PyMISP
FLaNK-Halifax
PyMISP | FLaNK-Halifax | |
---|---|---|
3 | 14 | |
422 | 1 | |
1.7% | - | |
9.2 | 7.3 | |
2 days ago | 6 months ago | |
Python | TypeScript | |
GNU General Public License v3.0 or later | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
PyMISP
- FLaNK Stack Weekly for 13 November 2023
-
Get CrowdSec IOCs feed into MISP
You might consider misp feed https://github.com/MISP/PyMISP/tree/main/examples/feed-generator, basically itβs the best way to collect IOCs and import them into a MISP instance. These feeds help to correlate IOCs without manually launching the MISP module every time for each IOC, this also reduce the workload on your API servers as the list is cached locally on the MISP and updated every day.
-
Ingesting IOCs in to CS from MISP
If you're in Python, you can use PyMISP to login and get the new indicators, and then FalconPy to import them into your CrowdStrike tenant. (Basically the reverse of what the MISP-tools example is doing. You could start here and alter the logic.)
FLaNK-Halifax
- FLaNK Stack Weekly for 27 November 2023
- FLaNK Stack Weekly for 20 Nov 2023
- FLaNK Stack Weekly for 13 November 2023
- FLaNK Stack Weekly 06 Nov 2023
- FLaNK Stack Weekly for 30 Oct 2023
- FLaNK Stack Weekly 23 Oct 2023
- FLaNK Stack Weekly 16 October 2023
- FLaNK Stack Weekly 09 Oct 2023
- FLaNK Stack Weekly 2 October 2023
- FLaNK Stack for 25 September 2023
What are some alternatives?
MISP-QRadar-Integration - The Project can be used to integrate QRadar with MISP Threat Sharing Platform
rivet - The open-source visual AI programming environment and TypeScript library
yeti - Your Everyday Threat Intelligence
SeaGOAT - local-first semantic code search engine
vimGPT - Browse the web with GPT-4V and Vimium
flink-cdc - Flink CDC is a streaming data integration tool
clipea - ππ’ Like Clippy but for the CLI. A blazing fast AI helper for your command line
MISP-tools - Import CrowdStrike Threat Intelligence into your instance of MISP
CML_AMP_Intelligent-QA-Chatbot-with-NiFi-Pinecone-and-Llama2 - The prototype deploys an Application in CML using a Llama2 model from Hugging Face to answer questions augmented with knowledge extracted from the website. This prototype introduces Pinecone as a database for storing vectors for semantic search.
PaK-Stocks - Stocks
co-tracker - CoTracker is a model for tracking any point (pixel) on a video.