Commit graph

92 commits

Author SHA1 Message Date
Christophe Vandeplas
e056a9ea0c
fix: [tools] 360net cosmetic fix 2023-04-23 10:19:48 +02:00
2763cdd72b
chg:[sigma] Sigma rules updated 2023-04-12 11:44:43 +02:00
Tom King
e52eefa0e7 chg: [mitre] updated with correct ID parsing 2023-02-21 10:36:37 +00:00
Christophe Vandeplas
a6a9a73ae5 chg: [360net] updated to latest online version 2023-02-20 20:03:36 +08:00
57871ee05d
add: [region] Added script to update the region cluster based on the UNSD M49 csv file 2023-01-24 22:49:14 +01:00
f605f041d9
fix: [tools] Added missing closing ' 2023-01-24 01:21:54 +01:00
997e570ad2
fix: [sigma] version must be an int 2023-01-13 16:38:56 +01:00
5804065e16
chg: [tools] sigma tools updated 2023-01-12 14:16:20 +01:00
1c8880b3bb
new: [tools] Sigma export tool added based on https://github.com/jstnk9/MISP/pull/1 2023-01-06 16:00:37 +01:00
Andras Iklody
13dbf70d77
fix: [att&ck converter] allow multiple external IDs
- There are in some cases external ID references to CAPEC in addition to ATT&CK in techniques
- convert external ID to a list rather than a single string

- as reported by @SYNchroACK
- as hurried along by a disappointed @deresz
2022-11-28 12:25:25 +01:00
Christophe Vandeplas
7b3670c4ee chg: [tool] make mitre script easier to find 2022-09-27 07:28:00 +02:00
eacab6ca27
new: [malpedia] remove duplicate UUIDs objects (coming from Malpedia API) 2022-09-26 10:58:09 +02:00
Christophe Vandeplas
0609974545 fix: [atrm] fix bug in authors 2022-09-23 15:39:49 +02:00
Christophe Vandeplas
b011ddee5b fix: [360net] fixes null entries in lists 2022-09-13 22:12:51 +02:00
Christophe Vandeplas
c5a5fa7cfa chg: [360net] add 360.net APT list fixes #764 2022-09-13 21:48:16 +02:00
Christophe Vandeplas
1369756810 chg: [atrm] Add Azure Threat Research Matrix Galaxy and generation script 2022-08-06 21:19:31 +02:00
marjatech
587dc8560b add script to automate malpedia update 2022-07-04 14:24:34 +02:00
Christophe Vandeplas
4a469299fd [mitre] update sorting algo
will make future ATT&CK updates less noisy in the git diff
2022-05-25 21:00:57 +02:00
c673360afa
chg: [tools] add skip list in index generation (to focus on intelligence/cyber) 2022-04-04 11:21:46 +02:00
21478c0d8d
chg: [adoc] updated with the non-cyber releated lists 2022-04-04 11:17:40 +02:00
2d8eff9de9
chg: [tools] adoc export now includes a skip list 2022-03-25 10:12:48 +01:00
2c586d2f96
chg: [tools] updated for the new website 2022-02-01 11:05:25 +01:00
a0804c1194
fix: [tools] Generate index Markdown layout updated 2022-01-07 16:55:29 +01:00
d51eecdab8
new: [tools] Generate markdown index 2022-01-07 12:55:50 +01:00
adb467743e
chg: [tools] add a reference to the relationship graph 2022-01-06 19:01:40 +01:00
Christophe Vandeplas
aeb5719448 chg: [att&ck] update to ATT&CK v10 2021-10-22 14:34:25 +02:00
0ccbdb862b
chg: [tea] first version 2020-10-23 11:16:50 +02:00
Christophe Vandeplas
2334676e64 chg: [att&ck] no tag for subtechnique 2020-10-18 20:14:05 +02:00
VVX7
5e54fc2022 chg: [dev] gen_defence_university.py no longer outputs empty strings, lists 2020-08-22 13:01:20 -04:00
VVX7
b4c3ffc8eb new: [dev] add ASPI's China Defence University Tracker.
Thanks to Cormac Doherty for writing the web scraper! To update the galaxy run the included gen_defence_university.py script.

"The China Defence Universities Tracker is a database of Chinese institutions engaged in military or security-related science and technology research. It was created by ASPI’s International Cyber Policy Centre.

It includes entries on nearly 100 civilian universities, 50 People’s Liberation Army institutions, China’s nuclear weapons program, three Ministry of State Security institutions, four Ministry of Public Security universities, and 12 state-owned defence industry conglomerates.

The Tracker is a tool to inform universities, governments and scholars as they engage with the entities from the People’s Republic of China. It aims to build understanding of the expansion of military-civil fusion—the Chinese government’s policy of integrating military and civilian efforts—into the education sector.

The Tracker should be used to inform due diligence of Chinese institutions. However, the fact that an institution is not included here does not indicate that it should not raise risks or is not involved in defence research. Similarly, entries in the database may not reflect the full range and nature of an institution’s defence and security links." - ASPI (https://unitracker.aspi.org.au/about/)
2020-08-21 11:24:22 -04:00
Christophe Vandeplas
d32022b241 fix: [attack] fixes old MITRE relationships not being removed 2019-10-27 21:06:26 +01:00
Christophe Vandeplas
76668d0ebb fix: [adoc] ignore deprecated galaxies 2019-10-27 18:35:44 +01:00
Christophe Vandeplas
4ab9bbbfa3 chg: [attack] update to latest ATT&CK data 2019-10-25 10:12:41 +02:00
Christophe Vandeplas
eb594cba0f fix: [misinfosec] fixes inconsistent filename 2019-10-20 18:53:02 +02:00
VVX7
e4998efec9 chg: [galaxy] added AMITT galaxy/cluster generator script 2019-10-08 13:52:08 -04:00
Deborah Servili
5c35bd01de
try to please CodeFactor 2019-09-26 14:43:25 +02:00
Deborah Servili
1ea212612a
add script used to create region galaxy (Not optimised or anything) 2019-09-26 13:27:31 +02:00
Sebastian Wagner
c93103bba1
Add test for empty strings
Should prevent MISP/misp-galaxy#438
2019-08-30 10:08:16 +02:00
6e19d21d3a
chg: [tools] fix the attribution confidence level 2019-03-19 16:49:19 +01:00
Deborah Servili
ecf76178e7
add attribution-confidence attribute to threat-actor 2019-03-11 11:18:12 +01:00
Christophe Vandeplas
db2dbc7cb6 fix: [tool] MITRE conversion script 2018-12-09 09:14:56 +01:00
Christophe Vandeplas
bdfefb4499 MITRE galaxy - initial conversion and migration script
this is not fully working yet !
2018-12-09 08:09:53 +01:00
Christophe Vandeplas
bd1f22ad7d pep8, include the misp-galaxy tag in the output 2018-12-02 11:35:49 +01:00
ca1bc24f65
fix: [graph.py] small fix to make it work 2018-10-19 14:59:09 +02:00
Christophe Vandeplas
bceee0f03d tool: experimental graphing tool 2018-10-19 14:30:05 +02:00
Christophe Vandeplas
1e90cac717 fix: intrusion is an actor and not a tool 2018-10-17 18:17:33 +02:00
Christophe Vandeplas
c51ba2e868 chg: MITRE relationships included in the respective cluster. 2018-10-17 08:08:58 +02:00
Christophe Vandeplas
c49b3242a5 chg: mappings are now in the generated adoc
plus massive performance improvement
2018-10-16 16:19:16 +02:00
Christophe Vandeplas
f14d616e22 chg: magical mapping with malpedia 2018-10-12 11:00:00 +02:00
Christophe Vandeplas
65eb66a739 fix: automatically fix missing uuids 2018-10-12 10:55:24 +02:00