OSTIP

From GCA ACT
Jump to navigationJump to search

Description

A homebrew threat data platform.


Indicator storage database:


  • Groups indicators by "Events" (similar to the MISP model)
  • Correlate indicators on indicator input (again similar to misp)
  • Data validation by indicator type
  • Clean simple UI for entering/managing indicators and events
  • API to bulk upload/download indicators and add/delete events
  • Ability to Add indicators by email
  • Functionality to add events in pending state and approve later
  • Customizable and modular Feed/OSINT scheduled pull/parsing (Similar to how MineMeld functions)
  • Indicator Expiration

More Information

URL: https://github.com/kx499/ostip/wiki

Maintenance Status: Active

Last Updated Date: > 5 years ago

Formats Available: See website.

Social Media Links: Unknown

Contact Information: kx499-zz · GitHub

License Information: See website.