MISP / misp-playbooks

MISP Playbooks
https://misp.github.io/misp-playbooks/
BSD 2-Clause "Simplified" License
174 stars 17 forks source link

A playbook that documents the different timestamps that are used in MISP #42

Closed cudeso closed 1 year ago

cudeso commented 1 year ago

The title of the playbook

MISP timestamp detailss

Purpose of the playbook

A playbook that documents the different timestamps that are used in MISP. Go through the timestamp for publishing and last changes as well as how these can be used in search queries. Document what changes a timestamp in a MISP event.

External resources used by this playbook

None

Target audience

CTI

Breefly list the execution steps or workflow

No response

adulau commented 1 year ago

Very good idea!