• Stars
    star
    3
  • Rank 3,963,521 (Top 79 %)
  • Language
    Python
  • License
    GNU Affero Genera...
  • Created over 7 years ago
  • Updated over 7 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Tools to support sighting from various sources (e.g. network pcap) to sight attributes in MISP instances

More Repositories

1

MISP

MISP (core software) - Open Source Threat Intelligence and Sharing Platform
PHP
4,717
star
2

misp-galaxy

Clusters and elements to attach to MISP events or attributes (like threat actors)
Python
439
star
3

misp-warninglists

Warning lists to inform users of MISP about potential false-positives or other information in indicators
Python
412
star
4

PyMISP

Python library using the MISP Rest API
Python
381
star
5

misp-modules

Modules for expansion services, enrichment, import and export in MISP and other tools.
Python
344
star
6

misp-training

MISP trainings, threat intel and information sharing training materials with source code
TeX
316
star
7

x_old_misp_docker

MISP Docker (XME edition)
Shell
283
star
8

misp-book

User guide of MISP
Shell
253
star
9

misp-taxonomies

Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.
Python
237
star
10

misp-dashboard

A live dashboard for a real-time overview of threat intelligence from MISP instances
JavaScript
184
star
11

MISP-maltego

Set of Maltego transforms to inferface with a MISP Threat Sharing instance, and also to explore the whole MITRE ATT&CK dataset.
Python
156
star
12

misp-docker

A production ready Dockered MISP
Shell
156
star
13

docker-misp

Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing
Dockerfile
100
star
14

misp-objects

Definition, description and relationship types of MISP objects
Python
83
star
15

MISP-Taxii-Server

An OpenTAXII Configuration for MISP
Python
79
star
16

mail_to_misp

Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.
Python
67
star
17

MISP-STIX-Converter

A utility repo to assist with converting between MISP and STIX formats
Python
64
star
18

misp-cloud

misp-cloud - Cloud-ready images of MISP
Shell
64
star
19

misp-stix

MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats
Python
49
star
20

best-practices-in-threat-intelligence

Best practices in threat intelligence
HTML
44
star
21

misp-playbooks

MISP Playbooks
Jupyter Notebook
41
star
22

misp-rfc

Specifications used in the MISP project including MISP core format
HTML
41
star
23

misp-vagrant

Deploy MISP Project software with Vagrant.
Shell
41
star
24

threat-actor-intelligence-server

A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the known threat actors.
Python
37
star
25

intelligence-icons

intelligence-icons is a collection of icons and diagrams for building training and marketing materials around Intelligence sharing; including but not limited to CTI, MISP Threat Sharing, STIX 2.
JavaScript
35
star
26

misp-compliance

Legal, procedural and policies document templates for operating MISP and information sharing communities
33
star
27

misp-packer

Build Automated Machine Images for MISP
Shell
29
star
28

MISPego

Maltego Transform to put entities into MISP events
Python
26
star
29

misp-training-lea

Practical Information Sharing between Law Enforcement and CSIRT communities using MISP
TeX
26
star
30

PyTaxonomies

Python module to use the MISP Taxonomies
Python
26
star
31

misp-workbench

MISP Workbench
Python
26
star
32

PyMISPWarningLists

Pythonic way to work with the warning lists defined there: https://github.com/MISP/misp-warninglists
Python
26
star
33

misp-wireshark

Lua plugin to extract data from Wireshark and convert it into MISP format
Lua
23
star
34

ansible

MISP - Ansible installation script
PHP
22
star
35

misp-website

MISP website (hugo-based)
HTML
21
star
36

misp-takedown

A curses-style interface for automatic takedown notification based on MISP events.
Python
20
star
37

misp-graph

A tool to convert MISP XML files (events and attributes) into graphs
Python
20
star
38

PyMISPGalaxies

Pythonic way to work with the galaxies defined there: https://github.com/MISP/misp-galaxy
Python
17
star
39

misp-grafana

A real-time Grafana dashboard using MISP ZeroMQ message queue and InfluxDB
Python
13
star
40

misp-privacy-aware-exchange

A privacy-aware exchange module to securely and privately share your indicators
Python
13
star
41

misp-sighting-server

MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indicators) in a space efficient way.
Python
13
star
42

data-processing

Scripts to process big chunks of data from MISP and do in depth correlations on samples.
Python
12
star
43

yara-misp

Export MISP attributes in Yara
Python
12
star
44

misp-workflow-blueprints

Library of blueprints usable in MISP Workflows
Shell
11
star
45

MISP-sizer

Sizing your MISP instance
JavaScript
11
star
46

cexf

Common Exercise Format - CEXF
Python
10
star
47

misp-guard

misp-guard is a mitmproxy addon that inspects and blocks outgoing events to external MISP instances via sync mechanisms (pull/push) based on a set of customizable block rules.
Python
10
star
48

misp-bump

Simple and secure synchronisation of MISP instances with mobile phones
Java
9
star
49

evtx-toolkit

Tool to read EVTX files including SYSMON and convert to JSON, MISP Objects and Graph stream
Python
9
star
50

misp-decaying-models

MISP decaying models
Shell
9
star
51

threat-intelligence-browser

A browser for the threat intelligence knowledge base of the MISP project galaxies
JavaScript
9
star
52

MISP-presentations

8
star
53

misp-noticelist

Notice lists to inform users of MISP about legal or technical implication for some attributes, categories and objects
8
star
54

dockerized_training_environment

A training environment, with docker.
Python
8
star
55

misp-opendata

Tool to submit / delete data from MISP to opendata portal
Python
8
star
56

MISP-RPM

RPM packages for MISP
Makefile
8
star
57

misp-standard.org

misp-standard.org website
HTML
7
star
58

PyIntel471

Python API for PyIntel471
Python
7
star
59

misp-bloomfilter

A tool to create bloom filters from MISP records to share IOCs with others without breaking confidentiality.
Python
6
star
60

matrix-misp-bot

Very basic MISP bot for matrix.
Python
6
star
61

misp-expansion

MISP expansion - a browser extension (Firefox and Chrome) to lookup on MISP
JavaScript
5
star
62

misp-darwin

MISP darwin is a model and tools to automatically translate in natural language technical or structured information from MISP
Python
5
star
63

mail_to_misp_test

Test emails for mail to misp
4
star
64

LuaMISP

Lua Library to create and manipulate MISP entities
Lua
3
star
65

pdf_fonts

PDF Fonts used by PyMISP PDFtools export to support internalization
3
star
66

misp-usage-statistics

MISP usage statistics using bokeh (as a static webpage)
Python
3
star
67

misp-monitoring

Tools and documentation related to MISP instance monitoring in production/corporate environments
Shell
3
star
68

pypraware

Python Privacy Aware (pypraware) module containing script for misp-privacy-aware-exchange
Python
3
star
69

misp-stix-tests

STIX files for testing misp-stix and various libraries
2
star
70

misp_dockerized_testing

Test MISP instances using a dockerized infrastructure
Python
2
star
71

widget-collection

PHP
1
star
72

cakephp

CakePHP (v2.x branch + updates)
PHP
1
star
73

PyMISPObjectTemplates

Python API to create and update MISP Object templates
Python
1
star