
|
Deborah Servili
|
11daa2e1e0
|
add Nautilus, Neuron and update GandCrab
|
2018-03-12 10:23:57 +01:00 |
|
Deborah Servili
|
2fc9fb86d2
|
update GandCrab
|
2018-03-09 15:35:42 +01:00 |
|
Deborah Servili
|
ca7034a117
|
jq all the things
|
2018-03-09 14:53:31 +01:00 |
|
Deborah Servili
|
0c1e0b86b5
|
add missing uuid
|
2018-03-09 14:39:14 +01:00 |
|
Deborah Servili
|
ac8dc7122c
|
add Shipup
|
2018-03-09 14:34:14 +01:00 |
|
Deborah Servili
|
1b19f99f87
|
add ghotex
|
2018-03-09 14:29:24 +01:00 |
|
Deborah Servili
|
d2ad0f1c09
|
add miniflame
|
2018-03-09 12:20:06 +01:00 |
|
Deborah Servili
|
6096c45da5
|
add Downloader-FGO
|
2018-03-09 11:32:31 +01:00 |
|
Deborah Servili
|
a415a48d71
|
add Cheshire Cat -hack.lu video as reference!
|
2018-03-09 10:47:17 +01:00 |
|
Deborah Servili
|
0ad7f06cf6
|
add Aurora/Hydraq
|
2018-03-09 10:18:47 +01:00 |
|
Deborah Servili
|
0cfc8907f3
|
add Rotinom
|
2018-03-09 09:25:40 +01:00 |
|
Deborah Servili
|
773d764445
|
add Exforel
|
2018-03-09 09:21:32 +01:00 |
|
Deborah Servili
|
58e10c9af4
|
add RSAUtil and Coldroot
|
2018-03-07 13:00:07 +01:00 |
|
Deborah Servili
|
ee3c858e4f
|
Add TSCookie Malware and RAT
|
2018-03-06 13:28:28 +01:00 |
|
Deborah Servili
|
3f8b44bbe3
|
jq
|
2018-03-01 15:02:48 +01:00 |
|
Deborah Servili
|
227fa8b44f
|
Merge https://github.com/MISP/misp-galaxy
|
2018-03-01 15:01:49 +01:00 |
|
Deborah Servili
|
b3574f880a
|
jq ftw
|
2018-02-28 16:16:28 +01:00 |
|
Deborah Servili
|
d88a4a44dc
|
add uuid to every cluster
|
2018-02-28 15:37:37 +01:00 |
|
|
22bf4f951f
|
fix #161
|
2018-02-27 19:32:07 +01:00 |
|
Deborah Servili
|
2eea951b71
|
add extension for Thanatos ransomware
|
2018-02-27 16:23:13 +01:00 |
|
Deborah Servili
|
63f77a81ec
|
add botnets to galaxy
|
2018-02-27 16:04:23 +01:00 |
|
Deborah Servili
|
bfd74bb54d
|
add Thanatos ransomware
|
2018-02-27 15:03:26 +01:00 |
|
Deborah Servili
|
8f0e6058b8
|
Removing duplicates refs - 2
|
2018-02-23 11:49:32 +01:00 |
|
Deborah Servili
|
dd62ea1844
|
manage duplicate refs - first try
|
2018-02-23 11:44:17 +01:00 |
|
Deborah Servili
|
fd9919e67a
|
jq all the things
|
2018-02-23 08:38:32 +01:00 |
|
Deborah Servili
|
4ddb598de4
|
add MITRE Galaxies V2.0
|
2018-02-21 16:28:11 +01:00 |
|
Deborah Servili
|
384e26a1b4
|
create botnet galaxy
|
2018-02-20 15:33:24 +01:00 |
|
Deborah Servili
|
6147b89c4a
|
add ShurL0ckr ransomware
|
2018-02-20 11:19:55 +01:00 |
|
Deborah Servili
|
42596842a8
|
add synonym and ref for Emissary Panda (Iron Tiger APT)
|
2018-02-20 10:37:47 +01:00 |
|
Deborah Servili
|
aa9fe74596
|
jq
|
2018-02-19 16:35:58 +01:00 |
|
Deborah Servili
|
d3d2db7e11
|
complete gandcrab
|
2018-02-19 16:27:28 +01:00 |
|
Deborah Servili
|
289e41a35b
|
add gandcrap ransomware + update references
|
2018-02-19 15:58:47 +01:00 |
|
|
b7e8918193
|
fix: JSON format
|
2018-02-14 11:10:44 +01:00 |
|
|
db2b187bc6
|
Merge branch 'master' of https://github.com/Kafeine/misp-galaxy into Kafeine-master
|
2018-02-14 11:06:19 +01:00 |
|
Kafeine
|
bbb76373a5
|
~Sakura description
|
2018-02-13 11:48:13 +00:00 |
|
Kafeine
|
7155477764
|
+SPL Exploit Kit, ~Grandsoft
|
2018-02-13 11:46:24 +00:00 |
|
Deborah Servili
|
3ad7e412a4
|
add Smominru
|
2018-02-01 14:29:06 +01:00 |
|
Deborah Servili
|
7d29f57d5b
|
add CrossRat
|
2018-01-31 11:14:20 +01:00 |
|
|
4664042400
|
fix: PureMasuta added to Masuta
|
2018-01-25 16:06:21 +01:00 |
|
|
3b61d2c84a
|
fix: typo in meta field
|
2018-01-25 15:56:16 +01:00 |
|
|
1831752530
|
add ref to Nexus Zeta
|
2018-01-25 15:43:33 +01:00 |
|
|
193b474ad2
|
add: Nexus Zeta is no stranger when it comes to implementing SOAP
relatedrelated exploit ;-)
|
2018-01-25 15:41:47 +01:00 |
|
|
5070314aae
|
add: Matsuta IoT botnet added
|
2018-01-25 15:39:44 +01:00 |
|
Daniel Plohmann
|
6de7c0176d
|
adding dark caracal
|
2018-01-25 12:54:50 +01:00 |
|
Kafeine
|
df47e09457
|
BlackTDS added
|
2018-01-24 14:20:50 +00:00 |
|
Deborah Servili
|
ddffa49b42
|
add Digmine
|
2018-01-15 15:45:26 +01:00 |
|
Deborah Servili
|
8c5eb9e957
|
add downAndExec
|
2018-01-15 15:00:25 +01:00 |
|
Deborah Servili
|
8c1583b962
|
add travle/PYLOT
|
2018-01-15 14:44:36 +01:00 |
|
Deborah Servili
|
8240934eb5
|
fix forgotten value Microcin
|
2018-01-11 16:01:19 +01:00 |
|
Deborah Servili
|
130ad39d4c
|
add macOS malwares
|
2018-01-11 15:19:18 +01:00 |
|
Deborah Servili
|
80d4fd0164
|
add monero miner
|
2018-01-10 15:30:47 +01:00 |
|
|
59a4fd52ad
|
fix: Updated description to clearly states that only branded vulnerabilities
|
2018-01-09 09:23:19 +01:00 |
|
Deborah Servili
|
9dd9810167
|
rename files + update README.md
|
2018-01-09 09:20:13 +01:00 |
|
Deborah Servili
|
225ce1f3ee
|
New galaxy Branded Vulnerability
|
2018-01-09 09:02:29 +01:00 |
|
|
63b72cdade
|
add in preventive measures: blacklisting phone numbers
|
2017-12-28 13:28:49 +01:00 |
|
Deborah Servili
|
9b23956c37
|
jqallthethings
|
2017-12-22 10:47:06 +01:00 |
|
Deborah Servili
|
d6b16b2177
|
update Sofacy tools
|
2017-12-22 10:46:18 +01:00 |
|
Deborah Servili
|
f737b7fe0a
|
modify SedKit description
|
2017-12-22 10:08:54 +01:00 |
|
Deborah Servili
|
e787efce72
|
add SedKit
|
2017-12-22 10:05:52 +01:00 |
|
Deborah Servili
|
51a4868a3f
|
add "Power"tools
|
2017-12-21 11:18:32 +01:00 |
|
Deborah Servili
|
56d5ab9afa
|
add satori (Mirai Variant)
|
2017-12-20 11:25:06 +01:00 |
|
Deborah Servili
|
9aa073a1c4
|
add PRILEX & CUTLET MAKER
|
2017-12-19 15:38:33 +01:00 |
|
Deborah Servili
|
eb9a49df81
|
add GratefulPOS
|
2017-12-19 12:17:42 +01:00 |
|
Deborah Servili
|
a9e5cff50f
|
update Android galaxy
|
2017-12-19 08:56:39 +01:00 |
|
Deborah Servili
|
5f731a428d
|
add source for NewCore RAT
|
2017-12-18 14:29:34 +01:00 |
|
Deborah Servili
|
db8ae5fbfe
|
update OilRig threat actor
|
2017-12-18 09:26:15 +01:00 |
|
Deborah Servili
|
91e2d56d4d
|
add file spider ransomware
|
2017-12-15 10:21:23 +01:00 |
|
Deborah Servili
|
cfaadb0c71
|
add OSX.Pirrit
|
2017-12-15 09:57:39 +01:00 |
|
|
d767e43669
|
TRISIS is the main name of TRITON as discussed in https://twitter.com/DragosInc/status/941355602512613381
|
2017-12-14 18:56:36 +01:00 |
|
|
90e37eb272
|
TRITON added
|
2017-12-14 17:13:18 +01:00 |
|
Deborah Servili
|
901d624a52
|
add SSHDoor
|
2017-12-14 11:37:05 +01:00 |
|
Deborah Servili
|
a2deaed935
|
add cryptomix variant
|
2017-12-14 10:58:29 +01:00 |
|
Deborah Servili
|
8836dfdc16
|
add Quant Loader
|
2017-12-13 15:51:24 +01:00 |
|
Deborah Servili
|
e891373ce8
|
Add MoneyTaker
|
2017-12-13 15:15:57 +01:00 |
|
Deborah Servili
|
5cac510818
|
update threat actor galaxy
|
2017-12-13 14:57:38 +01:00 |
|
Deborah Servili
|
e4d95b9ce8
|
Merge pull request #133 from Delta-Sierra/master
add source for BankBot
|
2017-12-11 10:39:31 +01:00 |
|
Deborah Servili
|
2c5a116ed5
|
add source for BankBot
|
2017-12-11 10:25:41 +01:00 |
|
|
c2e2093f29
|
Merge branch 'master' of https://github.com/Delta-Sierra/misp-galaxy into Delta-Sierra-master
|
2017-12-10 10:23:37 +01:00 |
|
|
2578daabf6
|
merge conflict solved - wp-vcd added
|
2017-12-10 10:19:17 +01:00 |
|
|
5f34b618f8
|
StrongPity2 added
|
2017-12-10 09:24:32 +01:00 |
|
Deborah Servili
|
16398ed750
|
jq
|
2017-12-08 15:48:59 +01:00 |
|
Deborah Servili
|
12e0af9fa2
|
add malware/ransomwares
|
2017-12-08 15:45:44 +01:00 |
|
Deborah Servili
|
8531d4e299
|
add SLocker
|
2017-12-07 14:26:41 +01:00 |
|
Deborah Servili
|
f1b4cab10b
|
add HC7 ransomware
|
2017-12-07 11:25:08 +01:00 |
|
Deborah Servili
|
3023039956
|
add StorageCrypt Ransomware
|
2017-12-06 12:34:17 +01:00 |
|
Deborah Servili
|
d887659e51
|
add Halloware ransomware
|
2017-12-05 09:47:50 +01:00 |
|
Deborah Servili
|
c2b49e5ecd
|
update cryptomix
|
2017-12-04 12:21:21 +01:00 |
|
|
57b7b5baff
|
add: Tizi malware added
|
2017-12-03 07:33:19 +01:00 |
|
Deborah Servili
|
695d580d3c
|
add UBoatRAT
|
2017-11-29 10:09:39 +01:00 |
|
Deborah Servili
|
a46903b8dd
|
update ROKRAT
|
2017-11-28 14:01:06 +01:00 |
|
Deborah Servili
|
1cb62212ca
|
cryptomix - update
|
2017-11-22 13:46:50 +01:00 |
|
Deborah Servili
|
1bd8293901
|
add IcedID banker
|
2017-11-22 11:38:35 +01:00 |
|
Deborah Servili
|
a7d117781b
|
cryptomix - add ransomnotes
|
2017-11-21 14:24:46 +01:00 |
|
Deborah Servili
|
bd940d45ad
|
cryptomix - merge duplicates and update
|
2017-11-21 14:16:41 +01:00 |
|
Deborah Servili
|
6f79153169
|
add Ordinypt
|
2017-11-21 12:13:38 +01:00 |
|
Deborah Servili
|
ff3cb27a3b
|
jq
|
2017-11-20 12:33:47 +01:00 |
|
Deborah Servili
|
632f030b28
|
update tool galaxy
|
2017-11-20 12:32:35 +01:00 |
|
steffenenders
|
96749fd350
|
Fixed mixed up description/value for MuddyWater
|
2017-11-19 19:23:10 +01:00 |
|
Deborah Servili
|
e2dbd5a9a3
|
add MuddyWater + Update HIDDEN COBRA and update its tools
|
2017-11-17 15:41:44 +01:00 |
|
Deborah Servili
|
24e4b15156
|
add Silence Trojan
|
2017-11-14 16:20:08 +01:00 |
|
Deborah Servili
|
09bab156c7
|
update version number
|
2017-11-09 12:30:32 +01:00 |
|
Deborah Servili
|
2ed39f3cee
|
Fix typo - Spaaaace~
|
2017-11-09 09:39:45 +01:00 |
|
Deborah Servili
|
880c74f469
|
add ALMA Communicator
|
2017-11-09 09:25:16 +01:00 |
|
Deborah Servili
|
3369270bdb
|
add Sowbug group
|
2017-11-08 15:05:37 +01:00 |
|
Deborah Servili
|
5ee2001391
|
update Falismus RAT
|
2017-11-08 11:34:55 +01:00 |
|
Fredrik Borg
|
72d8bfc28a
|
fix-iso-code-3
|
2017-11-07 14:15:40 +01:00 |
|
Fredrik Borg
|
afc4972e25
|
fix iso codes
|
2017-11-07 14:04:04 +01:00 |
|
Fredrik Borg
|
53a6a8d26f
|
remove duplicate references
|
2017-11-07 13:34:44 +01:00 |
|
Siri Bromander
|
bf0d1d27ca
|
Updated with data from APT Groups and Operations
|
2017-11-07 11:07:23 +01:00 |
|
Fredrik Borg
|
26192bf39a
|
Bump version number
|
2017-11-01 18:14:20 +01:00 |
|
Fredrik Borg
|
51f86d5382
|
Use standard (2 digits) ISO codes for all countries
|
2017-11-01 12:38:21 +01:00 |
|
Raphaël Vinot
|
aa93b0e61d
|
Update banker galaxy
|
2017-10-27 11:10:26 -04:00 |
|
Raphaël Vinot
|
756af14983
|
Merge branch 'master' of github.com:MISP/misp-galaxy
|
2017-10-27 10:50:58 -04:00 |
|
Raphaël Vinot
|
eef988e9ad
|
Cosmetic updates
|
2017-10-27 10:50:47 -04:00 |
|
Deborah Servili
|
7246746bbe
|
add htpRAT
|
2017-10-27 15:50:22 +02:00 |
|
Deborah Servili
|
2fefd3810d
|
add dimnie
|
2017-10-27 11:42:01 +02:00 |
|
Deborah Servili
|
ad9fff6c3f
|
Merge pull request #103 from Delta-Sierra/master
add Formbook
|
2017-10-27 10:40:00 +02:00 |
|
Deborah Servili
|
2533c1b54e
|
fix typo
|
2017-10-27 10:33:58 +02:00 |
|
Deborah Servili
|
5597e5af1c
|
add Formbook
|
2017-10-27 10:30:21 +02:00 |
|
Raphaël Vinot
|
24e7d89ac9
|
Deduplicate Android cluster
|
2017-10-26 19:00:57 -04:00 |
|
Raphaël Vinot
|
40e26a59f1
|
Merge branch 'master' of github.com:MISP/misp-galaxy
|
2017-10-26 18:54:56 -04:00 |
|
Raphaël Vinot
|
6d0952e4ed
|
Add android and banker galaxies
|
2017-10-26 18:53:01 -04:00 |
|
|
aed963c52d
|
Merge pull request #102 from Delta-Sierra/master
delete x_ prefix from mitre_attack_pattern
|
2017-10-26 10:36:02 +02:00 |
|
Deborah Servili
|
709b78c2de
|
jq
|
2017-10-26 10:28:53 +02:00 |
|
Deborah Servili
|
3a41799542
|
add galaxy icon to mitre-cti tools & regenerate galaxies
|
2017-10-26 10:28:05 +02:00 |
|
Deborah Servili
|
fa8c4ec839
|
delete x_ prefix from mitre_attack_pattern
|
2017-10-26 09:44:23 +02:00 |
|
Raphaël Vinot
|
72dbbb28fa
|
Remove the executable flag from the json files, again
|
2017-10-25 12:29:16 -04:00 |
|
Raphaël Vinot
|
c6f9c5261c
|
Merge branch 'master' of github.com:MISP/misp-galaxy
|
2017-10-25 12:28:01 -04:00 |
|
Raphaël Vinot
|
196f0a7ac8
|
Remove the executable flag from the json files
|
2017-10-25 12:25:36 -04:00 |
|
Deborah Servili
|
6aee8e41fd
|
add BadRabbit ransomware
|
2017-10-25 09:28:03 +02:00 |
|
Deborah Servili
|
5b7e2de87a
|
add cert EU govsectors galaxy
|
2017-10-24 11:15:05 +02:00 |
|
|
ce0f4d5e4a
|
SOCKET23 RAT added
|
2017-10-21 15:14:42 +02:00 |
|
|
3860b1a78a
|
JadeRAT added
|
2017-10-21 13:53:40 +02:00 |
|
Deborah Servili
|
814c19841f
|
jq
|
2017-10-20 15:32:01 +02:00 |
|
Deborah Servili
|
2fd3d3221d
|
add IoT_reaper
|
2017-10-20 15:09:20 +02:00 |
|
Deborah Servili
|
a6d5383adf
|
add synonym in tool galaxy
|
2017-10-18 15:43:12 +02:00 |
|
Deborah Servili
|
aa5e823801
|
add sectors galaxy
|
2017-10-11 09:52:33 +02:00 |
|
Deborah Servili
|
fa723b6e90
|
add lukitus ransomnote to Locky
|
2017-10-04 09:32:55 +02:00 |
|
Deborah Servili
|
671d7ea456
|
add lukitus extension to Locky
|
2017-10-04 09:22:53 +02:00 |
|
Deborah Servili
|
fa5cb66a84
|
fix typo
|
2017-10-04 08:38:12 +02:00 |
|
Deborah Servili
|
13f0b95654
|
add year of apparition for Rats + fixing some typos
|
2017-10-03 16:26:58 +02:00 |
|
Deborah Servili
|
4f73184818
|
jq
|
2017-09-29 17:02:12 +02:00 |
|
Deborah Servili
|
b33014e0dd
|
add Remote Access/Administration Tools
|
2017-09-29 16:59:25 +02:00 |
|
Daniel Plohmann
|
02710714bd
|
add APT33 as identified by FireEye
|
2017-09-29 11:43:38 +02:00 |
|
Deborah Servili
|
fecfdd39f3
|
add Adwind RAT synonyms
|
2017-09-25 15:18:51 +02:00 |
|
Deborah Servili
|
38f9d2cbfd
|
Fix typo
|
2017-09-20 10:00:27 +02:00 |
|
Deborah Servili
|
c282899db7
|
add SyncCrypt Ransomwar
|
2017-09-06 15:23:27 +02:00 |
|
Deborah Servili
|
bba45c7fe6
|
add SynAck Ransomware ransomnote's name
|
2017-09-06 14:00:00 +02:00 |
|
Deborah Servili
|
5e11faaa92
|
add SynAck Ransomware
|
2017-09-06 13:45:24 +02:00 |
|
Deborah Servili
|
d07d4fbfa7
|
fix typo~
|
2017-09-06 10:04:57 +02:00 |
|
Deborah Servili
|
da5b1d2ed3
|
add tools and rat
|
2017-09-06 09:51:52 +02:00 |
|
Raphaël Vinot
|
568557c1af
|
JQ all the things.
|
2017-08-30 10:08:35 +02:00 |
|
|
381b608900
|
Fixed with jq ;-)
|
2017-08-30 10:04:19 +02:00 |
|
Kafeine
|
4b94d36d2e
|
Merge branch 'master' into master
|
2017-08-29 12:41:33 +01:00 |
|
Kafeine
|
ee3e2b3a14
|
+WhiteHole +ref for Disdain
|
2017-08-29 10:36:38 +01:00 |
|
Deborah Servili
|
a2035e5840
|
add ransomwares
|
2017-08-28 11:14:27 +02:00 |
|
Deborah Servili
|
15ce9fb85d
|
add fireball malware
|
2017-08-24 16:10:17 +02:00 |
|
Deborah Servili
|
63b7e62de5
|
add Joao malware
|
2017-08-24 08:49:42 +02:00 |
|
|
760f863f8a
|
EngineBox malware added
|
2017-08-19 09:38:45 +02:00 |
|
Deborah Servili
|
ad22bafdba
|
jq
|
2017-08-17 15:54:44 +02:00 |
|
Deborah Servili
|
91cd3a6eec
|
update mitre galaxies
|
2017-08-17 15:53:41 +02:00 |
|
iglocska
|
cf780290be
|
Fixed some issues with a misnamed galaxy
|
2017-08-16 21:40:05 +02:00 |
|
Deborah Servili
|
7e391e8a39
|
version is integer
|
2017-08-16 15:23:58 +02:00 |
|
Deborah Servili
|
7cb372bdb5
|
put uuid as meta
|
2017-08-16 15:13:18 +02:00 |
|
Deborah Servili
|
447bfe93f3
|
new generation of mitre galaxies
|
2017-08-16 12:37:07 +02:00 |
|
Deborah Servili
|
fb5560f927
|
add mitre based galaxies
|
2017-08-16 12:17:00 +02:00 |
|
Deborah Servili
|
d29fb670c0
|
fix space typo
|
2017-08-16 10:50:12 +02:00 |
|
Kafeine
|
bde18d917f
|
+disdain+captainblack-Neutrino
|
2017-08-15 20:53:41 +02:00 |
|
Deborah Servili
|
693ea7e58a
|
type is array -shh I'm bad with the format, I know
|
2017-08-08 15:00:06 +02:00 |
|
Deborah Servili
|
6d7ec00907
|
type is meta
|
2017-08-08 12:44:37 +02:00 |
|
Deborah Servili
|
fa813f0f20
|
jq~
|
2017-08-08 12:40:35 +02:00 |
|
Deborah Servili
|
d6a4e3a5a0
|
add/update tool galaxy
|
2017-08-08 12:37:14 +02:00 |
|
Deborah Servili
|
4482e198a0
|
add GlobeImposter synonym
|
2017-08-08 08:50:36 +02:00 |
|
Raphaël Vinot
|
3b7ad8ea8c
|
Merge pull request #75 from Delta-Sierra/master
add svpeng tool
|
2017-08-02 11:21:24 +02:00 |
|
Deborah Servili
|
ca58a2f8b4
|
jq
|
2017-08-02 11:16:21 +02:00 |
|
Daniel Plohmann
|
355a230182
|
added FIN7 as alias for anunak
|
2017-08-01 13:29:57 +02:00 |
|
Daniel Plohmann
|
b4e49823dd
|
merged barium into axiom (only one redundant reference given)
|
2017-08-01 13:13:56 +02:00 |
|
Deborah Servili
|
8573d28493
|
Merge branch 'master' into master
|
2017-08-01 10:18:18 +02:00 |
|
Deborah Servili
|
c8fa7a919f
|
try to merge 'CowerSnail added'
|
2017-08-01 10:04:25 +02:00 |
|
Deborah Servili
|
52cd886ceb
|
add svpeng tool
|
2017-08-01 09:44:38 +02:00 |
|
|
fda915f2f6
|
CowerSnail added
|
2017-07-30 18:46:20 +02:00 |
|
Raphaël Vinot
|
81d304345f
|
Remove duplicates
|
2017-07-26 14:57:14 +02:00 |
|
Raphaël Vinot
|
282c3a8101
|
Merge pull request #74 from Delta-Sierra/master
adding clusters based on MISP data
|
2017-07-26 11:41:00 +02:00 |
|
Deborah Servili
|
497ecc396a
|
clean tool.json
|
2017-07-26 09:41:08 +02:00 |
|
Deborah Servili
|
7e59f14dca
|
update Spring Dragon threat actor
|
2017-07-26 09:21:36 +02:00 |
|
Raphaël Vinot
|
c971b8e935
|
Add missing name XtremeRAT
|
2017-07-25 20:24:00 +02:00 |
|
Raphaël Vinot
|
8598210895
|
Remove empty string.
|
2017-07-25 18:02:11 +02:00 |
|
Raphaël Vinot
|
a2567a9fc3
|
Remove duplicates
|
2017-07-25 13:12:48 +02:00 |
|
Deborah Servili
|
a6eb7338b3
|
adding clusters based on MISP data
|
2017-07-19 16:25:46 +02:00 |
|
Kafeine
|
a39dde6dba
|
Update exploit-kit.json
|
2017-07-13 09:33:23 +01:00 |
|
|
3b13a9101c
|
Merge branch 'master' of github.com:MISP/misp-galaxy
|
2017-07-08 10:16:29 +02:00 |
|
|
a295d40589
|
Cobalt gang added
|
2017-07-08 10:16:11 +02:00 |
|
|
4177bf150c
|
Merge pull request #73 from Delta-Sierra/master
add cerber synonym
|
2017-06-30 10:45:06 +02:00 |
|
Deborah Servili
|
a2bc1e97de
|
add cerber synonym
|
2017-06-30 10:03:57 +02:00 |
|
|
c0786dfb22
|
El Machete added
|
2017-06-26 11:44:46 +02:00 |
|
Deborah Servili
|
c12009921a
|
add synonym for ammyyadmin
|
2017-06-21 11:02:57 +02:00 |
|
Deborah Servili
|
d01cfb8d1e
|
Add SOREBRECT ransomware
|
2017-06-21 08:56:03 +02:00 |
|
|
dd2a51037a
|
jq all ;-)
|
2017-06-20 20:34:04 +02:00 |
|
Jaime
|
f92b9cb710
|
Added FIN8 actor
|
2017-06-20 11:28:32 -07:00 |
|
Deborah Servili
|
aa25157403
|
alwaaays moooore RAT
|
2017-06-20 12:26:16 +02:00 |
|
Deborah Servili
|
5f5b71aa93
|
add rats from https://www.lifewire.com/free-remote-access-software-tools-2625161
|
2017-06-20 11:16:36 +02:00 |
|
Deborah Servili
|
57f6c2414d
|
add rats
|
2017-06-20 09:19:19 +02:00 |
|
|
951ed3b9ed
|
jq
|
2017-06-16 22:18:51 +02:00 |
|
|
3219d5de5c
|
Merge pull request #67 from Delta-Sierra/master
add some rats and tools
|
2017-06-16 22:18:14 +02:00 |
|
Deborah Servili
|
91cf7b4cee
|
add some rats sand tools
|
2017-06-16 15:34:20 +02:00 |
|
David André
|
3dfbb7e1d0
|
Added Symantec alias for sofacy
|
2017-06-16 11:22:17 +02:00 |
|
danielplohmann
|
5724f19873
|
Merge branch 'master' into hidden-cobra-lazarus
|
2017-06-15 14:13:50 +02:00 |
|
Daniel Plohmann (jupiter)
|
f7963c9a8c
|
added Hidden Cobra as alias for Lazarus Group
|
2017-06-15 14:09:29 +02:00 |
|
Daniel Plohmann
|
ff4f428bc1
|
added ELECTRUM to threat-actor.json (afaik not confirmed as an alias atm)
|
2017-06-13 13:25:16 +02:00 |
|
Daniel Plohmann
|
9924a8875c
|
added PLATINUM to threat-actor.json (afaik not confirmed as an alias atm)
|
2017-06-13 13:21:10 +02:00 |
|
Deborah Servili
|
e95b0fb6e1
|
Merge https://github.com/MISP/misp-galaxy
|
2017-06-09 09:06:23 +02:00 |
|
Deborah Servili
|
0755e11c02
|
update rat
|
2017-06-09 09:01:33 +02:00 |
|
|
91663c4793
|
Merge pull request #58 from danielplohmann/wildneutron
added WildNeutron (Morph, Butterfly, Sphinx Moth)
|
2017-06-06 10:02:56 +02:00 |
|
Deborah Servili
|
aa34718b13
|
edit threat actor - should fix #59 and #60
|
2017-06-06 08:40:29 +02:00 |
|
Daniel Plohmann (jupiter)
|
068dc40a78
|
added WildNeutron (Morph, Butterfly, Sphinx Moth)
|
2017-06-05 19:13:27 +02:00 |
|
|
8796017151
|
Merge pull request #56 from elhoim/patch-1
Added synonyms for APT10 and one for APT1
|
2017-06-02 16:41:20 +02:00 |
|
Deborah Servili
|
bf8c050b8b
|
jq
|
2017-06-02 15:52:43 +02:00 |
|
Deborah Servili
|
17c0ffb255
|
add RAT listed in https://github.com/kevthehermit/RATDecoders
|
2017-06-02 15:40:06 +02:00 |
|
David André
|
83833f257c
|
Added synonyms for APT10 and one for APT1
|
2017-06-02 10:26:45 +02:00 |
|
Deborah Servili
|
c9ede88868
|
add rat galaxy
|
2017-05-31 16:39:19 +02:00 |
|
|
fab863933e
|
SilverTerrier added
|
2017-05-30 08:40:26 +02:00 |
|
|
dcfbfdfe47
|
jq all
|
2017-05-26 14:59:34 +02:00 |
|
|
d95351a72a
|
Merge branch 'master' of github.com:MISP/misp-galaxy
|
2017-05-26 14:52:50 +02:00 |
|
|
b562e6b729
|
Emotet/Geodo added
|
2017-05-26 14:52:35 +02:00 |
|
Deborah Servili
|
14835361f7
|
jq 'n ##COMMA##
|
2017-05-18 14:01:49 +02:00 |
|
Deborah Servili
|
7fee4f3a1b
|
add Uiwik ransomware
|
2017-05-18 13:59:47 +02:00 |
|
Deborah Servili
|
3b93a773e5
|
add synonym and cleaning
|
2017-05-18 11:18:32 +02:00 |
|
Deborah Servili
|
2c4256f42c
|
merge hiddentear & cryptear data
|
2017-05-18 10:18:45 +02:00 |
|
Deborah Servili
|
bc4f1a93ab
|
add synonym - half done
|
2017-05-18 09:19:48 +02:00 |
|
Deborah Servili
|
6859b2fb4e
|
add synonym - step 1
|
2017-05-17 12:14:10 +02:00 |
|
Deborah Servili
|
c501517e9a
|
add synonym to hancitor
|
2017-05-17 12:00:26 +02:00 |
|
Deborah Servili
|
66ca4c6f2a
|
add jaff Ransomwarejq-ed
|
2017-05-17 10:10:27 +02:00 |
|
Deborah Servili
|
44857c2ac3
|
add jaff Ransomware
|
2017-05-17 10:08:53 +02:00 |
|
|
3e62608d3a
|
Remove duplicate ref
|
2017-05-16 14:52:53 +02:00 |
|
|
e5faf4fba7
|
Input from Deborah incorporated
|
2017-05-16 14:47:16 +02:00 |
|
|
5da5df6384
|
APT32 added
|
2017-05-15 09:18:28 +02:00 |
|
|
bd18dc2f4b
|
WannaCry added
|
2017-05-14 16:37:37 +02:00 |
|
Kafeine
|
2182a790a3
|
Fix
|
2017-05-11 11:31:22 +01:00 |
|
Kafeine
|
6d90c3e691
|
+Bingo -- Hunter > Retired
|
2017-05-11 11:30:50 +01:00 |
|
|
248eecaef0
|
Kazuar: Multiplatform Espionage Backdoor with API Access added
|
2017-05-04 17:22:28 +02:00 |
|
Kafeine
|
32b0e6f95d
|
Update tds.json
|
2017-05-04 11:48:49 +01:00 |
|
|
f5d356523e
|
Duplicate references removed
|
2017-05-03 15:59:24 +02:00 |
|
|
ea611bcded
|
Merge pull request #49 from Delta-Sierra/master
reformat ransomware galaxy
|
2017-05-03 15:56:39 +02:00 |
|
Déborah Servili
|
9ff5f58978
|
add source to please the schema~
|
2017-05-03 15:21:58 +02:00 |
|
Déborah Servili
|
0a9814d6eb
|
change sources for authors
|
2017-05-03 15:15:34 +02:00 |
|
Déborah Servili
|
2dc6982fae
|
jq on ransomware
|
2017-05-03 15:09:23 +02:00 |
|
Déborah Servili
|
fb5eb32a0e
|
managing duplicate
|
2017-05-03 15:01:20 +02:00 |
|
Déborah Servili
|
8b10e3aaee
|
managing duplicate
|
2017-05-03 14:24:53 +02:00 |
|
Déborah Servili
|
24c6c51e4d
|
reformat ransomware galaxy - including http://pastebin.com/raw/GHgpWjar
|
2017-05-02 14:16:21 +02:00 |
|
Déborah Servili
|
82f4a633c0
|
reformat ransomware galaxy
|
2017-05-02 10:00:00 +02:00 |
|
|
35b94437e8
|
REDLEAVES malware added
|
2017-04-28 08:32:34 +02:00 |
|
Déborah Servili
|
c08cc781f5
|
update tools
|
2017-04-26 12:23:57 +02:00 |
|
|
3e4973f688
|
Feodo added
|
2017-04-25 19:56:06 +02:00 |
|
Déborah Servili
|
6267681362
|
add Cardinal RAT
|
2017-04-24 16:04:52 +02:00 |
|
|
07c82e15a5
|
FlexiSpy
|
2017-04-23 23:05:12 +02:00 |
|
|
52edcb1929
|
shadow broker leak of NSA tools from https://github.com/misterch0c/shadowbroker
|
2017-04-15 21:22:32 +02:00 |
|
|
6149740cd4
|
First batch of shadow broker leak (NSA name of exploit and tools) from
https://github.com/misterch0c/shadowbroker
|
2017-04-15 19:40:54 +02:00 |
|
|
3595d04b35
|
jq all
|
2017-04-14 16:28:43 +02:00 |
|
|
fa49ca127c
|
Merge pull request #40 from Kafeine/master
Updated.
|
2017-04-14 16:27:15 +02:00 |
|
Déborah Servili
|
7163e8c58c
|
add synonyms for Da Vinci RCS
|
2017-04-14 15:51:39 +02:00 |
|
Déborah Servili
|
531595c944
|
##comma##
|
2017-04-14 14:52:23 +02:00 |
|
Déborah Servili
|
54512eb840
|
Add some tools/threat actor
|
2017-04-14 14:48:39 +02:00 |
|
Kafeine
|
9e5db0be8c
|
fix
|
2017-04-14 13:47:16 +01:00 |
|
Kafeine
|
321044cdac
|
Update Terror
|
2017-04-14 13:46:59 +01:00 |
|
Kafeine
|
777fc1cde3
|
Updated
Blaze <-> Terror - Updated Sundown and Nebula status
|
2017-04-14 13:44:03 +01:00 |
|
Déborah Servili
|
9412519502
|
correct copypasta mistake
|
2017-04-12 16:11:57 +02:00 |
|
Déborah Servili
|
bbc2b79a5e
|
add tools from https://www.fireeye.com/blog/threat-research/2017/04/apt10_menupass_grou.html
|
2017-04-12 16:07:48 +02:00 |
|
Déborah Servili
|
8a645f42c9
|
update tool
|
2017-04-11 16:06:27 +02:00 |
|
Déborah Servili
|
7b5aaaeff2
|
json fix
|
2017-04-11 14:18:29 +02:00 |
|
Déborah Servili
|
eee2c6d6b5
|
update tool's galaxy using http://contagiodump.blogspot.lu/2013/03/mandiant-apt1-samples-categorized-by.html
|
2017-04-11 14:09:44 +02:00 |
|
|
bbf6716c73
|
Longhorn (CIA) added
|
2017-04-10 20:22:57 +02:00 |
|
|
ab5b73a3cd
|
Sathurbot added
|
2017-04-06 20:49:53 +02:00 |
|
|
8c09223477
|
The product from NSO Group Technologies added to the list of tools.
The Pegasus name is used as synonym of Chrysaor ;-)
|
2017-04-04 20:42:08 +02:00 |
|
|
0578d7b7b1
|
The mysterious ZIRCONIUM activity group added
|
2017-04-03 19:44:36 +02:00 |
|
nyx0
|
78cdb10aae
|
Add new Sednit name according to https://www.secureworks.com/research/iron-twilight-supports-active-measures
|
2017-03-31 09:28:50 -04:00 |
|
|
b3f1069686
|
Trochilus and MoonWind RATs added
|
2017-03-30 15:01:23 +02:00 |
|