MISP / misp-galaxy

Clusters and elements to attach to MISP events or attributes (like threat actors)
https://misp-galaxy.org/
Other
511 stars 257 forks source link

Relations to add #269

Open Delta-Sierra opened 5 years ago

Delta-Sierra commented 5 years ago
Delta-Sierra commented 5 years ago

Self-reminder (can be moved): Might be interesting to find a easy way to manage reciprocal relationships, such as dropped(dropper)/dropped-by or uses/used-by for instance

Delta-Sierra commented 5 years ago
Delta-Sierra commented 5 years ago

ref: https://www.bleepingcomputer.com/news/security/new-backdoor-ties-notpetya-and-industroyer-to-telebots-group/


Delta-Sierra commented 5 years ago




APT10 Associated malware: HAYMAKER, SNUGRIDE, BUGJUICE, QUASARRAT


Princess Ransomware Variant --> Princess Evolution

Razdel is BankBot variant

SteveClement commented 5 years ago

@Delta-Sierra could you label this accordingly, it seems to be WiP of some sorts?

Delta-Sierra commented 5 years ago

This can be considered as WIP indeed. Or a kind of memo.