Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Additional fields #7

Open
P01s0nV opened this issue Nov 3, 2021 · 1 comment
Open

Additional fields #7

P01s0nV opened this issue Nov 3, 2021 · 1 comment

Comments

@P01s0nV
Copy link

P01s0nV commented Nov 3, 2021

We would like to have additional fields for iocs in the SEKOIA lookups. More precisely, we would like to have the name of the threat and the mitre attack phase, which seem to be available in the SEKOIA.IO API.

We were also wondering if there was a reputation attached to iocs, and if so, if it could be added as well ?

@CharlesLR-sekoia
Copy link

Dear @P01s0nV

Thank you for this request.
This is indeed an interesting point.

This is an open source feature, we would be please to review your code for:

  • MITTRE ATT&CK phase
  • The reputation (confidence notion)

I think that information collection related to Threats is much more complex than it may seems to be.

Should you have other questions, feel free to contact [email protected]

Best regards,

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants