google / timesketch

Collaborative forensic timeline analysis
Apache License 2.0
2.57k stars 585 forks source link

Update domain analyzer #735

Open kiddinn opened 5 years ago

kiddinn commented 5 years ago

The gist of it is:

berggren commented 5 years ago

Domain visited above average, or in the top X%

^-- This should be simple to add.

berggren commented 5 years ago

Sorry, closed by mis-click :)

kiddinn commented 5 years ago

781 added known CDN domains to limit some of the noise

MariasStory commented 5 years ago

Do you want to do ML to find phishy domains? Server side: https://github.com/csirtgadgets/tf-domains-example Browser: https://github.com/tensorflow/tfjs-examples/tree/master/website-phishing

berggren commented 4 years ago

Changing title for this one as the analyzer has been in production for some time now, and the remaining tasks are addition and feature requests.

berggren commented 3 years ago

@kiddinn what is the status of this one?

berggren commented 1 year ago

Re-assigning to Janosch for triage.