Blogs

Training Video - MISP Workflow

MISP Training Video December Edition - Workflow MISP has been a widely used open source CTI platform for the past decade, with a long list of tools that allow users to customise the data models and contextualisation of the platform, yet true customisation of the actual workflows and processes had to be done externally using custom scripts.

Continue reading

MISP 2.4.166 released with many improvements, bugs fixed and security fixes.

We are pleased to announce the immediate availability of MISP v2.4.166 with new features and fixes, including two critical security fixes.

Continue reading

MISP 2.4.165 released with many improvements, bugs fixed and security fixes.

We are pleased to announce the immediate availability of MISP v2.4.165 with many improvements to the workflow subsystem along with various performance improvements.

Continue reading

Curate events with an organisation confidence level

Quality of threat intelligence When you receive threat intelligence from different sources you quickly realise there is a big difference in the quality of the received information.

Continue reading

SACTI - Secure aggregation of cyber threat intelligence

SACTI: Secure aggregation of cyber threat intelligence Overview Communities can share cyber threat intelligence on platforms, such as MISP. In the H2020 project Prometheus TNO has developed a way to securely aggregate cyber threat intelligence and publish the result on MISP.

Continue reading

MISP 2.4.164 released with new tag relationship feature, improvements and a security fix

We are pleased to announce the immediate availability of MISP v2.4.164 with a new tag relationship features, many improvements and a security fix.

Continue reading

MISP 2.4.163 released with improved periodic notification system and many improvements

We are pleased to announce the immediate availability of MISP v2.4.163 with an updated periodic notification system and many improvements.

Continue reading

MISP 2.4.162 released with a new periodic notification system, workflow updates and many improvements

We are pleased to announce the immediate availability of MISP v2.4.162 with a new periodic notification system, workflow updates and many improvements.

Continue reading

MISP Guard

Let’s say that by no means should an attribute of type passport-number leave your MISP instance. Aside from the analyst following best practices when encoding the data, MISP does not have a built-in mechanism to prevent these leaks to happen, but now you can achieve this by using a third-party tool called misp-guard.

Continue reading

Periodic summaries - Visualize summaries of MISP data

Periodic summaries - Visualize summaries of MISP data As of version 2.4.162, MISP includes a periodic summary feature allowing users to consult a summary based on a requested time-frame for data the user has access to.

Continue reading

MISP 2.4.161 released with small improvements and bugs fixed

We are pleased to announce the immediate availability of MISP v2.4.161. Small improvements A new option added to log the last API request of an API key.

Continue reading

MISP 2.4.160 released with new workflow feature, new correlation engines and many major improvements

We are pleased to announce the immediate availability of MISP v2.4.160. With the August summer-holiday season kicking into high gear, we have a very special release for you all, containing a long list of major new features, improvements and general quality of life improvements.

Continue reading

MISP web scraper

MISP web scraper There are a lot of websites that regularly publish reports on new threats, campaigns or actors with useful indicators, references and context information.

Continue reading

MISP 2.4.159 released with many improvements including performance

We are pleased to announce the immediate availability of MISP v2.4.159. This releases includes many improvements, bug fixes and improvements concerning performance on large datasets.

Continue reading

MISP 2.4.158 security fix and general improvement release

We are pleased to announce the immediate availability of MISP v2.4.158. This release includes a series of security fixes and as such we highly encourage everyone to update to this version as soon as possible.

Continue reading

MISP 2.4.157 released including some usability fixes following the large changes of 2.4.156 along with some improvements

We are pleased to announce the immediate availability of MISP v2.4.157, following a series of bug fixes as a quick follow up to 2.

Continue reading

MISP 2.4.156 released including a new synchronisation event signing mechanism and many new features

We are pleased to announce the immediate availability of MISP v2.4.156 - a release bringing several new features and fixes two critical vulnerabilities.

Continue reading

MISP 2.4.155 - quick bugfix release

This release is a rapid follow up to v2.4.154, addressing several rather annoying issues Bugfixes Various bugfixes to the sharing group blueprint system (especially to it being more restrictive than intended) Updating the DB schema to avoid the diagnostics complaining Fixed an issue with organisation meta fields defaulting to null rather than ’’ (causing the blueprint issue mentioned above) Rework of the DB schema dumper Fixes to the Kali Linux installer Acknowledgement We would like to thank all the contributors, reporters and users who have helped us in the past months to improve MISP and information sharing at large.

Continue reading

MISP 2.4.154 released including tools for managing rapidly changing communities

MISP 2.4.154 released with a host of new features and fixes, including some new tools that help us navigate the current geo-political landscape when sharing information.

Continue reading

MISP 2.4.153 released with improvements and bugs fixes

MISP 2.4.153 released MISP UI translation in Thai added. Improved the debugging of the synchronisation, including more meaningful messages in debug logs.

Continue reading