forked from csirtgadgets/csirtg-smrt-v1
-
Notifications
You must be signed in to change notification settings - Fork 0
Home
Wes edited this page Oct 13, 2017
·
13 revisions
Parse data using YAML and throw that data just about anywhere.
$ [sudo] pip install csirtg-smrt
$ curl https://raw.githubusercontent.com/csirtgadgets/csirtg-smrt-py/master/examples/csirtg.yml > csirtg.yml
$ csirtg-smrt -r csirtg.yml -f port-scanners --format table|csv|bro
+-------+----------+----------------------------+-----------------+-------+------------+---------+----------------------------------+-------+-----------+
| tlp | group | lasttime | indicator | count | confidence | tags | description | rdata | provider |
+-------+----------+----------------------------+-----------------+-------+------------+---------+----------------------------------+-------+-----------+
| white | everyone | 2017-04-12T16:22:06.00000Z | 59.27.82.202 | 1 | 9.0 | scanner | sourced from firewall logs (in.. | | csirtg.io |
| white | everyone | 2017-04-12T16:21:43.00000Z | 31.162.111.152 | 1 | 9.0 | scanner | sourced from firewall logs (in.. | | csirtg.io |
| white | everyone | 2017-04-12T16:20:29.00000Z | 5.238.33.0 | 1 | 9.0 | scanner | sourced from firewall logs (in.. | | csirtg.io |
...