8000 [add] new cluster + galaxy by raw-data · Pull Request #236 · MISP/misp-galaxy · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content

[add] new cluster + galaxy #236

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 2 commits into from
Jul 6, 2018
Merged

[add] new cluster + galaxy #236

merged 2 commits into from
Jul 6, 2018

Conversation

raw-data
Copy link
Contributor
@raw-data raw-data commented Jul 6, 2018
  • new backdoor cluster + galaxy
  • x1 new backdoor Wellmess

@adulau
Copy link
Member
adulau commented Jul 6, 2018

It's a good idea. Maybe we should keep track on the long run of the backdoor cluster versus the tool and maybe add a meta field mentioning that is also in the galaxy backdoor. Thank you for the contribution.

@adulau adulau merged commit 11af1ca into MISP:master Jul 6, 2018
@raw-data
Copy link
Contributor Author
raw-data commented Jul 8, 2018

Definitely a good point. Maybe it could also be interesting to think about commodity malware vs threat actors vs activity groups vs campaign and so on. As you noted, some entries in tool could fall into other types of galaxies - not limited to backdoor.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants
0