MISP

MISP

Overview

MISP (Malware Information Sharing Platform & Threat Sharing) is an open source software solution for collecting, storing, distributing, and sharing cyber security indicators and threat intelligence. Designed for incident analysts, security professionals, and malware reversers, MISP supports their day-to-day operations by providing a structured platform for threat intelligence management.

Key Features

  • Threat Intelligence Sharing: Enables efficient sharing of indicators of compromise (IOCs) and threat intelligence across organizations
  • Structured Data Model: Uses a comprehensive data model for describing threats, vulnerabilities, and attack patterns
  • Automated Correlation: Automatically correlates imported data with existing events to find relationships
  • Feed Integration: Supports importing from and exporting to various threat intelligence feeds and formats
  • Taxonomy System: Built-in classification system for categorizing and tagging threat information
  • Galaxies and Clusters: Knowledge base system for mapping threats to MITRE ATT&CK and other frameworks
  • API and Automation: Full REST API for automating threat intelligence workflows

Official Resources

Sign In

Register

Reset Password

Please enter your username or email address, you will receive a link to create a new password via email.