-
Notifications
You must be signed in to change notification settings - Fork 640
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Feature Request - Default/Standardized Taxonomies and Tags #55
Comments
Hey Phil, can you please contact me. Been trying to reach you. My e-mail is [email protected] |
Adding a description from #35Looking at MISP as well, there you have the possibility to tag Events in different categories, this is an excellent idea and I propose that this is implemented into thehive I suggest these gets implemented as tags in thehive, also that TLP, VERIS and MISP at least are implemented, if you like to make this work for the same organisations using MISP, then consider being able to use all the same taxonomies as them |
Hi there, is there any update on this part? I see some requirements for something similar like this |
Taxonomies added to TheHive 4.1.0 : |
Request Type
Feature Request - Default/Standardized Taxonomies and Tags
Description
Lack of default tags that can be applied at the case/incident level. This would very similar to the way taxonomies work at at the event level with MISP. This allows for a more formal way of keeping track of different, standardized tags. Example default tags that would require input could include point of origination, attribution (APT, Cybercrime, etc), Detection Tool (SIEM, Employee, etc.)
Possible Solutions
Brainstorm ideas:
Complementary information
Taxonomies should be importable in a similar way MISP does it (write the taxonomy via json, drop it into a folder, update application, $$)
The text was updated successfully, but these errors were encountered: