MAECProject / schemas

MAEC Schemas and Schema Development
83 stars 16 forks source link

Add support for AV classifications as a first-class Bundle entity #15

Closed ikiril01 closed 11 years ago

ikiril01 commented 11 years ago

Running malware through AV engines is a common analysis process and thus we should have a more standard way of capturing it in the Bundle. In addition, we should make sure we have the ability to capture the historical of context of AV runs, since this data can be useful for determining, for example, the different classifications that a sample was given over time.

ikiril01 commented 11 years ago

Added in commit dff5140426f5d6b368f44c7f08f93a64989e9a73.