Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Silobreaker] Possible improvements #3588

Open
Lhorus6 opened this issue Mar 8, 2025 · 0 comments
Open

[Silobreaker] Possible improvements #3588

Lhorus6 opened this issue Mar 8, 2025 · 0 comments
Labels
feature use for describing a new feature to develop needs triage use to identify issue needing triage from Filigran Product team to verify use to identified for Verified

Comments

@Lhorus6
Copy link
Contributor

Lhorus6 commented Mar 8, 2025

Description

After a review of the data ingested by the Silobreaker connector, here are the points for improvement identified

Markings

There is no Marking on:

  • Organizations
  • Vulnerabilities
  • Countries
  • Cities
  • Based-on” relationships between Indicators and Observables

NB: Objects with markings are in TLP:GREEN. Knowing that this is a paid source, I'm not sure it's the right TLP to apply. For paying sources, TLP:AMBER+STRICT is normally the norm.

Author

There is no Author on:

  • Based-on” relationships between Indicators and Observables

Missing Relationships

  • No “Uses” relationship between Malware and Attack Patterns

Image

  • No “Targets” relationship between Threat (Intrusion set OR Malware) and Organization

Image

@Lhorus6 Lhorus6 added feature use for describing a new feature to develop needs triage use to identify issue needing triage from Filigran Product team labels Mar 8, 2025
@helene-nguyen helene-nguyen added the to verify use to identified for Verified label Mar 8, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature use for describing a new feature to develop needs triage use to identify issue needing triage from Filigran Product team to verify use to identified for Verified
Projects
None yet
Development

No branches or pull requests

2 participants