Coder Social home page Coder Social logo

mockingjay's People

Contributors

acostanzo-mitre avatar bschmoker avatar

Stargazers

 avatar  avatar

Watchers

 avatar  avatar  avatar  avatar

mockingjay's Issues

Allow 'assignees' on incidents

Build a method for people to 'propose themselves' as an assignee

  • ability for creator to say "anyone can take it" or "I want to vet each potential person"
    • they choose a role, can be multiple
      with status
  • i.e. capture who has taken action
    • captured in STIX as 'responder', etc depending on role

list show up on incident display

  • Jim, Bob, and Jeffhave all said they want to respond
    Up to them to hash or

Build status updates into app

Goal is to allow people to comment on / update breaches

  • ability to assign breaches using email address as username
  • refactor DB to handle storing history of events (linked list?)
  • allow updating limited # of fields of a breach after the fact via web interface /breach/$id/edit
  • allow comments as an 'event', displayed on /breach/$id

Maintain incident ID on export

Should store the "first generated" stix ID, and emit the same one for future exports.

i.e. if (db.ID doesn't exist, generate a new one and store it)
stamp (db.ID)

add 'CourseofAction'

to capture followup actions from the agent

  • i.e. "we called them", or "they said it wasn't accurate"

Add list of IP/port associated with incident

Use cybox to build from SockObject

  • Accept list of 'target IPs' related to incident as victim
  • Accept hostile IPs / ports related to incident as hostile
    ? how to characterize the IPs

Send email with notifications

Include one-click links:

  • 'I want to be assigned' which sends an approve/deny request to the creator (shown as a potential assignee)
  • 'I want to follow this' which lets you get further updates (shown as sum total on ticket like stars in GH)
  • 'I want to report this as sensitive or have them check with my equities before releasing' which starts a dialogue with the creator and possibly changes visibility (not shown to others)

Set victim 'Role'

Capturing if they're a proxy for malicious actors, complicit, or innocent victim

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.