Homas / ioc2rpz

ioc2rpz is a place where threat intelligence meets DNS.
Apache License 2.0
105 stars 17 forks source link

git.zeropw.com:443 was converted to 128.443.git.zeropw.com.rpz-ip.phishtank.ioc2rpz #18

Closed Homas closed 2 years ago

Homas commented 4 years ago

git.zeropw.com:443 was converted to 128.443.git.zeropw.com.rpz-ip.phishtank.ioc2rpz rule

  1. Check a regex which decide what kind of indicator we got for mixed feeds (probably the issue because the regex accepts IPv6)
  2. Enforce fqdn/ip validation.