InQuest / ThreatIngestor

Extract and aggregate threat intelligence.
https://inquest.readthedocs.io/projects/threatingestor/
GNU General Public License v2.0
832 stars 135 forks source link

Expand indicator types to include email addresses. #135

Open pedramamini opened 1 year ago

pedramamini commented 1 year ago

In addition to extracting the email address as a new IOC type, we'll also want to detect credential dumps, which typically will following the format: <email><separator><password>