The MISP project maintains and offers a comprehensive knowledge base covering threat actors, ransomware groups, malware, and more.
Even if you don't use MISP, you can now easily search across all MISP Project knowledge bases...
https://t.co/zyVbT1QB57
#threatintel
🚀 Kunai pushes further @MISPProject integration!
New tool kunai-to-misp (https://t.co/EYBK3WJiQ8) lets you push Kunai logs to MISP (https://t.co/2okB2GkELz) for better threat intel sharing.
#ThreatIntel#Linux#SOC#OpenSource#ThreatHunting
MISP v2.5.3 and v2.4.201 released with numerous enhancements, bug fixes, and security improvements to strengthen threat information sharing capabilities.
#cti#opensource#threatintelligence#misp#threatintel
https://t.co/cdHcuLyc0z
Further enhance phishing investigations with @MISPProject playbooks! 'URL Remediation' streamlines finding abuse contacts via AbuseFinder, @lookyloo_app , @FIRSTdotOrg , and RDAP, while reporting malicious sites to MSRC, Google Safe Browsing and Netcraft. https://t.co/MvPKpI524Z
You can now browse the @MISPProject playbooks on GitHub Pages: https://t.co/obzSeOiM2i . The playbooks are automatically converted into easy-to-navigate HTML pages. Dive in and explore!
It’s been a while since I posted a new @MISPProject tip, but in the meantime you can now also enjoy the tips via a simple HTML page at https://t.co/n0PjoA525I
SkillAegis version 1.2.0 released
SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP.
https://t.co/NVveh97hRh
#threatintel#training#cybersecurity#opensource
MISP 2.4.200 and 2.5.2 released - Post https://t.co/zqk97AAaLz release with many new features.
New feature such as Ad-Hoc Workflows, Private Custom Galaxies, Tags on Event Report, new features in event report & improved PDF export.
https://t.co/F9klUMJZSz
#ThreatIntel#cti
New features in vulnerability lookup includes sighting from different sources including @MISPProject communities. The example below is a vulnerability in Android but the CVE is not yet published. You can track the sighting evolution.
https://t.co/oD7cG1edwb
#vulnerability#cve
New conversion scripts bridge @MISPProject playbooks and CACAO (@OASISopen) security playbooks. Still an initial version but significantly simplifies integration between both formats. #CTI#automation#soar https://t.co/HdLDBwK8Nw
Very nice! Visualisations are essential for understanding complex reports.
Also see some ways on how to possibly integrate this in the future with @MISPProject reports and/or playbooks.
I created a small script to extract unique hostnames and domains from the DDoSia configuration objects shared via @MISPProject . Post at https://t.co/ax7HuIap5b ; script: https://t.co/8j0pQ47nBx #DDOS