TheHive-Project / TheHive

TheHive: a Scalable, Open Source and Free Security Incident Response Platform
https://thehive-project.org
GNU Affero General Public License v3.0
3.45k stars 626 forks source link

[Feature Request] #2498

Open pytraveller opened 1 week ago

pytraveller commented 1 week ago

Request Type

Feature Request

Feature Description

Adding new observable type focusing telecom threat & IoCs. Like for SS7, Diameter, GTP based threat & IoCs, require specific information regarding point code, Global title(GT), Calling GT, Called GT, message types for SS7, Diameter, GTP etc.

Possible Solutions

(keep this section if you have suggestions on how to solve the purpose. Otherwise delete it)

Complementary information

In MISP there is an object named SS7 to describe telecom based threats. It was developed based on request. It can be checked if the similar can be developed for theHive as well which will be a great addition to this software making it more attractive to telecom operators working to streamline their telecom threats & IoCs