Yelp / osxcollector_output_filters

Filters that process and transform the output of osxcollector
https://github.com/Yelp/osxcollector
Other
78 stars 11 forks source link

Provide feature to group analysis results by IoCs #48

Closed leeren closed 6 years ago

leeren commented 6 years ago

Currently OSXCollector summarizes analysis results by threat intel sections. It would be useful to also have the option of displaying summary data listed not by these threat indicator sections individually, but by the IoCs themselves (i.e. with each also having a list of threat intel that identified them as worthy of further investigation).