MISP-Module for OpenCTI Enrichment
OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. It has been created in order to structure, store, organize and visualize technical and non-technical information about cyber threats.
The data is structured using a knowledge schema based on the STIX2 standards. It has been designed as a modern web application including a GraphQL API and an UX oriented frontend. Also, OpenCTI can be integrated with other tools and applications such as MISP, TheHive, MITRE ATT&CK etc.
OpenCTI is an open and modular platform, so the community provides a lot of documentation, video, components or connectors that work with the platform.
Main Site: https://www.opencti.io/en/
Documentation:
- https://www.notion.so/OpenCTI-Public-Knowledge-Base-d411e5e477734c59887dad3649f20518
- https://www.notion.so/OpenCTI-Ecosystem-868329e9fb734fca89692b2ed6087e76