MISP - Threat Sharing. An open source software and standards to share, create and validate threatintel and intelligence.
Mastodon @[email protected]
ID: 715090264512180224
https://github.com/MISP/MISP 30-03-2016 08:16:19
5,5K Tweet
22,22K Followers
95 Following


Very nice! Visualisations are essential for understanding complex reports. Also see some ways on how to possibly integrate this in the future with MISP (@[email protected]) reports and/or playbooks.

Some of the snippets of the CTF data and attachments imported into MISP (@[email protected])



I created a small script to extract unique hostnames and domains from the DDoSia configuration objects shared via MISP (@[email protected]) . Post at vanimpe.eu/2024/10/08/extโฆ ; script: github.com/cudeso/tools/bโฆ #DDOS


Gi7w0rm Xavier Mertens @[email protected] ๐ง๐ช MISP (@[email protected]) Contact CIRCL - @[email protected] for getting access to the MISPPRIV instance - misp-project.org/communities/

New conversion scripts bridge MISP (@[email protected]) playbooks and CACAO (OASIS Open) security playbooks. Still an initial version but significantly simplifies integration between both formats. #CTI #automation #soar github.com/MISP/misp-playโฆ




The MISP (@[email protected]) workflow module(in 2.4-dev) now also supports ad-hoc or triggerless workflows! github.com/MISP/MISP/commโฆ

New features in vulnerability lookup includes sighting from different sources including MISP (@[email protected]) communities. The example below is a vulnerability in Android but the CVE is not yet published. You can track the sighting evolution. vulnerability.circl.lu/vuln/CVE-2024-โฆ #vulnerability #cve




Further enhance phishing investigations with MISP (@[email protected]) playbooks! 'URL Remediation' streamlines finding abuse contacts via AbuseFinder, Lookyloo , FIRST.org , and RDAP, while reporting malicious sites to MSRC, Google Safe Browsing and Netcraft. github.com/MISP/misp-playโฆ


You can now browse the MISP (@[email protected]) playbooks on GitHub Pages: misp.github.io/misp-playbooks/ . The playbooks are automatically converted into easy-to-navigate HTML pages. Dive in and explore!

Itโs been a while since I posted a new MISP (@[email protected]) tip, but in the meantime you can now also enjoy the tips via a simple HTML page at cudeso.github.io/misp-tip-of-thโฆ


๐ Kunai pushes further MISP (@[email protected]) integration! New tool kunai-to-misp (github.com/kunai-project/โฆ) lets you push Kunai logs to MISP (misp-project.org) for better threat intel sharing. #ThreatIntel #Linux #SOC #OpenSource #ThreatHunting

