stopipv / isdi

ISDi (IPV Spyware Discovery) tool for Android and iOS.
MIT License
165 stars 40 forks source link

Integrate more Stalkerware IOCs #37

Closed Te-k closed 1 year ago

Te-k commented 2 years ago

Hi,

I would like to submit a PR to integrate IOCs from this repo https://github.com/Te-k/stalkerware-indicators in order to add more appids to your detection. Would that be ok ?

naman commented 1 year ago

Great suggestion! Do you have a preferred way to integrate IoC with isdi?

naman commented 1 year ago

@Tek feel free to provide feedback on the above PR

Te-k commented 1 year ago

Hey, apologies for not following through on this. Is there any reason for you to get IOCs in static data in the repository instead of having the app download the file regularly? It would be more likely to have the last version of IOCs. Something like :

naman commented 1 year ago

@Te-k the PR proposes a Github action to pull IOC file every week

Te-k commented 1 year ago

Thanks, is there any reason to have the file in the repository rather than downloaded on use?