Skip to content

Instantly share code, notes, and snippets.

@nicdev
nicdev / taxii2-manifest.json
Created September 18, 2018 13:24
collection manifest
{
"objects": [
{
"id": "indicator--2633e712-b12f-9803-f9e7-21b654dfcea8",
"date_added": "2018-09-18T13:23:42.090Z",
"media_type": [
"application/vnd.oasis.stix+json; version=2.0"
]
},
{
@nicdev
nicdev / malware-family-ext.json
Created September 14, 2018 15:52
[RFI] GET /xfe/malware/familyext/{malware_family}
{
"firstseen": "2012-01-27T00:19:00Z",
"malware": [
{
"type": "md5",
"created": "2014-10-20T23:19:00Z",
"family": [
"tsunami"
],
"md5": "474B9CCF5AB9D72CA8A333889BBB34F0"
@nicdev
nicdev / malware-family.json
Created September 14, 2018 15:42
[RFI] GET /xfe/malware/{malware_family}
{
"firstseen": "2012-01-27T00:19:00Z",
"malware": [
{
"type": "md5",
"created": "2014-10-20T23:19:00Z",
"family": [
"tsunami"
],
"md5": "474B9CCF5AB9D72CA8A333889BBB34F0"
@nicdev
nicdev / malware-hash.json
Last active September 14, 2018 15:33
[RFI] GET /xfe/malware/{hash}
{
"malware": {
"origins": {
"external": {
"detectionCoverage": 44,
"family": [
"heuristic",
"trojan"
]
},
@nicdev
nicdev / info-request.json
Created September 14, 2018 14:30
[RFI] POST /information_request
[
{
"ip": "203.0.113.1",
"history": [
{
"created": "2015-09-03T10:02:00.000Z",
"reason": "Security analyst review",
"geo": {
"country": "Private Network"
},
@nicdev
nicdev / report.json
Created September 14, 2018 14:08
[RFI] GET /reports/{report_id}
{
"reports": [
{
"title": "iris-1067-l2-analysis",
"media": {
"guid": "9e8b0e0795153f49073b8a25e4bc40e7",
"type": "media:news",
"property": "b8e921e9f0fc378c547b37821ba98678",
"secondary_property": {
"node:ndef": "5f4b0bf0ed0072194fa53b3c7dd6571c",
@nicdev
nicdev / reports.json
Created September 14, 2018 13:59
[RFI] /reports
{
"reports": [
{
"guid": "9e8b0e0795153f49073b8a25e4bc40e7",
"filename": "iris-1067-l2-analysis"
},
{
"guid": "85375d0940eba2d7771b03cc106a8a29",
"filename": "iris-358-l2-analysis"
},
@nicdev
nicdev / gist:119c5939ff84db5ee95c453f3345394b
Created September 14, 2018 13:55
[RFI] GET /healthcheck
{
"status": "bad",
"components": [
{
"name": "downstream services",
"status": "good",
"details": ""
},
{
"name": "cpu",
@nicdev
nicdev / object.json
Created September 14, 2018 13:54
[RFI] GET /collection/{collection_id}/objects/{object_id}
{
"spec_version": "2.0",
"type": "bundle",
"objects": [
{
"id": "indicator--2633e712-b12f-9803-f9e7-21b654dfcea8",
"type": "indicator",
"created": "2018-09-14T13:53:39.869Z",
"modified": "2018-09-14T13:53:39.869Z",
"labels": [
@nicdev
nicdev / objects.json
Created September 14, 2018 13:53
[RFI] GET /collections/{collection_id}/objects
{
"spec_version": "2.0",
"type": "bundle",
"objects": [
{
"id": "indicator--2633e712-b12f-9803-f9e7-21b654dfcea8",
"type": "indicator",
"created": "2018-09-14T13:52:14.743Z",
"modified": "2018-09-14T13:52:14.743Z",
"labels": [