MISP: Malware and threat sharing information platform

Το MISP ( Malware Information Sharing Platform & Threat Sharing) είναι μια λύση ανοιχτού κώδικα για τη συλλογή, αποθήκευση, διανομή και κοινή χρήση δεικτών και απειλών σχετικά με την ασφάλεια στον διαδίκτυο και την ανάλυση συμβάντων για την ασφάλεια στον κυβερνοχώρο.

MISP is designed by and for event analysts, security professionals and ICT or reverse engineers to support their day-to-day operations for efficient structured information exchange.

The goal of MISP is to promote the exchange of structured information within the security community. MISP provides functions to support the exchange of information, but also the consumption of information from the Network Intrusion Detection System (NIDS), LIDS and recording analysis tools, SIEMs.

The exchange of information leads to faster detection of targeted attacks and improves the detection ratio while reducing false threats. We also avoid reversing such malware as we know very quickly that other groups or organizations have already analyzed a particular malware.

Specifications

  • efficient IOC and indicators
  • correlation 
  • flexible data model
  • sharing functionality
  • intuitive user-interface
  • storing data
  • export
  • import
  •  free text import
  • Collaborate 
  • data-sharing
  • delegating of sharing
  •  
  • Adjustable taxonomy
  • Intelligence vocabularies
  • Expansion modules in Python
  • Sighting support
  • STIX support
  • Integrated encryption and signing of the notifications

Application snapshots

 

You can download the program from here.

Instructions on installing the program can be found here.

Instructions for using the program can be found here.

 

 

iGuRu.gr The Best Technology Site in Greecefgns

Subscribe to Blog by Email

Subscribe to this blog and receive notifications of new posts by email.

Written by Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).