analyzing-threat-landscape-with-misp

Community

Map threat landscape insights from MISP data.

AuthorAxxxxxxaaann
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Analyze threat landscapes by querying MISP instances to produce event statistics, attribute distributions, and actor insights, enabling faster threat understanding.

Core Features & Use Cases

  • Pull event statistics by date range and threat level to gauge activity
  • Analyze attribute type distributions (IP, domain, hash, URL) for indicator profiling
  • Identify top threat actors, malware families, and MITRE ATT&CK techniques via galaxy tags
  • Track actor activity and trends over time with temporal reports
  • Generate a consolidated threat landscape report for SOC and threat-hunting workflows

Quick Start

Launch the threat landscape agent against your MISP instance to generate a landscape report.

Dependency Matrix

Required Modules

pymisp

Components

scriptsreferences

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: analyzing-threat-landscape-with-misp
Download link: https://github.com/Axxxxxxaaann/KAIRI-Skills/archive/main.zip#analyzing-threat-landscape-with-misp

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.