Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[FR] Add analyzer for CIS MCAP #1096

Open
joeslazaro-cdw opened this issue Jun 2, 2022 · 0 comments · Fixed by #1098
Open

[FR] Add analyzer for CIS MCAP #1096

joeslazaro-cdw opened this issue Jun 2, 2022 · 0 comments · Fixed by #1098

Comments

@joeslazaro-cdw
Copy link
Contributor

joeslazaro-cdw commented Jun 2, 2022

Feature description
The Center for Internet Security (CIS) provides an API for their Malicious Code Analysis Platform (MCAP), a no-cost web-based sandbox. CIS is home to MS-ISAC (Multi State Information Sharing and Analysis Center) and EI-ISAC (Elections Infrastructure Information Sharing and Analysis Center). MCAP allows MS-ISAC and EI-ISAC members to submit suspicious files such as executables, DLLs, documents, quarantine files, and archives for analysis in a controlled and non-public fashion. The platform also enables users to perform threat analysis based on domain, IP address, URL, hashes, and various Indicators of Compromise (IOCs).

Describe the solution you'd like
I have a working analyzer for which I am preparing to submit a pull request.

Additional context
Reference: https://www.cisecurity.org/

@jeromeleonard jeromeleonard linked a pull request Oct 10, 2022 that will close this issue
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
1 participant