Synthetic Exercise World – Fictional dataset for cyber exercises and standards

Synthetic Exercise World는 사이버 위협 인텔리전스(CTI) 훈련과 표준 문서 작성을 위한 중립적이고 재사용 가능한 가상 데이터셋을 제공한다. 이 데이터셋은 허구의 국가, 기업, 위협 행위자를 포함하여 실제 지정학적 상황이나 민감한 정보를 배제하고, 다양한 훈련 시나리오와 도구 간 상호운용성을 높인다. JSON 형식으로 제공되며 MISP 갤럭시 구조와 호환되어 기존 CTI 플랫폼에 쉽게 통합 가능하다. 이를 통해 국가 간, 부문 간 협업과 표준화가 용이해지고, 정치적 민감성 없이 현실적인 사이버 위협 시나리오를 설계할 수 있다.

https://github.com/MISP/Synthetic-Exercise-World-Format

#cybersecurity #cti #dataset #misp #exercise

GitHub - MISP/Synthetic-Exercise-World-Format: The Synthetic Exercise World Format provides fictional countries, companies, sectors, and threat actors with structured metadata for neutral CTI examples, exercises, interoperability tests, and standards documentation without referencing real-world sensitive entities.

The Synthetic Exercise World Format provides fictional countries, companies, sectors, and threat actors with structured metadata for neutral CTI examples, exercises, interoperability tests, and sta...

GitHub

The Synthetic Exercise World Format provides fictional countries, companies, sectors, and threat actors with structured metadata for neutral CTI examples, exercises, interoperability tests, and standards documentation without referencing real-world sensitive entities.

I just released version 1.0.

#cti #opensource #misp #cybersecurity #threatintelligence #threatintel

🔗 GitHub - https://github.com/MISP/Synthetic-Exercise-World-Format

Drone and UAV Forensic

This repository is designed to accelerate the forensic analysis of DIY FPV drones and to help automate technical reporting from seized or recovered artifacts.

The goal is pragmatic: extract useful evidence faster, normalize outputs, and produce data that can be reused in reports or shared into investigative platforms such as MISP.

🔗 https://github.com/CIRCL/Drone-Forensic

#drone #uav #opensource #dfir #threatintelligence #threatintel #misp #digitalforensics

@circl
@misp

GitHub - CIRCL/Drone-Forensic: Drone and UAV Digital Forensic

Drone and UAV Digital Forensic. Contribute to CIRCL/Drone-Forensic development by creating an account on GitHub.

GitHub

Some updates on the MISP Galaxy website:

https://www.misp-galaxy.org/mitre-fraud-framework/#

It now includes a matrix-like view of the galaxy for @misp

#misp #cti #threatintel #threatintelligence

⚙️ Technical Spotlight: New Session at BSides Luxembourg 2026

𝗟𝗜𝗚𝗛𝗧𝗡𝗜𝗡𝗚 𝗧𝗔𝗟𝗞: 𝗠𝗜𝗦𝗣 𝗪𝗢𝗥𝗞𝗕𝗘𝗡𝗖𝗛– Luciano Righetti

Lightning Talk (5 minutes)

Catch a sharp 5-minute lightning talk introducing MISP Workbench, a lightweight platform designed to bring fast, actionable threat intelligence directly to the frontlines. Built for edge deployments and threat hunters, this tool focuses on speed, accessibility, and enabling defenders to operate effectively even in constrained environments.

This session highlights how MISP Workbench enhances threat intelligence workflows, making it easier to collect, process, and act on data anytime, anywhere. A practical glimpse into modern, field-ready tooling for security teams looking to stay agile and responsive.

Luciano Righetti is a software engineer with a strong passion for cybersecurity, formerly contributing as a MISP core developer at CIRCL. His work focuses on building practical tools that support threat intelligence operations and strengthen Luxembourg’s cybersecurity ecosystem.

📅 Conference Dates: 6–8 May 2026 | 09:00–18:00
🎟️ Tickets: https://2026.bsides.lu/tickets/
📅 Schedule: https://pretalx.com/bsidesluxembourg-2026/schedule/
📲 Want to navigate the event easily? Check out the full schedule on Hacker Tracker:
https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #CyberSecurity #ThreatIntelligence #MISP #BlueTeam #OpenSource

Excited to share that the MITRE Fight Fraud Framework™ (F3) is now included in the default MISP galaxy and available across all MISP instances.

F3 is a curated knowledge base of tactics and techniques used by financial fraud actors, helping analysts structure, share, and enrich fraud-related intelligence more effectively.

A great step forward for the MISP community and for teams tracking financial fraud.

🔗 https://github.com/MISP/misp-galaxy

@misp
@circl

#misp #financialfraud #threatintel #threatintelligence #opensource
#financial

@threatchain general purpose siem, malcolm ids, debian server, opnsense - good combo imo, good licensing,. I may just refactor and use 500gb drives so cost will not be the limiting factor, you can use debian blends too but even some of these specialized apps won't have included forensics-full and this has a ton of super usefull sw, when you have the persistence partition going corner case use cases can be covered better than say something like a bootable iso #rational clear case #mw #smw #yacy 3jenkins #ntop-ng #misp #cms #lamp server #sbom #addons #app armor #selinux #ufw #fail2ban #hardened debian #pentoo

What really impresses me is the creativity still thriving around the MISP project. I maintain MISP warning-lists for years to help filter false positives, and this week @iglocska built a new stand-alone #rust application for fast warning-list lookups, independent of MISP.

#rust #misp #cybersecurity #cti #threatintelligence #opensource

@misp

🔗 Source code of misp-feedback https://github.com/MISP/misp-feedback
🔗 misp-warninglists https://github.com/MISP/misp-warninglists

We are happy to announce the release of MISP v2.5.36, which includes new geolocation and map visualisation capabilities, the continued development of the Overmind UI, a new interactive CLI shell UI, important security fixes, and installer improvements.

#misp #cti #informationsharing #threatintel #opensource

https://github.com/MISP/MISP/releases/tag/v2.5.36

I'm happy to announce the long-awaited first release of misp-modules-cli version 1.0.0.

This initial release makes it nifty and convenient to use MISP expansion modules directly from the command line, whether you are working against a local or remote misp-modules service. The goal is simple: bring the power of misp-modules into a lightweight CLI workflow that is easy to script, automate, and integrate into daily analysis work.

#misp #mispmodules #threatintelligence #threatintel #opensource #cli #cybersecurity #osint

@misp

🔗 Release note https://github.com/MISP/misp-modules-cli/releases/tag/v1.0
 misp-modules-cli https://github.com/MISP/misp-modules-cli
 misp-modules https://github.com/MISP/misp-modules

Release First release of misp-modules-cli - version 1.0 · MISP/misp-modules-cli

misp-modules-cli 1.0.0 We are happy to announce the long-awaited first release of misp-modules-cli version 1.0.0. This initial release makes it nifty and convenient to use MISP expansion modules di...

GitHub