CrowdStrike / MISP-tools

Import CrowdStrike Threat Intelligence into your instance of MISP
MIT License
37 stars 10 forks source link

Duplicate indicators #169

Open Qlts opened 1 month ago

Qlts commented 1 month ago

Hi!

When getting indicators with -i flag, both malware family and indicator type events are made in MISP, both including same indicators. How to get only indicators based on malware family or only per indicator type group based?