Skip to content
KitploitKITPLOIT
ツールブログ
提出
ツールブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
misp-objects — 構造化された脅威インテリジェンスの共有と相互運用可能なIOC交換のための、MISP属性とリレーションシップタイプを定義するキュレーション済みJSONオブジェクトテンプレート。 | Kitploit
ツール/GitHubGitHub/misp/misp-objects
侵害指標 (IOC) 管理マルウェア分析脅威インテリジェンスインシデントレスポンス厳選リソース
GitHubmisp/misp-objects

misp-objects

構造化された脅威インテリジェンスの共有と相互運用可能なIOC交換のための、MISP属性とリレーションシップタイプを定義するキュレーション済みJSONオブジェクトテンプレート。

リポジトリを見る
1101376日前Kitploit レビュー済み

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
共有
ウェブサイト

misp-objects

Logo MISP Objects

Python application

MISPオブジェクトはMISPシステムで使用され、他の情報共有ツールでも使用できます。MISPオブジェクトは MISP属性に加えて、属性の高度な組み合わせを可能にします。これらのオブジェクトとその関連属性の作成は、 実際のサイバーセキュリティのユースケースと情報共有における既存の慣行に基づいています。

独自のMISPオブジェクトテンプレートをMISPに含めるために提案してください。このシステムは misp-taxonomies と似ており、誰でもソフトウェアを変更することなく独自のオブジェクトをMISPに含めるために貢献できます。

MISPオブジェクトテンプレートの形式

'domain-ip' を用いたMISPオブジェクトテンプレートの例~~~~json

{ "attributes": { "domain": { "categories": [ "Network activity", "External analysis" ], "description": "Domain name", "misp-attribute": "domain", "multiple": true, "ui-priority": 1 }, "first-seen": { "description": "First time the tuple has been seen", "disable_correlation": true, "misp-attribute": "datetime", "ui-priority": 0 }, "ip": { "categories": [ "Network activity", "External analysis" ], "description": "IP Address", "misp-attribute": "ip-dst", "multiple": true, "ui-priority": 1 }, "last-seen": { "description": "Last time the tuple has been seen", "disable_correlation": true, "misp-attribute": "datetime", "ui-priority": 0 }, "port": { "categories": [ "Network activity", "External analysis" ], "description": "Associated TCP port with the domain", "misp-attribute": "port", "multiple": true, "ui-priority": 1 }, "registration-date": { "description": "Registration date of domain", "disable_correlation": false, "misp-attribute": "datetime", "ui-priority": 0 }, "text": { "description": "A description of the tuple", "disable_correlation": true, "misp-attribute": "text", "ui-priority": 1 } }, "description": "A domain and IP address seen as a tuple in a specific time frame.", "meta-category": "network", "name": "domain-ip", "required": [ "ip", "domain" ], "uuid": "43b3b146-77eb-4931-b4cc-b66c60f28734", "version": 8 }

root@kitploit:~
MISPオブジェクトは、以下の要素を含む単純なJSONファイルで記述されます。

* **name** は、オブジェクトの名前です。
* **meta-category** は、オブジェクトが分類されるカテゴリです。(file、network、financial、misc、internal など)
* **description** は、オブジェクトの説明の要約です。
* **version** は、10進数値としてのバージョン番号です。
* **required** は、オブジェクトを記述するために必要な最小限の属性を含む配列です。
* **requiredOneOf** は、オブジェクトを記述するために少なくとも1つが存在する必要がある属性を含む配列です。
* **attributes** は、オブジェクトを構成するすべての属性を列挙する別のJSONオブジェクトを含みます。

各属性は、MISP内の既存の属性定義を参照するために、参照 **misp-attribute** を含まなければなりません (MISPの属性タイプは大文字と小文字を区別します)。
配列 **categories** は、その属性がどのカテゴリに属するかを記述するために使用されます。**ui-priority**
は、属性の使用頻度を記述します。これにより、最も頻繁に使用される属性だけを表示し、
上級ユーザーが自分の設定に応じてすべての属性を表示できるようになります。任意の **multiple** フィールド
は、同じキーの複数の要素をオブジェクト内で使用できる場合に true に設定します。任意の **values_list**
は、この値のリストを属性の値として選択できます。任意の **sane_default** は、この値のリストが属性の適切なデフォルト値を推奨します。
任意の **disable_correlation** ブールフィールドは、特定の属性の相関を無効にすることを推奨します。
任意の **to_ids** ブールフィールドは、属性のIDSフラグを無効にします。- [objects/ADS](https://github.com/MISP/misp-objects/blob/main/objects/ADS/definition.json) - PALANTIRによるADS(Alerting and Detection Strategy)を定義するオブジェクト。検知エンジニアリングに使用できます。
- [objects/abuseipdb](https://github.com/MISP/misp-objects/blob/main/objects/abuseipdb/definition.json) - AbuseIPDBは、IPアドレス、ドメイン名、またはサブネットを中央ブラックリストと照合します。
- [objects/administrative-decision](https://github.com/MISP/misp-objects/blob/main/objects/administrative-decision/definition.json) - 行政決定。
- [objects/ai-chat-prompt](https://github.com/MISP/misp-objects/blob/main/objects/ai-chat-prompt/definition.json) - ChatGPTなどのAIプロンプトを説明するオブジェクト。
- [objects/ail-leak](https://github.com/MISP/misp-objects/blob/main/objects/ail-leak/definition.json) - AIL Analysis Information Leakフレームワークによって定義される情報漏えい。
- [objects/ais](https://github.com/MISP/misp-objects/blob/main/objects/ais/definition.json) - 自動識別装置(AIS)は、船舶に搭載されたトランシーバーを使用する自動追跡システムです。
- [objects/ais-info](https://github.com/MISP/misp-objects/blob/main/objects/ais-info/definition.json) - 自動インジケーター共有(AIS)の情報ソースマーキング。
- [objects/android-app](https://github.com/MISP/misp-objects/blob/main/objects/android-app/definition.json) - Androidアプリに関連するインジケーター。
- [objects/android-permission](https://github.com/MISP/misp-objects/blob/main/objects/android-permission/definition.json) - Android権限のセット。他のオブジェクト(例:マルウェア、アプリ)にリンクできる1つ以上の権限。
- [objects/annotation](https://github.com/MISP/misp-objects/blob/main/objects/annotation/definition.json) - アナリストがMISPイベント、オブジェクト、または属性に注釈、コメント、エグゼクティブサマリーを追加できるようにする注釈オブジェクト。
- [objects/anonymisation](https://github.com/MISP/misp-objects/blob/main/objects/anonymisation/definition.json) - MISP属性値をエンコードするために使用される匿名化技術を説明する匿名化オブジェクト。参照:https://www.caida.org/tools/taxonomy/anonymization.xml
- [objects/apivoid-email-verification](https://github.com/MISP/misp-objects/blob/main/objects/apivoid-email-verification/definition.json) - Apivoidメール検証APIの結果。参照:https://www.apivoid.com/api/email-verify/
- [objects/apk](https://github.com/MISP/misp-objects/blob/main/objects/apk/definition.json) - メタ情報を含むファイルを説明するAPKオブジェクト。
- [objects/artifact](https://github.com/MISP/misp-objects/blob/main/objects/artifact/definition.json) - Artifactオブジェクトは、バイト配列(8ビット)をbase64エンコード文字列としてキャプチャするか、ファイルライクなペイロードにリンクすることを可能にします。STIX 2.1(6.1)より。
- [objects/asn](https://github.com/MISP/misp-objects/blob/main/objects/asn/definition.json) - 自律システムを説明するASNオブジェクト。エンティティ(例:ISP)を管理する1つ以上のネットワーク事業者と、そのルーティングポリシー、ルーティングプレフィックスなどを含めることができます。
- [objects/attack-pattern](https://github.com/MISP/misp-objects/blob/main/objects/attack-pattern/definition.json) - 一般的な攻撃パターンの列挙と分類を説明する攻撃パターン。
- [objects/attack-step](https://github.com/MISP/misp-objects/blob/main/objects/attack-step/definition.json) - 単一の攻撃ステップを定義するオブジェクト。レッド/パープルチーミングに特に有用ですが、実際の攻撃にも使用できます。
- [objects/attacker-infra](https://github.com/MISP/misp-objects/blob/main/objects/attacker-infra/definition.json) - 攻撃者のインフラストラクチャ。
- [objects/authentication-failure-report](https://github.com/MISP/misp-objects/blob/main/objects/authentication-failure-report/definition.json) - 認証失敗レポート。
- [objects/authenticode-signerinfo](https://github.com/MISP/misp-objects/blob/main/objects/authenticode-signerinfo/definition.json) - Authenticode署名者情報。
- [objects/av-signature](https://github.com/MISP/misp-objects/blob/main/objects/av-signature/definition.json) - アンチウイルス検知シグネチャ。
- [objects/availability-impact](https://github.com/MISP/misp-objects/blob/main/objects/availability-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されている可用性への影響オブジェクト。
- [objects/bank-account](https://github.com/MISP/misp-objects/blob/main/objects/bank-account/definition.json) - goAML 4.0の口座説明に基づいて銀行口座情報を説明するオブジェクト。
- [objects/bgp-hijack](https://github.com/MISP/misp-objects/blob/main/objects/bgp-hijack/definition.json) - 例えばbgpstream.comで規定されているBGPハイジャックの説明をカプセル化するオブジェクト。
- [objects/bgp-ranking](https://github.com/MISP/misp-objects/blob/main/objects/bgp-ranking/definition.json) - 特定の日のASNランキングを、その順位とともに説明するBGP Rankingオブジェクト。1はその日の最も悪意のあるASNで、最高ランキングを意味します。このオブジェクトは対応するASNオブジェクトとの関係を持つことを意図しており、特定の日付のランキングを表します。
- [objects/blog](https://github.com/MISP/misp-objects/blob/main/objects/blog/definition.json) - MediumやWordPressのようなブログ投稿。
- [objects/boleto](https://github.com/MISP/misp-objects/blob/main/objects/boleto/definition.json) - ブラジルで使用される一般的な支払い方法。
- [objects/browser-extension](https://github.com/MISP/misp-objects/blob/main/objects/browser-extension/definition.json) - ブラウザ拡張機能のサプライチェーン脅威インテリジェンス。権限昇格の差分、C2インフラストラクチャ、分析判定を含む、侵害されたまたは悪意のある拡張機能のリリースイベントをキャプチャします。
- [objects/btc-transaction](https://github.com/MISP/misp-objects/blob/main/objects/btc-transaction/definition.json) - ビットコイン取引を説明するオブジェクト。bitcoin-walletと一緒に使用するのが最適です。
- [objects/btc-wallet](https://github.com/MISP/misp-objects/blob/main/objects/btc-wallet/definition.json) - ビットコインウォレットを説明するオブジェクト。btc-transactionオブジェクトと一緒に使用するのが最適です。
- [objects/c2-list](https://github.com/MISP/misp-objects/blob/main/objects/c2-list/definition.json) - 共通点を持つC2サーバーのリスト。例:ブログ投稿やランサムウェア分析から抽出されたもの。
- [objects/cap-alert](https://github.com/MISP/misp-objects/blob/main/objects/cap-alert/definition.json) - Common Alerting Protocol Version(CAP)アラートオブジェクト。
- [objects/cap-info](https://github.com/MISP/misp-objects/blob/main/objects/cap-info/definition.json) - Common Alerting Protocol Version(CAP)情報オブジェクト。
- [objects/cap-resource](https://github.com/MISP/misp-objects/blob/main/objects/cap-resource/definition.json) - Common Alerting Protocol Version(CAP)リソースオブジェクト。
- [objects/cert-pl-phishing](https://github.com/MISP/misp-objects/blob/main/objects/cert-pl-phishing/definition.json) - URLと、phash、html-structure、partial-hashなどのメタデータを表すcert.plフィッシングオブジェクトテンプレート。
- [objects/chat-message](https://github.com/MISP/misp-objects/blob/main/objects/chat-message/definition.json) - チャットまたはメッセージングプラットフォーム上で交換されるメッセージ。
- [objects/cloth](https://github.com/MISP/misp-objects/blob/main/objects/cloth/definition.json) - 自然人(個人)が着用する衣服を説明します。
- [objects/coin-address](https://github.com/MISP/misp-objects/blob/main/objects/coin-address/definition.json) - 暗号通貨で使用されるアドレス。
- [objects/command](https://github.com/MISP/misp-objects/blob/main/objects/command/definition.json) - プログラムによって実行される特定のコマンドに関連するコマンド機能。悪意があるかどうかは問いません。関連するコマンドのコマンドラインはこのオブジェクトに添付されます。
- [objects/command-line](https://github.com/MISP/misp-objects/blob/main/objects/command-line/definition.json) - プログラムによって実行される特定のコマンドに関連するコマンドラインとオプション。悪意があるかどうかは問いません。
- [objects/concordia-mtmf-intrusion-set](https://github.com/MISP/misp-objects/blob/main/objects/concordia-mtmf-intrusion-set/definition.json) - 侵入セット - フェーズ説明。
- [objects/confidentiality-impact](https://github.com/MISP/misp-objects/blob/main/objects/confidentiality-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されている機密性への影響オブジェクト。
- [objects/contact-list](https://github.com/MISP/misp-objects/blob/main/objects/contact-list/definition.json) - フォレンジック調査中にデバイス、SIMカード、またはクラウドバックアップから抽出されたエントリまたは集約エクスポート用の連絡先リストオブジェクトテンプレート(Cellebriteおよび類似ツールを含む)。
- [objects/container-image](https://github.com/MISP/misp-objects/blob/main/objects/container-image/definition.json) - プラットフォーム横断でコンテナイメージを表す汎用コンテナイメージオブジェクトテンプレート。
- [objects/container-instance](https://github.com/MISP/misp-objects/blob/main/objects/container-instance/definition.json) - ランタイムコンテナの詳細を表す汎用コンテナインスタンスオブジェクトテンプレート。
- [objects/container-network](https://github.com/MISP/misp-objects/blob/main/objects/container-network/definition.json) - コンテナネットワーキング設定を表す汎用コンテナネットワークオブジェクトテンプレート。
- [objects/cookie](https://github.com/MISP/misp-objects/blob/main/objects/cookie/definition.json) - HTTPクッキー(ウェブクッキー、ブラウザクッキー)は、サーバーがユーザーのウェブブラウザに送信する小さなデータです。ブラウザはそれを保存し、同じサーバーへの次のリクエストで送り返すことができます。通常、2つのリクエストが同じブラウザからのものかを判断するために使用されます(例えば、ユーザーのログイン状態を維持するため)。ステートレスなHTTPプロトコルに対してステートフルな情報を記憶します。Mozilla財団による定義。
- [objects/cortex](https://github.com/MISP/misp-objects/blob/main/objects/cortex/definition.json) - 完全なCortex分析を説明するCortexオブジェクト。Observableはこのオブジェクトからのリレーションシップを持つ属性になります。
- [objects/cortex-taxonomy](https://github.com/MISP/misp-objects/blob/main/objects/cortex-taxonomy/definition.json) - Cortexタクソノミー(またはミニレポート)を説明するCortexオブジェクト。
- [objects/course-of-action](https://github.com/MISP/misp-objects/blob/main/objects/course-of-action/definition.json) - 攻撃を防止または対応するために取られる特定の対策を説明するオブジェクト。
- [objects/covid19-csse-daily-report](https://github.com/MISP/misp-objects/blob/main/objects/covid19-csse-daily-report/definition.json) - CSSE COVID-19日次レポート。
- [objects/covid19-dxy-live-city](https://github.com/MISP/misp-objects/blob/main/objects/covid19-dxy-live-city/definition.json) - dxy.cnのCOVID-19 - 都市別集計。
- [objects/covid19-dxy-live-province](https://github.com/MISP/misp-objects/blob/main/objects/covid19-dxy-live-province/definition.json) - dxy.cnのCOVID-19 - 州/省別集計。
- [objects/cowrie](https://github.com/MISP/misp-objects/blob/main/objects/cowrie/definition.json) - Cowrieハニーポットオブジェクトテンプレート。
- [objects/cpe-asset](https://github.com/MISP/misp-objects/blob/main/objects/cpe-asset/definition.json) - CPEで定義できる資産。これは汎用資産であり得ます。CPEは、情報技術システム、ソフトウェア、およびパッケージのための構造化ネーミングスキームです。
- [objects/credential](https://github.com/MISP/misp-objects/blob/main/objects/credential/definition.json) - 資格情報は、パスワード、APIキー、または復号キーを含む1つ以上の資格情報を説明します。
- [objects/credit-card](https://github.com/MISP/misp-objects/blob/main/objects/credit-card/definition.json) - クレジットカード、デビットカード、または金融取引に使用できる類似のカードなどの決済カード。
- [objects/crowdsec-ip-context](https://github.com/MISP/misp-objects/blob/main/objects/crowdsec-ip-context/definition.json) - CrowdSec脅威インテリジェンス - IP CTI検索。
- [objects/crowdstrike-report](https://github.com/MISP/misp-objects/blob/main/objects/crowdstrike-report/definition.json) - Crowdstrike検知レポートをエンコードするためのオブジェクトテンプレート。
- [objects/crypto-material](https://github.com/MISP/misp-objects/blob/main/objects/crypto-material/definition.json) - 公開鍵や秘密鍵などの暗号化マテリアル。
- [objects/cryptocurrency-transaction](https://github.com/MISP/misp-objects/blob/main/objects/cryptocurrency-transaction/definition.json) - 暗号通貨取引を説明するオブジェクト。
- [objects/cs-beacon-config](https://github.com/MISP/misp-objects/blob/main/objects/cs-beacon-config/definition.json) - Cobalt Strike Beacon設定。
- [objects/ctf-challenge](https://github.com/MISP/misp-objects/blob/main/objects/ctf-challenge/definition.json) - Rectifyqによって定義されたCapture-the-flag(CTF)チャレンジオブジェクト。
- [objects/cti-transmute-conversion](https://github.com/MISP/misp-objects/blob/main/objects/cti-transmute-conversion/definition.json) - MISPからSTIX、またはSTIXからMISPへの変換メタデータ、入力、出力、ステータス、および詳細リンクを説明するCTI Transmute変換レコード。
- [objects/cytomic-orion-file](https://github.com/MISP/misp-objects/blob/main/objects/cytomic-orion-file/definition.json) - Cytomic Orionファイル検知。
- [objects/cytomic-orion-machine](https://github.com/MISP/misp-objects/blob/main/objects/cytomic-orion-machine/definition.json) - Cytomic Orionマシン上のファイル検知。
- [objects/dark-pattern-item](https://github.com/MISP/misp-objects/blob/main/objects/dark-pattern-item/definition.json) - ユーザーインターフェースがダークパターンを実装しているアイテム。
- [objects/data-url](https://github.com/MISP/misp-objects/blob/main/objects/data-url/definition.json) - data:スキームが前に付いたURL。ドキュメントにインラインファイルを埋め込むために使用されます。
- [objects/ddos](https://github.com/MISP/misp-objects/blob/main/objects/ddos/definition.json) - DDoSオブジェクトは、特定の発生元から特定のターゲットへの、またはその両方の現在のDDoS活動を説明します。DDoSのタイプは、タクソノミーとして、またはtypeフィールドを使用してオブジェクトに添付できます。
- [objects/ddos-claim](https://github.com/MISP/misp-objects/blob/main/objects/ddos-claim/definition.json) - DDoS-claimオブジェクトは、DDoS活動の現在の主張を説明します。
- [objects/ddos-config](https://github.com/MISP/misp-objects/blob/main/objects/ddos-config/definition.json) - DDoS-claimオブジェクトは、DDoS活動の現在の主張を説明します。
- [objects/decoded-barcode](https://github.com/MISP/misp-objects/blob/main/objects/decoded-barcode/definition.json) - デコードされた値、バーコードタイプ、元の画像、およびコンテキスト説明を含む、デコードされたバーコードを説明するオブジェクト。
- [objects/decoded-qrcode](https://github.com/MISP/misp-objects/blob/main/objects/decoded-qrcode/definition.json) - デコードされた値、元の画像、およびコンテキスト説明を含む、デコードされたQRコードを説明するオブジェクト。
- [objects/detection](https://github.com/MISP/misp-objects/blob/main/objects/detection/definition.json) - 検知アナリティクス、そのロジック、堅牢性、検証、および関連する対応プレイブックを文書化するための包括的なオブジェクト。堅牢性スコアリングのための「Summiting the Pyramid」、検証のための「Funnel of Fidelity」、および構造化されたSOAR自動化ステップなどの概念を統合した高度な検知エンジニアリングテンプレートに基づいています。
- [objects/device](https://github.com/MISP/misp-objects/blob/main/objects/device/definition.json) - デバイスを定義するオブジェクト。
- [objects/dga-domain](https://github.com/MISP/misp-objects/blob/main/objects/dga-domain/definition.json) - 生成されたドメインと関連するアルゴリズムパラメータ(例:シード、エポック、TLD戦略、マルウェアファミリー)を含む、ドメイン生成アルゴリズム(DGA)の出力と生成コンテキスト。参照:https://www.usenix.org/system/files/conference/usenixsecurity16/sec16_paper_plohmann.pdf
- [objects/diameter-attack](https://github.com/MISP/misp-objects/blob/main/objects/diameter-attack/definition.json) - LTEネットワークをサポートするDiameterシグナリングプロトコルで見られる攻撃。
- [objects/diamond-event](https://github.com/MISP/misp-objects/blob/main/objects/diamond-event/definition.json) - 4つのダイヤモンド特徴(敵対者、インフラストラクチャ、能力、被害者)、いくつかのメタ特徴、およびIOC属性で構成されるダイヤモンドモデルイベントオブジェクト。
- [objects/directory](https://github.com/MISP/misp-objects/blob/main/objects/directory/definition.json) - メタ情報を含むディレクトリを説明するディレクトリオブジェクト。
- [objects/dkim](https://github.com/MISP/misp-objects/blob/main/objects/dkim/definition.json) - DomainKeys Identified Mail - DKIM。
- [objects/dns-record](https://github.com/MISP/misp-objects/blob/main/objects/dns-record/definition.json) - 特定のドメインで観測されたDNSレコードのセット。
- [objects/url](https://github.com/MISP/misp-objects/blob/main/objects/url/definition.json) - HTMLページの類似構造を説明するdom-hashオブジェクト。
- [objects/domain-crawled](https://github.com/MISP/misp-objects/blob/main/objects/domain-crawled/definition.json) - 時間をかけてクロールされたドメイン。
- [objects/domain-ip](https://github.com/MISP/misp-objects/blob/main/objects/domain-ip/definition.json) - 特定の時間枠でタプルとして観測されたドメイン/ホスト名とIPアドレス。
- [objects/edr-report](https://github.com/MISP/misp-objects/blob/main/objects/edr-report/definition.json) - EDR検知レポートをエンコードするためのオブジェクトテンプレート。
- [objects/elf](https://github.com/MISP/misp-objects/blob/main/objects/elf/definition.json) - Executable and Linkable Format(ELF)を説明するオブジェクト。
- [objects/elf-section](https://github.com/MISP/misp-objects/blob/main/objects/elf-section/definition.json) - Executable and Linkable Format(ELF)のセクションを説明するオブジェクト。
- [objects/email](https://github.com/MISP/misp-objects/blob/main/objects/email/definition.json) - メタ情報を含むメールを説明するメールオブジェクト。
- [objects/employee](https://github.com/MISP/misp-objects/blob/main/objects/employee/definition.json) - 従業員と関連するデータポイント。
- [objects/error-message](https://github.com/MISP/misp-objects/blob/main/objects/error-message/definition.json) - 元のMISPインスタンスからのインポート、エクスポートスクリプトなどのデータ処理に関連するエラーメッセージ。
- [objects/event](https://github.com/MISP/misp-objects/blob/main/objects/event/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されているイベントオブジェクト。
- [objects/exploit](https://github.com/MISP/misp-objects/blob/main/objects/exploit/definition.json) - Exploitオブジェクトは、1つ以上の脆弱性を悪用するために使用されるバイナリまたはソースコード形式のプログラムを説明します。
- [objects/exploit-poc](https://github.com/MISP/misp-objects/blob/main/objects/exploit-poc/definition.json) - 脆弱性の概念実証またはエクスプロイトを説明するExploit-pocオブジェクト。このオブジェクトは多くの場合、脆弱性オブジェクトとのリレーションシップを持ちます。
- [objects/external-impact](https://github.com/MISP/misp-objects/blob/main/objects/external-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されている外部影響オブジェクト。
- [objects/facebook-account](https://github.com/MISP/misp-objects/blob/main/objects/facebook-account/definition.json) - Facebookアカウント。
- [objects/facebook-group](https://github.com/MISP/misp-objects/blob/main/objects/facebook-group/definition.json) - 公開または非公開のFacebookグループ。
- [objects/facebook-page](https://github.com/MISP/misp-objects/blob/main/objects/facebook-page/definition.json) - Facebookページ。
- [objects/facebook-post](https://github.com/MISP/misp-objects/blob/main/objects/facebook-post/definition.json) - Facebookウォールへの投稿。
- [objects/facebook-reaction](https://github.com/MISP/misp-objects/blob/main/objects/facebook-reaction/definition.json) - Facebook投稿へのリアクション。
- [objects/facial-composite](https://github.com/MISP/misp-objects/blob/main/objects/facial-composite/definition.json) - 顔写真合成(似顔絵)を説明するオブジェクト。
- [objects/fail2ban](https://github.com/MISP/misp-objects/blob/main/objects/fail2ban/definition.json) - Fail2banイベント。
- [objects/favicon](https://github.com/MISP/misp-objects/blob/main/objects/favicon/definition.json) - ファビコンは、ショートカットアイコン、ウェブサイトアイコン、タブアイコン、URLアイコン、またはブックマークアイコンとも呼ばれ、特定のウェブサイトまたはウェブページに関連付けられた1つ以上の小さなアイコンを含むファイルです。オブジェクトテンプレートには、関連付けを容易にするためのファビコンのmurmur3ハッシュを含めることができます。
- [objects/file](https://github.com/MISP/misp-objects/blob/main/objects/file/definition.json) - メタ情報を含むファイルを説明するファイルオブジェクト。
- [objects/flowintel-case](https://github.com/MISP/misp-objects/blob/main/objects/flowintel-case/definition.json) - flowintelによって定義されたケース。
- [objects/flowintel-task](https://github.com/MISP/misp-objects/blob/main/objects/flowintel-task/definition.json) - flowintelによって定義されたタスク。
- [objects/flowintel-task-note](https://github.com/MISP/misp-objects/blob/main/objects/flowintel-task-note/definition.json) - flowintelによって定義されたタスクのメモ。
- [objects/flowintel-task-resource](https://github.com/MISP/misp-objects/blob/main/objects/flowintel-task-resource/definition.json) - flowintelによって定義されたタスクのメモ。
- [objects/forensic-case](https://github.com/MISP/misp-objects/blob/main/objects/forensic-case/definition.json) - デジタルフォレンジックケースを説明するためのオブジェクトテンプレート。
- [objects/forensic-evidence](https://github.com/MISP/misp-objects/blob/main/objects/forensic-evidence/definition.json) - デジタルフォレンジック証拠を説明するためのオブジェクトテンプレート。
- [objects/forged-document](https://github.com/MISP/misp-objects/blob/main/objects/forged-document/definition.json) - 偽造文書を説明するオブジェクト。
- [objects/ftm-Airplane](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Airplane/definition.json) - 飛行機、ヘリコプター、またはその他の飛行体。
- [objects/ftm-Assessment](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Assessment/definition.json) - メタデータ付きの評価。
- [objects/ftm-Asset](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Asset/definition.json) - 所有でき、金銭的価値を割り当てることができる財産。
- [objects/ftm-Associate](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Associate/definition.json) - 2人の間の家族以外の関係。
- [objects/ftm-Audio](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Audio/definition.json) - メタデータ付きの音声。
- [objects/ftm-BankAccount](https://github.com/MISP/misp-objects/blob/main/objects/ftm-BankAccount/definition.json) - 銀行に保有され、所有者によって管理される口座。コルレス銀行の決済口座のようなより複雑な取り決めを説明するためにも使用できます。
- [objects/ftm-Call](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Call/definition.json) - 通話と関連するすべてのメタデータを含む電話通話オブジェクトテンプレート。
- [objects/ftm-Company](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Company/definition.json) - 特定の目的を持つ、自然人、法人、またはその両方の混合である人々の団体を表す法人。
- [objects/ftm-Contract](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Contract/definition.json) - 当局によって発行された契約または契約ロット。複数のロットが異なるサプライヤーに落札される場合があります(ContractAwardを参照)。
.
- [objects/ftm-ContractAward](https://github.com/MISP/misp-objects/blob/main/objects/ftm-ContractAward/definition.json) - サプライヤーに落札された契約または契約ロット。
- [objects/ftm-CourtCase](https://github.com/MISP/misp-objects/blob/main/objects/ftm-CourtCase/definition.json) - 裁判事件。
- [objects/ftm-CourtCaseParty](https://github.com/MISP/misp-objects/blob/main/objects/ftm-CourtCaseParty/definition.json) - 裁判事件の当事者。
- [objects/ftm-Debt](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Debt/definition.json) - 2者間の金銭的債務。
- [objects/ftm-Directorship](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Directorship/definition.json) - 役員就任。
- [objects/ftm-Document](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Document/definition.json) - 文書。
- [objects/ftm-Documentation](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Documentation/definition.json) - ドキュメント。
- [objects/ftm-EconomicActivity](https://github.com/MISP/misp-objects/blob/main/objects/ftm-EconomicActivity/definition.json) - 外国での経済活動。
- [objects/ftm-Email](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Email/definition.json) - 電子メール。
- [objects/ftm-Event](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Event/definition.json) - イベント。
- [objects/ftm-Family](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Family/definition.json) - 2人の間の家族関係。
- [objects/ftm-Folder](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Folder/definition.json) - フォルダー。
- [objects/ftm-HyperText](https://github.com/MISP/misp-objects/blob/main/objects/ftm-HyperText/definition.json) - ハイパーテキスト。
- [objects/ftm-Image](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Image/definition.json) - 画像。
- [objects/ftm-Land](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Land/definition.json) - 土地。
- [objects/ftm-LegalEntity](https://github.com/MISP/misp-objects/blob/main/objects/ftm-LegalEntity/definition.json) - 法人は、個人または会社の場合があります。
- [objects/ftm-License](https://github.com/MISP/misp-objects/blob/main/objects/ftm-License/definition.json) - 土地、権利、または財産の付与。契約の一種。
- [objects/ftm-Membership](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Membership/definition.json) - メンバーシップ。
- [objects/ftm-Message](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Message/definition.json) - メッセージ。
- [objects/ftm-Organization](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Organization/definition.json) - 組織。
- [objects/ftm-Ownership](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Ownership/definition.json) - 所有権。
- [objects/ftm-Package](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Package/definition.json) - パッケージ。
- [objects/ftm-Page](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Page/definition.json) - ページ。
- [objects/ftm-Pages](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Pages/definition.json) - ページ群。
- [objects/ftm-Passport](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Passport/definition.json) - パスポート。
- [objects/ftm-Payment](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Payment/definition.json) - 2者間の金銭的支払い。
- [objects/ftm-Person](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Person/definition.json) - 個人。
- [objects/ftm-PlainText](https://github.com/MISP/misp-objects/blob/main/objects/ftm-PlainText/definition.json) - プレーンテキスト。
- [objects/ftm-PublicBody](https://github.com/MISP/misp-objects/blob/main/objects/ftm-PublicBody/definition.json) - 省庁、部門、または国営企業などの公的機関。
- [objects/ftm-RealEstate](https://github.com/MISP/misp-objects/blob/main/objects/ftm-RealEstate/definition.json) - 土地または財産。
- [objects/ftm-Representation](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Representation/definition.json) - 法人に代わって行動する調停者、仲介者、またはブローカー。
- [objects/ftm-Row](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Row/definition.json) - 行。
- [objects/ftm-Sanction](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Sanction/definition.json) - 制裁指定。
- [objects/ftm-Succession](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Succession/definition.json) - 法的に互いを継承する2つのエンティティ。
- [objects/ftm-Table](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Table/definition.json) - テーブル。
- [objects/ftm-TaxRoll](https://github.com/MISP/misp-objects/blob/main/objects/ftm-TaxRoll/definition.json) - 個人の税申告。
- [objects/ftm-UnknownLink](https://github.com/MISP/misp-objects/blob/main/objects/ftm-UnknownLink/definition.json) - 不明なリンク。
- [objects/ftm-UserAccount](https://github.com/MISP/misp-objects/blob/main/objects/ftm-UserAccount/definition.json) - ユーザーアカウント。
- [objects/ftm-Vehicle](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Vehicle/definition.json) - 車両。
- [objects/ftm-Vessel](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Vessel/definition.json) - ボートまたは船舶。
- [objects/ftm-Video](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Video/definition.json) - ビデオ。
- [objects/ftm-Workbook](https://github.com/MISP/misp-objects/blob/main/objects/ftm-Workbook/definition.json) - ワークブック。
- [objects/game-cheat](https://github.com/MISP/misp-objects/blob/main/objects/game-cheat/definition.json) - ゲームチートまたはチートウェアを説明します。
- [objects/Generalizing Persuasion Framework](https://github.com/MISP/misp-objects/blob/main/objects/Generalizing Persuasion Framework/definition.json) - GPフレームワーク内に研究を位置づけることで、学者はこの分野の矛盾の解消、未解決の疑問の特定と対処、そして集団的な進歩の確保に貢献できます。GPフレームワークは他の理論(ELMなど)と競合することを意図したものではなく、2つのギャップを埋めるためのものです。第一に、個々の説得研究が互いにどのように関連しているか、また研究がなぜ矛盾する結論に達する可能性があるかを検討できるようにします。第二に、研究されるべき変動の源泉を浮き彫りにします。(James N. Druckman)
- [objects/geojson](https://github.com/MISP/misp-objects/blob/main/objects/geojson/definition.json) - RFC 7946で定義されているポイント、ライン、ポリゴンなどの地理データ構造を含むGeoJSONファイルを説明するオブジェクト。
- [objects/geolocation](https://github.com/MISP/misp-objects/blob/main/objects/geolocation/definition.json) - 地理的な場所を説明するオブジェクト。
- [objects/ghidra-function](https://github.com/MISP/misp-objects/blob/main/objects/ghidra-function/definition.json) - Ghidra関数。
- [objects/git-vuln-finder](https://github.com/MISP/misp-objects/blob/main/objects/git-vuln-finder/definition.json) - git-vuln-finderからのエクスポート。
- [objects/github-action](https://github.com/MISP/misp-objects/blob/main/objects/github-action/definition.json) - GitHub Actions。
- [objects/github-repo](https://github.com/MISP/misp-objects/blob/main/objects/github-repo/definition.json) - GitHubリポジトリ。
- [objects/github-user](https://github.com/MISP/misp-objects/blob/main/objects/github-user/definition.json) - GitHubユーザー。
- [objects/gitlab-user](https://github.com/MISP/misp-objects/blob/main/objects/gitlab-user/definition.json) - GitLabユーザー。Gitlab.comユーザーまたは自己ホスト型GitLabインスタンス。
- [objects/google-account](https://github.com/MISP/misp-objects/blob/main/objects/google-account/definition.json) - Googleから受け取った加入者情報を含むオブジェクト。
- [objects/google-safe-browsing](https://github.com/MISP/misp-objects/blob/main/objects/google-safe-browsing/definition.json) - Google Safeは、Googleが常に更新している安全でないWebリソースのリストに対してURLをチェックします。
- [objects/google-threat-intelligence-report](https://github.com/MISP/misp-objects/blob/main/objects/google-threat-intelligence-report/definition.json) - 評価(判定、深刻度、スコアリング)と、VirusTotalおよびMandiantからの統合情報を提供するGoogle Threat Intelligenceレポート。
- [objects/gpx](https://github.com/MISP/misp-objects/blob/main/objects/gpx/definition.json) - ファイルメタデータ、GPXメタデータ、空間バウンド、およびウェイポイント、ルート、トラックの数を含むGPX(GPS Exchange Format)ファイルを説明するオブジェクト。
- [objects/greynoise-ip](https://github.com/MISP/misp-objects/blob/main/objects/greynoise-ip/definition.json) - GreyNoise IP情報。
- [objects/gtp-attack](https://github.com/MISP/misp-objects/blob/main/objects/gtp-attack/definition.json) - GPRS/LTEネットワークをサポートするGTPシグナリングプロトコルで見られる攻撃としてのGTP攻撃オブジェクト。
- [objects/hashlookup](https://github.com/MISP/misp-objects/blob/main/objects/hashlookup/definition.json) - circl.luのhashlookupサービスで説明されているhashlookupオブジェクト - https://www.circl.lu/services/hashlookup
- [objects/hhhash](https://github.com/MISP/misp-objects/blob/main/objects/hhhash/definition.json) - ハッシュ値とクローリングパラメータを含むHHHashオブジェクトを説明するオブジェクト。詳細情報:https://www.foo.be/2023/07/HTTP-Headers-Hashing_HHHash
- [objects/http-request](https://github.com/MISP/misp-objects/blob/main/objects/http-request/definition.json) - 単一のHTTPリクエストヘッダー。
- [objects/identity](https://github.com/MISP/misp-objects/blob/main/objects/identity/definition.json) - Identityは、実際の個人、組織、またはグループ(例:ACME, Inc.)だけでなく、個人、組織、システム、またはグループのクラス(例:金融セクター)も表すことができます。Identity SDOは、基本的な識別情報、連絡先情報、およびIdentityが属するセクターをキャプチャできます。IdentityはSTIXにおいて、攻撃対象、情報ソース、オブジェクト作成者、および脅威アクターのアイデンティティなどを表すために使用されます。(参照:STIX 2.1 - 4.5)
- [objects/ilr-impact](https://github.com/MISP/misp-objects/blob/main/objects/ilr-impact/definition.json) - Institut Luxembourgeois de Regulation - 影響。
- [objects/ilr-notification-incident](https://github.com/MISP/misp-objects/blob/main/objects/ilr-notification-incident/definition.json) - Institut Luxembourgeois de Regulation - インシデント通知。
- [objects/image](https://github.com/MISP/misp-objects/blob/main/objects/image/definition.json) - 画像ファイルを説明するオブジェクト。
- [objects/impersonation](https://github.com/MISP/misp-objects/blob/main/objects/impersonation/definition.json) - なりすましアカウントを表します。
- [objects/imsi-catcher](https://github.com/MISP/misp-objects/blob/main/objects/imsi-catcher/definition.json) - オープンソースのIMSIキャッチャーに基づくIMSIキャッチャーエントリオブジェクト。
- [objects/incident](https://github.com/MISP/misp-objects/blob/main/objects/incident/definition.json) - STIX 2.1 Incidentオブジェクトとそのコア拡張で説明されているインシデントオブジェクトテンプレート。
- [objects/infrastructure](https://github.com/MISP/misp-objects/blob/main/objects/infrastructure/definition.json) - InfrastructureオブジェクトはTTPの一種を表し、何らかの目的を支援するためのシステム、ソフトウェアサービス、および関連する物理的または仮想的なリソース(例:攻撃の一部として使用されるC2サーバー、防御の一部であるデバイスやサーバー、攻撃の標的となるデータベースサーバーなど)を説明します。攻撃の要素は他のオブジェクトで表すことができますが、Infrastructureオブジェクトは、インフラストラクチャを構成する関連データの名前付きグループを表します。STIX 2.1 - 4.8
- [objects/instagram-account](https://github.com/MISP/misp-objects/blob/main/objects/instagram-account/definition.json) - Instagramアカウント。
- [objects/instant-message](https://github.com/MISP/misp-objects/blob/main/objects/instant-message/definition.json) - 1つ以上のIMメッセージを説明するインスタントメッセージ(IM)オブジェクトテンプレート。
- [objects/instant-message-group](https://github.com/MISP/misp-objects/blob/main/objects/instant-message-group/definition.json) - 公開または非公開のIMグループ、チャンネル、または会話を説明するインスタントメッセージ(IM)グループオブジェクトテンプレート。
- [objects/integrity-impact](https://github.com/MISP/misp-objects/blob/main/objects/integrity-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されている完全性への影響オブジェクト。
- [objects/intel471-vulnerability-intelligence](https://github.com/MISP/misp-objects/blob/main/objects/intel471-vulnerability-intelligence/definition.json) - Intel 471脆弱性インテリジェンスオブジェクト。
- [objects/intelmq_event](https://github.com/MISP/misp-objects/blob/main/objects/intelmq_event/definition.json) - IntelMQイベント。
- [objects/intelmq_report](https://github.com/MISP/misp-objects/blob/main/objects/intelmq_report/definition.json) - IntelMQレポート。
- [objects/internal-reference](https://github.com/MISP/misp-objects/blob/main/objects/internal-reference/definition.json) - 内部参照。
- [objects/interpol-notice](https://github.com/MISP/misp-objects/blob/main/objects/interpol-notice/definition.json) - インターポール通告を説明するオブジェクト。
- [objects/intrusion-set](https://github.com/MISP/misp-objects/blob/main/objects/intrusion-set/definition.json) - STIX 2.1で定義されている侵入セットを説明するオブジェクトテンプレート。侵入セットは、単一の組織によって調整されていると考えられる、共通の特性を持つ敵対的行動とリソースのグループ化されたセットです。侵入セットは、一般的に知られているか不明な脅威アクターを示す共有属性によってすべて結び付けられた、複数のキャンペーンやその他の活動をキャプチャできます。攻撃の背後にある脅威アクターが不明な場合でも、新しい活動は侵入セットに帰属させることができます。脅威アクターは、ある侵入セットの支援から別の侵入セットの支援に移行したり、複数の侵入セットを支援したりする可能性があります。キャンペーンが特定の目標を達成するために特定のターゲットセットに対して一定期間にわたって行われる一連の攻撃であるのに対し、侵入セットは攻撃パッケージ全体であり、潜在的に複数の目的を達成するために複数のキャンペーンで非常に長期間にわたって使用される可能性があります。侵入セットが非アクティブになったり、焦点を変えたりすることもありますが、完全に消滅したか終了したかを知ることは通常困難です。アナリストは、侵入セットを脅威アクターに帰属させる際にさまざまな精度レベルを持ち、国家、またはその国家内の組織にのみ帰属させることができる場合があります。
- [objects/iot-device](https://github.com/MISP/misp-objects/blob/main/objects/iot-device/definition.json) - IoTデバイス。
- [objects/iot-firmware](https://github.com/MISP/misp-objects/blob/main/objects/iot-firmware/definition.json) - IoTデバイス用のファームウェア。
- [objects/ip-api-address](https://github.com/MISP/misp-objects/blob/main/objects/ip-api-address/definition.json) - IPアドレス情報。ip-api.comからIP情報を取得する場合に便利です。
- [objects/ip-port](https://github.com/MISP/misp-objects/blob/main/objects/ip-port/definition.json) - 特定の時間枠でタプル(またはトリプル)として観測されたIPアドレス(またはドメイン、ホスト名)とポート。
- [objects/irc](https://github.com/MISP/misp-objects/blob/main/objects/irc/definition.json) - IRCサーバーと関連するチャンネルを説明するIRCオブジェクト。
- [objects/ja3](https://github.com/MISP/misp-objects/blob/main/objects/ja3/definition.json) - JA3は、生成が容易で、脅威インテリジェンスのために簡単に共有できるSSLクライアントフィンガープリントを作成する新しい技術です。フィンガープリントはClient Helloパケット(SSLバージョン、受け入れ可能な暗号、拡張リスト、楕円曲線、楕円曲線フォーマット)で構成されます。https://github.com/salesforce/ja3
- [objects/ja3s](https://github.com/MISP/misp-objects/blob/main/objects/ja3s/definition.json) - JA3Sは、SSL/TLS通信のサーバー側に対するJA3であり、サーバーが特定のクライアントにどのように応答するかをフィンガープリントします。JA3SフィンガープリントはServer Helloパケット(SSLバージョン、暗号、SSL拡張)で構成されます。https://github.com/salesforce/ja3
- [objects/ja4-plus](https://github.com/MISP/misp-objects/blob/main/objects/ja4-plus/definition.json) - JA4は、生成が容易で、脅威インテリジェンスのために簡単に共有できるネットワークフィンガープリントを作成する技術です。https://github.com/FoxIO-LLC/ja4/blob/main/technical_details/README.md
- [objects/jarm](https://github.com/MISP/misp-objects/blob/main/objects/jarm/definition.json) - 悪意のある用途または正当な用途で使用されるTLS/SSL実装を説明するJarmオブジェクト。
- [objects/keybase-account](https://github.com/MISP/misp-objects/blob/main/objects/keybase-account/definition.json) - API Users Objectからのkeybaseアカウントに関連する情報。
- [objects/language-content](https://github.com/MISP/misp-objects/blob/main/objects/language-content/definition.json) - Language Contentオブジェクトは、元のオブジェクトとは異なる言語で表現されたオブジェクトのテキストコンテンツを表します。言語コンテンツは、第三者による元のオブジェクトの翻訳、元の公開者による一次ソース翻訳、または作成時に提供された追加の公式言語コンテンツの場合があります。STIX 2.1参照7.1
- [objects/leaked-document](https://github.com/MISP/misp-objects/blob/main/objects/leaked-document/definition.json) - 漏えいした文書を説明するオブジェクト。
- [objects/legal-entity](https://github.com/MISP/misp-objects/blob/main/objects/legal-entity/definition.json) - 法人を説明するオブジェクト。
- [objects/lnk](https://github.com/MISP/misp-objects/blob/main/objects/lnk/definition.json) - Windows LNKバイナリファイル(別名Windowsショートカット)を説明するLNKオブジェクト。
- [objects/macho](https://github.com/MISP/misp-objects/blob/main/objects/macho/definition.json) - Mach-O形式のファイルを説明するオブジェクト。
- [objects/macho-section](https://github.com/MISP/misp-objects/blob/main/objects/macho-section/definition.json) - Mach-O形式のファイルのセクションを説明するオブジェクト。
- [objects/mactime-timeline-analysis](https://github.com/MISP/misp-objects/blob/main/objects/mactime-timeline-analysis/definition.json) - フォレンジック調査でファイルアクティビティのタイムラインを説明するために使用されるMactimeテンプレート。
- [objects/malware](https://github.com/MISP/misp-objects/blob/main/objects/malware/definition.json) - マルウェアは、悪意のあるコードを表すTTPの一種です。
- [objects/malware-analysis](https://github.com/MISP/misp-objects/blob/main/objects/malware-analysis/definition.json) - マルウェア分析は、マルウェアインスタンスまたはファミリーに対して実行された特定の静的または動的分析のメタデータと結果をキャプチャします。
- [objects/malware-config](https://github.com/MISP/misp-objects/blob/main/objects/malware-config/definition.json) - 悪意のあるバイナリから回収または抽出されたマルウェア設定。
- [objects/meme-image](https://github.com/MISP/misp-objects/blob/main/objects/meme-image/definition.json) - ミーム(画像)を説明するオブジェクト。
- [objects/mfa-auth](https://github.com/MISP/misp-objects/blob/main/objects/mfa-auth/definition.json) - 匿名化されたユーザー識別子、認証方法、ネットワークソース情報、デバイスコンテキスト、およびアナリストによる結果と推論を含む、多要素認証(MFA)イベントを説明するオブジェクト。
- [objects/microblog](https://github.com/MISP/misp-objects/blob/main/objects/microblog/definition.json) - TwitterのツイートやFacebookウォールへの投稿などのマイクロブログ投稿。
- [objects/monetary-impact](https://github.com/MISP/misp-objects/blob/main/objects/monetary-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されている金銭的影響オブジェクト。
- [objects/muonfp](https://github.com/MISP/misp-objects/blob/main/objects/muonfp/definition.json) - MuonFPは、p0fに触発された、TCP SYN/SYN-ACKパケット属性(TCPウィンドウサイズ、順序付けられたTCPオプションのKINDリスト、TCP MSS、TCPウィンドウスケール)から構築されたオープンソースのTCPフィンガープリンティング標準です。フィンガープリントは「TCPWindowSize:TCPOptions:TCPMSS:TCPWindowScale」として表現されます。https://github.com/sundruid/muonfp
- [objects/mutex](https://github.com/MISP/misp-objects/blob/main/objects/mutex/definition.json) - メモリまたはコンピュータプログラムで見られる相互排他ロック(mutex)を説明するオブジェクト。
- [objects/narrative](https://github.com/MISP/misp-objects/blob/main/objects/narrative/definition.json) - ナラティブ(物語)を説明するオブジェクト。
- [objects/netflow](https://github.com/MISP/misp-objects/blob/main/objects/netflow/definition.json) - Netflowオブジェクトは、Netflowv5/v9の最小定義に基づくネットワークオブジェクトを説明します。
- [objects/network-connection](https://github.com/MISP/misp-objects/blob/main/objects/network-connection/definition.json) - ローカルまたはリモートのネットワーク接続。
- [objects/network-data](https://github.com/MISP/misp-objects/blob/main/objects/network-data/definition.json) - ペイロード/ログ、関連するタイムスタンプ、データ量、およびTCP/IP 5タプル接続情報のエンリッチメントを含むネットワークデータ。
- [objects/network-profile](https://github.com/MISP/misp-objects/blob/main/objects/network-profile/definition.json) - ドメイン、IP、URLを含む、ネットワークインフラストラクチャのプロファイリング、ピボット、または識別に使用できる要素。
- [objects/network-socket](https://github.com/MISP/misp-objects/blob/main/objects/network-socket/definition.json) - ネットワークソケットオブジェクトは、ソケットデータ構造に基づくローカルまたはリモートのネットワーク接続を説明します。
- [objects/network-traffic](https://github.com/MISP/misp-objects/blob/main/objects/network-traffic/definition.json) - 送信元から発信され、宛先に宛てられた汎用ネットワークトラフィック。
- [objects/news-agency](https://github.com/MISP/misp-objects/blob/main/objects/news-agency/definition.json) - 通信社はニュースを編集し、ニュースを一括で配信します。
- [objects/news-media](https://github.com/MISP/misp-objects/blob/main/objects/news-media/definition.json) - ニュースメディアは、一般大衆にニュースを届けるマスメディアの形態です。
- [objects/nova-rule](https://github.com/MISP/misp-objects/blob/main/objects/nova-rule/definition.json) - 単一のNOVAルールのためのNOVAプロンプト検知ルールのメタデータとロジック。
- [objects/nse](https://github.com/MISP/misp-objects/blob/main/objects/nse/definition.json) - 標準のNSEスクリプト形式フィールドを使用してNmap NSEスクリプトを説明するオブジェクト。
- [objects/ocrized-image](https://github.com/MISP/misp-objects/blob/main/objects/ocrized-image/definition.json) - 元の画像、抽出されたテキスト、およびコンテキスト説明を含む、OCR処理された画像を説明するオブジェクト。
- [objects/open-data-security](https://github.com/MISP/misp-objects/blob/main/objects/open-data-security/definition.json) - オープンデータセキュリティモデルの下で利用可能で説明されるオープンデータセットを説明するオブジェクト。参照:https://github.com/CIRCL/open-data-security
- [objects/opentide](https://github.com/MISP/misp-objects/blob/main/objects/opentide/definition.json) - OpenTIDEフレームワーク(https://code.europa.eu/ec-digit-s2/opentide)に従って、脅威または検知データのコンテナであるオブジェクト。
- [objects/organization](https://github.com/MISP/misp-objects/blob/main/objects/organization/definition.json) - 組織を説明するオブジェクト。
- [objects/original-imported-file](https://github.com/MISP/misp-objects/blob/main/objects/original-imported-file/definition.json) - MISPにデータをインポートするために使用された元のファイルを説明するオブジェクト。
- [objects/owasp-crs-rule](https://github.com/MISP/misp-objects/blob/main/objects/owasp-crs-rule/definition.json) - WAF検知ルールのためのOWASP Core Rule Set(CRS)ルールメタデータ。
- [objects/paloalto-threat-event](https://github.com/MISP/misp-objects/blob/main/objects/paloalto-threat-event/definition.json) - Palo Alto脅威ログイベント。
- [objects/parler-account](https://github.com/MISP/misp-objects/blob/main/objects/parler-account/definition.json) - Parlerアカウント。
- [objects/parler-comment](https://github.com/MISP/misp-objects/blob/main/objects/parler-comment/definition.json) - Parlerコメント。
- [objects/parler-post](https://github.com/MISP/misp-objects/blob/main/objects/parler-post/definition.json) - Parler投稿(parley)。
- [objects/packet-filter-rule](https://github.com/MISP/misp-objects/blob/main/objects/packet-filter-rule/definition.json) - ネットワークセキュリティプラットフォーム間でのパケットフィルタ、ファイアウォール、またはACLルールのメタデータ。
- [objects/passive-dns](https://github.com/MISP/misp-objects/blob/main/objects/passive-dns/definition.json) - draft-dulaunoy-dnsop-passive-dns-cof-07で表現されているパッシブDNSレコード。https://tools.ietf.org/id/draft-dulaunoy-dnsop-passive-dns-cof-07.htmlを参照。
- [objects/passive-dns-dnsdbflex](https://github.com/MISP/misp-objects/blob/main/objects/passive-dns-dnsdbflex/definition.json) - DNSDBFLEXオブジェクト。このオブジェクトはFarsight Securityで使用されています。draft-dulaunoy-dnsop-passive-dns-cof-07で表現されているパッシブDNSレコードに大まかに基づいています。https://tools.ietf.org/id/draft-dulaunoy-dnsop-passive-dns-cof-07.htmlを参照。
- [objects/passive-ssh](https://github.com/MISP/misp-objects/blob/main/objects/passive-ssh/definition.json) - circl.luのpassive-sshサービスで説明されているpassive-sshオブジェクト - https://github.com/D4-project/passive-ssh
- [objects/paste](https://github.com/MISP/misp-objects/blob/main/objects/paste/definition.json) - 投稿を非公開または公開で共有できるウェブサイトからのペーストまたは類似の投稿。
- [objects/pcap-metadata](https://github.com/MISP/misp-objects/blob/main/objects/pcap-metadata/definition.json) - ネットワークパケットキャプチャのメタデータ。
- [objects/pe](https://github.com/MISP/misp-objects/blob/main/objects/pe/definition.json) - Portable Executable(PE)を説明するオブジェクト。
- [objects/pe-optional-header](https://github.com/MISP/misp-objects/blob/main/objects/pe-optional-header/definition.json) - Portable Executable(PE)のオプショナルヘッダーを説明するオブジェクト。
- [objects/pe-section](https://github.com/MISP/misp-objects/blob/main/objects/pe-section/definition.json) - Portable Executable(PE)のセクションを説明するオブジェクト。
- [objects/Deception PersNOna](https://github.com/MISP/misp-objects/blob/main/objects/Deception PersNOna/definition.json) - タスクを持つ偽のペルソナ。
- [objects/person](https://github.com/MISP/misp-objects/blob/main/objects/person/definition.json) - 人物またはアイデンティティを説明するオブジェクト。
- [objects/personification](https://github.com/MISP/misp-objects/blob/main/objects/personification/definition.json) - 人物またはアイデンティティを説明するオブジェクト。
- [objects/pgp-meta](https://github.com/MISP/misp-objects/blob/main/objects/pgp-meta/definition.json) - PGPキーブロック、メッセージ、または署名から抽出されたメタデータ。
- [objects/phishing](https://github.com/MISP/misp-objects/blob/main/objects/phishing/definition.json) - フィッシングウェブサイトとその分析を説明するフィッシングテンプレート。
- [objects/phishing-kit](https://github.com/MISP/misp-objects/blob/main/objects/phishing-kit/definition.json) - フィッシングキットを説明するオブジェクト。
- [objects/phone](https://github.com/MISP/misp-objects/blob/main/objects/phone/definition.json) - 電話を説明する電話または携帯電話オブジェクト。
- [objects/phone-number](https://github.com/MISP/misp-objects/blob/main/objects/phone-number/definition.json) - E.164国際公衆電気通信番号計画に基づく電話番号。
- [objects/physical-impact](https://github.com/MISP/misp-objects/blob/main/objects/physical-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されている物理的影響オブジェクト。
- [objects/postal-address](https://github.com/MISP/misp-objects/blob/main/objects/postal-address/definition.json) - 郵便住所。
- [objects/probabilistic-data-structure](https://github.com/MISP/misp-objects/blob/main/objects/probabilistic-data-structure/definition.json) - 確率的データ構造オブジェクトは、ブルームフィルタなどのスペース効率の良いデータ構造または類似の構造を説明します。
- [objects/process](https://github.com/MISP/misp-objects/blob/main/objects/process/definition.json) - システムプロセスを説明するオブジェクト。
- [objects/publication](https://github.com/MISP/misp-objects/blob/main/objects/publication/definition.json) - 書籍、ジャーナル、または学術出版物を説明するオブジェクト。
- [objects/python-evtx-event-log](https://github.com/MISP/misp-objects/blob/main/objects/python-evtx-event-log/definition.json) - システム上で実行されたアクティビティの情報を共有するためのイベントログオブジェクトテンプレート。オブジェクトテンプレートはpython-evtxモジュールにマッピングされています。https://github.com/williballenthin/python-evtx
- [objects/query](https://github.com/MISP/misp-objects/blob/main/objects/query/definition.json) - クエリとその形式を説明するオブジェクト。
- [objects/r2graphity](https://github.com/MISP/misp-objects/blob/main/objects/r2graphity/definition.json) - radare2とgraphmlを使用してファイルから抽出されたインジケーター。
- [objects/ransom-negotiation](https://github.com/MISP/misp-objects/blob/main/objects/ransom-negotiation/definition.json) - ランサムウェアインシデントで見られる身代金交渉を説明するオブジェクト。
- [objects/ransomware-group-post](https://github.com/MISP/misp-objects/blob/main/objects/ransomware-group-post/definition.json) - ransomlook.ioなどによって監視されているランサムウェアグループの投稿。
- [objects/reddit-account](https://github.com/MISP/misp-objects/blob/main/objects/reddit-account/definition.json) - Redditアカウント。
- [objects/reddit-comment](https://github.com/MISP/misp-objects/blob/main/objects/reddit-comment/definition.json) - Reddit投稿へのコメント。
- [objects/reddit-post](https://github.com/MISP/misp-objects/blob/main/objects/reddit-post/definition.json) - Reddit投稿。
- [objects/reddit-subreddit](https://github.com/MISP/misp-objects/blob/main/objects/reddit-subreddit/definition.json) - 公開または非公開のサブレディット。
- [objects/regexp](https://github.com/MISP/misp-objects/blob/main/objects/regexp/definition.json) - 正規表現(regexまたはregexp)を説明するオブジェクト。このオブジェクトは、正規表現としてどのように表現できるかを説明するために、リレーションシップを介して他の属性やオブジェクトにリンクできます。
- [objects/registry-key](https://github.com/MISP/misp-objects/blob/main/objects/registry-key/definition.json) - 値と最終変更タイムスタンプを含むWindowsレジストリキーを説明するレジストリキーオブジェクト。
- [objects/registry-key-value](https://github.com/MISP/misp-objects/blob/main/objects/registry-key-value/definition.json) - データ、データタイプ、および名前の値を含むWindowsレジストリキーの値を説明するレジストリキー値オブジェクト。レジストリキーに複数の値がある場合に使用します。
- [objects/regripper-NTUser](https://github.com/MISP/misp-objects/blob/main/objects/regripper-NTUser/definition.json) - NTUSER.datハイブから抽出されたユーザー固有の設定詳細を提示するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-sam-hive-single-user](https://github.com/MISP/misp-objects/blob/main/objects/regripper-sam-hive-single-user/definition.json) - SAMハイブから抽出されたユーザープロファイルの詳細を提示するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-sam-hive-user-group](https://github.com/MISP/misp-objects/blob/main/objects/regripper-sam-hive-user-group/definition.json) - SAMハイブから抽出されたグループプロファイルの詳細を提示するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-BHO](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-BHO/definition.json) - システムにインストールされているブラウザヘルパーオブジェクトの情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-appInit-DLLS](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-appInit-DLLS/definition.json) - システムにインストールされているDLLファイルの情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-application-paths](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-application-paths/definition.json) - アプリケーションパスの情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-applications-installed](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-applications-installed/definition.json) - システムにインストールされているアプリケーションの情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-command-shell](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-command-shell/definition.json) - システム上で実行されたシェルコマンドの情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-software-run](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-software-run/definition.json) - システム上で実行するように設定されているアプリケーションの情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-userprofile-winlogon](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-userprofile-winlogon/definition.json) - ユーザーがシステムにログオンする際のユーザープロファイル情報を、softwareハイブから収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-software-hive-windows-general-info](https://github.com/MISP/misp-objects/blob/main/objects/regripper-software-hive-windows-general-info/definition.json) - softwareハイブから抽出された一般的なWindows情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-system-hive-firewall-configuration](https://github.com/MISP/misp-objects/blob/main/objects/regripper-system-hive-firewall-configuration/definition.json) - systemハイブから抽出されたファイアウォール設定情報を提示するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-system-hive-general-configuration](https://github.com/MISP/misp-objects/blob/main/objects/regripper-system-hive-general-configuration/definition.json) - systemハイブから抽出された一般的なシステムプロパティを提示するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-system-hive-network-information](https://github.com/MISP/misp-objects/blob/main/objects/regripper-system-hive-network-information/definition.json) - systemハイブからネットワーク情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/regripper-system-hive-services-drivers](https://github.com/MISP/misp-objects/blob/main/objects/regripper-system-hive-services-drivers/definition.json) - systemハイブからサービス/ドライバーに関する情報を収集するように設計されたRegripperオブジェクトテンプレート。
- [objects/remote-controller](https://github.com/MISP/misp-objects/blob/main/objects/remote-controller/definition.json) - リモートコントローラー。
- [objects/report](https://github.com/MISP/misp-objects/blob/main/objects/report/definition.json) - レポートとそのメタデータを説明するレポートオブジェクト。
- [objects/research-scanner](https://github.com/MISP/misp-objects/blob/main/objects/research-scanner/definition.json) - 既知のスキャン活動(例:研究プロジェクトからのもの)に関連する情報。
- [objects/risk-assessment-report](https://github.com/MISP/misp-objects/blob/main/objects/risk-assessment-report/definition.json) - MONARCなどのリスク評価プラットフォームからの評価レポートを含むリスク評価レポートオブジェクト。
- [objects/rmm](https://github.com/MISP/misp-objects/blob/main/objects/rmm/definition.json) - RMMエージェントを説明するオブジェクト。
- [objects/rogue-dns](https://github.com/MISP/misp-objects/blob/main/objects/rogue-dns/definition.json) - CERT.brによって定義された不正DNS。
- [objects/rtir](https://github.com/MISP/misp-objects/blob/main/objects/rtir/definition.json) - RTIR - Request Tracker for Incident Response(インシデントレスポンス用リクエストトラッカー)。
- [objects/sandbox-report](https://github.com/MISP/misp-objects/blob/main/objects/sandbox-report/definition.json) - サンドボックスレポート。
- [objects/sb-signature](https://github.com/MISP/misp-objects/blob/main/objects/sb-signature/definition.json) - サンドボックス検知シグネチャ。
- [objects/scan-result](https://github.com/MISP/misp-objects/blob/main/objects/scan-result/definition.json) - メタデータとスキャン結果自体の出力を追加するためのスキャン結果オブジェクト。
- [objects/scheduled-event](https://github.com/MISP/misp-objects/blob/main/objects/scheduled-event/definition.json) - 現実世界(ミートスペース)での個人の集まりを説明するイベントオブジェクトテンプレート。
- [objects/scheduled-task](https://github.com/MISP/misp-objects/blob/main/objects/scheduled-task/definition.json) - Windowsスケジュールタスクの説明。
- [objects/scrippsco2-c13-daily](https://github.com/MISP/misp-objects/blob/main/objects/scrippsco2-c13-daily/definition.json) - フラスコ空気サンプルから導出されたC13濃度の日平均(ppm)。
- [objects/scrippsco2-c13-monthly](https://github.com/MISP/misp-objects/blob/main/objects/scrippsco2-c13-monthly/definition.json) - フラスコ空気サンプルから導出されたC13濃度の月平均(ppm)。
- [objects/scrippsco2-co2-daily](https://github.com/MISP/misp-objects/blob/main/objects/scrippsco2-co2-daily/definition.json) - フラスコ空気サンプルから導出されたCO2濃度の日平均(ppm)。
- [objects/scrippsco2-co2-monthly](https://github.com/MISP/misp-objects/blob/main/objects/scrippsco2-co2-monthly/definition.json) - フラスコ空気サンプルから導出されたCO2濃度の月平均(ppm)。
- [objects/scrippsco2-o18-daily](https://github.com/MISP/misp-objects/blob/main/objects/scrippsco2-o18-daily/definition.json) - フラスコ空気サンプルから導出されたO18濃度の日平均(ppm)。
- [objects/scrippsco2-o18-monthly](https://github.com/MISP/misp-objects/blob/main/objects/scrippsco2-o18-monthly/definition.json) - フラスコ空気サンプルから導出されたO18濃度の月平均(ppm)。
- [objects/script](https://github.com/MISP/misp-objects/blob/main/objects/script/definition.json) - 特別なランタイム環境で実行されるように書かれたコンピュータプログラムを説明するオブジェクト。スクリプトまたはシェルスクリプトは、悪意のある活動に使用されるだけでなく、脅威アナリストのサポートツールとしても使用できます。
- [objects/security-playbook](https://github.com/MISP/misp-objects/blob/main/objects/security-playbook/definition.json) - security-playbookオブジェクトはメタ情報を提供し、サイバーセキュリティプレイブックとオーケストレーションワークフローの管理、保存、共有を可能にします。
- [objects/service](https://github.com/MISP/misp-objects/blob/main/objects/service/definition.json) - 攻撃または侵害される可能性のあるサービスを表す汎用サービスオブジェクトテンプレート。
- [objects/shadowserver-beacon-ttl-report](https://github.com/MISP/misp-objects/blob/main/objects/shadowserver-beacon-ttl-report/definition.json) - ShadowserverビーコンTTLレポート。
- [objects/shadowserver-beacon-url-overlap](https://github.com/MISP/misp-objects/blob/main/objects/shadowserver-beacon-url-overlap/definition.json) - ShadowserverビーコンマルウェアURLオーバーラップ。
- [objects/shadowserver-malware-url-report](https://github.com/MISP/misp-objects/blob/main/objects/shadowserver-malware-url-report/definition.json) - このレポートは、過去24時間の悪用試行で観測されたURLを特定します。これらのURLはマルウェアペイロードを含むか、C2コントローラーとして機能すると想定されています。過去24時間以内にペイロードが正常にダウンロードされた場合は、そのSHA256ハッシュも公開されます。データは主にハニーポットから取得されます(その場合、多くの場合IoT関連になります)が、他のソースも可能です。いつものように、お客様のネットワーク/管轄区域、または国のCSIRTの場合は自国で見つかったIPに関する情報のみを受け取ります。参照:https://www.shadowserver.org/what-we-do/network-reporting/malware-url-report/
- [objects/shadowserver-scan-http-proxy](https://github.com/MISP/misp-objects/blob/main/objects/shadowserver-scan-http-proxy/definition.json) - このレポートは、複数のポートでオープンなHTTPプロキシサーバーを特定します。HTTPプロキシには正当な用途がありますが、攻撃やその他の形態の悪用にも使用されます。https://www.shadowserver.org/what-we-do/network-reporting/open-http-proxy-report/
- [objects/shell-commands](https://github.com/MISP/misp-objects/blob/main/objects/shell-commands/definition.json) - 実行された一連のシェルコマンドを説明するオブジェクト。このオブジェクトは、シェルコマンドの特定の実行を説明するために悪意のあるファイルとリンクできます。
- [objects/shodan-report](https://github.com/MISP/misp-objects/blob/main/objects/shodan-report/definition.json) - 特定のIPに関するShodanレポート。
- [objects/short-message-service](https://github.com/MISP/misp-objects/blob/main/objects/short-message-service/definition.json) - 1つ以上のSMSメッセージを説明するShort Message Service(SMS)オブジェクトテンプレート。当初の形式である3GPP 23.038 GSM文字セットの制限は適用されません。
- [objects/shortened-link](https://github.com/MISP/misp-objects/blob/main/objects/shortened-link/definition.json) - 短縮リンクとそのリダイレクト先。
- [objects/sigma](https://github.com/MISP/misp-objects/blob/main/objects/sigma/definition.json) - Sigmaルール(またはSigmaルール名)を説明するオブジェクト。
- [objects/sigmf-archive](https://github.com/MISP/misp-objects/blob/main/objects/sigmf-archive/definition.json) - Signal Metadata Format Specification(SigMF)で1つまたは複数の録音を含むアーカイブを表すオブジェクト。
- [objects/sigmf-expanded-recording](https://github.com/MISP/misp-objects/blob/main/objects/sigmf-expanded-recording/definition.json) - Signal Metadata Format Specification(SigMF)で単一のIQ/RFサンプルを表すオブジェクト。
- [objects/sigmf-recording](https://github.com/MISP/misp-objects/blob/main/objects/sigmf-recording/definition.json) - Signal Metadata Format Specification(SigMF)で単一のIQ/RFサンプルを表すオブジェクト。
- [objects/social-media-group](https://github.com/MISP/misp-objects/blob/main/objects/social-media-group/definition.json) - 公開または非公開のグループまたはチャンネルを説明するソーシャルメディアグループオブジェクトテンプレート。
- [objects/software](https://github.com/MISP/misp-objects/blob/main/objects/software/definition.json) - Softwareオブジェクトは、ソフトウェア製品を含むソフトウェアに関連する高レベルのプロパティを表します。STIX 2.1 - 6.14
- [objects/software-package](https://github.com/MISP/misp-objects/blob/main/objects/software-package/definition.json) - ソフトウェアパッケージとその状態を表す汎用ソフトウェアパッケージオブジェクトテンプレート。
- [objects/spambee-report](https://github.com/MISP/misp-objects/blob/main/objects/spambee-report/definition.json) - Spambee分析レポート。
- [objects/spearphishing-attachment](https://github.com/MISP/misp-objects/blob/main/objects/spearphishing-attachment/definition.json) - スピアフィッシング添付ファイル。
- [objects/spearphishing-campaign](https://github.com/MISP/misp-objects/blob/main/objects/spearphishing-campaign/definition.json) - メールから脅威アクター(TA)の接続先IOCまでのキャンペーンを説明するスピアフィッシングテンプレート。
- [objects/spearphishing-link](https://github.com/MISP/misp-objects/blob/main/objects/spearphishing-link/definition.json) - スピアフィッシングリンク。
- [objects/splunk](https://github.com/MISP/misp-objects/blob/main/objects/splunk/definition.json) - Splunk / Splunk ESオブジェクト。
- [objects/ss7-attack](https://github.com/MISP/misp-objects/blob/main/objects/ss7-attack/definition.json) - GSM/GPRS/UMTSネットワークをサポートするSS7シグナリングプロトコルで見られる攻撃のSS7オブジェクト。
- [objects/ssh-authorized-keys](https://github.com/MISP/misp-objects/blob/main/objects/ssh-authorized-keys/definition.json) - SSH authorized_keysファイルを保存するためのオブジェクト。
- [objects/stairwell](https://github.com/MISP/misp-objects/blob/main/objects/stairwell/definition.json) - Stairwellは、自動分析、YARAルールライブラリ、共有マルウェアフィード、非公開のAV判定、静的&動的分析、マルウェアのアンパッキング、および亜種の発見を活用します。
- [objects/stix2-pattern](https://github.com/MISP/misp-objects/blob/main/objects/stix2-pattern/definition.json) - STIXパターンを説明するオブジェクト。このオブジェクトは、STIXパターンとしてどのように表現できるかを説明するために、リレーションシップを介して他の属性やオブジェクトにリンクできます。
- [objects/stock](https://github.com/MISP/misp-objects/blob/main/objects/stock/definition.json) - 株式市場を説明するオブジェクト。
- [objects/submarine](https://github.com/MISP/misp-objects/blob/main/objects/submarine/definition.json) - 潜水艦の説明。
- [objects/summariser-output](https://github.com/MISP/misp-objects/blob/main/objects/summariser-output/definition.json) - AIベースまたはNLPの要約ツールからの要約出力。
- [objects/suricata](https://github.com/MISP/misp-objects/blob/main/objects/suricata/definition.json) - バージョンとコンテキスト情報とともに、1つ以上のSuricataルールを説明するオブジェクト。
- [objects/Taranis AI News Item](https://github.com/MISP/misp-objects/blob/main/objects/Taranis AI News Item/definition.json) - Taranis AIからのニュース項目を説明するオブジェクト。
- [objects/taranis-story](https://github.com/MISP/misp-objects/blob/main/objects/taranis-story/definition.json) - Taranisまたは類似のソースからのストーリー項目を説明するオブジェクト。
- [objects/target-system](https://github.com/MISP/misp-objects/blob/main/objects/target-system/definition.json) - 標的となったシステムに関する説明。これは侵害された内部システムである可能性があります。
- [objects/task](https://github.com/MISP/misp-objects/blob/main/objects/task/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されているタスクオブジェクト。
- [objects/tattoo](https://github.com/MISP/misp-objects/blob/main/objects/tattoo/definition.json) - 自然人の身体にある入れ墨(タトゥー)を説明します。
- [objects/telegram-account](https://github.com/MISP/misp-objects/blob/main/objects/telegram-account/definition.json) - Telegramアカウントに関連する情報。
- [objects/telegram-bot](https://github.com/MISP/misp-objects/blob/main/objects/telegram-bot/definition.json) - Telegramボットに関連する情報。
- [objects/temporal-event](https://github.com/MISP/misp-objects/blob/main/objects/temporal-event/definition.json) - 時間的イベントは、時間的および空間的境界で構成されます。空間的境界は、物理的、仮想的、またはハイブリッドであり得ます。
- [objects/thaicert-group-cards](https://github.com/MISP/misp-objects/blob/main/objects/thaicert-group-cards/definition.json) - ThaiCERTに触発された敵対者グループカード。
- [objects/threatgrid-report](https://github.com/MISP/misp-objects/blob/main/objects/threatgrid-report/definition.json) - ThreatGridレポート。
- [objects/timecode](https://github.com/MISP/misp-objects/blob/main/objects/timecode/definition.json) - ビデオシーケンスの開始(例:CCTV証拠)とビデオシーケンスの終了を説明するタイムコードオブジェクト。
- [objects/timesketch-timeline](https://github.com/MISP/misp-objects/blob/main/objects/timesketch-timeline/definition.json) - ログエントリを説明するためのtimesketchの必須フィールドに基づくtimesketchタイムラインオブジェクト。
- [objects/timesketch_message](https://github.com/MISP/misp-objects/blob/main/objects/timesketch_message/definition.json) - timesketchメッセージエントリ。
- [objects/timestamp](https://github.com/MISP/misp-objects/blob/main/objects/timestamp/definition.json) - 最初に確認された時間と最後に確認された時間を含む時間を表す汎用タイムスタンプオブジェクト。リレーションシップが時間関係の種類を定義します。
- [objects/tor-hiddenservice](https://github.com/MISP/misp-objects/blob/main/objects/tor-hiddenservice/definition.json) - Tor隠れサービス(オニオンサービス)オブジェクト。
- [objects/tor-node](https://github.com/MISP/misp-objects/blob/main/objects/tor-node/definition.json) - Torネットワークの一部である時点のTorノードの説明(ユーザーのインターネットアドレスとユーザーが使用するサービスの間の接続を隠すことでインターネット上のプライバシーを保護します)。
- [objects/traceability-impact](https://github.com/MISP/misp-objects/blob/main/objects/traceability-impact/definition.json) - STIX 2.1 Incidentオブジェクト拡張で説明されているトレーサビリティへの影響オブジェクト。
- [objects/tracking-id](https://github.com/MISP/misp-objects/blob/main/objects/tracking-id/definition.json) - Google Analyticsやその他の分析プラットフォームで使用されるようなアナリティクスおよびトラッキングID。
- [objects/transaction](https://github.com/MISP/misp-objects/blob/main/objects/transaction/definition.json) - 金融取引を説明するオブジェクト。
- [objects/translation](https://github.com/MISP/misp-objects/blob/main/objects/translation/definition.json) - テキストとその翻訳を保持するために使用されます。
- [objects/transport-ticket](https://github.com/MISP/misp-objects/blob/main/objects/transport-ticket/definition.json) - 交通チケット。
- [objects/trustar_report](https://github.com/MISP/misp-objects/blob/main/objects/trustar_report/definition.json) - TruStarレポート。
- [objects/trusted-timestamp](https://github.com/MISP/misp-objects/blob/main/objects/trusted-timestamp/definition.json) - 信頼できるタイムスタンプ。
- [objects/tsk-chats](https://github.com/MISP/misp-objects/blob/main/objects/tsk-chats/definition.json) - デジタルフォレンジック調査中に特定された、証拠となるまたは興味深いメッセージの交換から情報を収集するためのオブジェクトテンプレート。
- [objects/tsk-web-bookmark](https://github.com/MISP/misp-objects/blob/main/objects/tsk-web-bookmark/definition.json) - デジタルフォレンジック調査中に特定された証拠となるブックマークを追加するためのオブジェクトテンプレート。
- [objects/tsk-web-cookie](https://github.com/MISP/misp-objects/blob/main/objects/tsk-web-cookie/definition.json) - フォレンジック調査中に特定されたクッキーを表すためのTSK-Autopsyオブジェクトテンプレート。
- [objects/tsk-web-downloads](https://github.com/MISP/misp-objects/blob/main/objects/tsk-web-downloads/definition.json) - ウェブダウンロードを追加するためのオブジェクトテンプレート。
- [objects/tsk-web-history](https://github.com/MISP/misp-objects/blob/main/objects/tsk-web-history/definition.json) - ウェブ履歴情報を共有するためのオブジェクトテンプレート。
- [objects/tsk-web-search-query](https://github.com/MISP/misp-objects/blob/main/objects/tsk-web-search-query/definition.json) - ウェブ検索クエリ情報を共有するためのオブジェクトテンプレート。
- [objects/twitter-account](https://github.com/MISP/misp-objects/blob/main/objects/twitter-account/definition.json) - Twitterアカウント。
- [objects/twitter-list](https://github.com/MISP/misp-objects/blob/main/objects/twitter-list/definition.json) - Twitterリスト。
- [objects/twitter-post](https://github.com/MISP/misp-objects/blob/main/objects/twitter-post/definition.json) - Twitter投稿(ツイート)。
- [objects/typosquatting-finder](https://github.com/MISP/misp-objects/blob/main/objects/typosquatting-finder/definition.json) - タイポスクワッティング情報。
- [objects/typosquatting-finder-result](https://github.com/MISP/misp-objects/blob/main/objects/typosquatting-finder-result/definition.json) - タイポスクワッティング結果。
- [objects/uav](https://github.com/MISP/misp-objects/blob/main/objects/uav/definition.json) - 無人航空機(UAV)またはドローンの資産詳細。
- [objects/url](https://github.com/MISP/misp-objects/blob/main/objects/url/definition.json) - urlオブジェクトは、正規化されたフィールド(faup解析ライブラリを使用して抽出されたものなど)とそのメタデータとともにURLを説明します。
- [objects/user-account](https://github.com/MISP/misp-objects/blob/main/objects/user-account/definition.json) - ユーザー識別、認証、権限、およびその他の関連データポイントの側面を定義するユーザーアカウントオブジェクト。
- [objects/user-action](https://github.com/MISP/misp-objects/blob/main/objects/user-action/definition.json) - ユーザーアクションを表します。
- [objects/vehicle](https://github.com/MISP/misp-objects/blob/main/objects/vehicle/definition.json) - 車両情報と登録を説明するための車両オブジェクトテンプレート。
- [objects/victim](https://github.com/MISP/misp-objects/blob/main/objects/victim/definition.json) - Victimオブジェクトは、攻撃または悪用の標的を説明します。
- [objects/virustotal-graph](https://github.com/MISP/misp-objects/blob/main/objects/virustotal-graph/definition.json) - VirusTotalグラフ。
- [objects/virustotal-report](https://github.com/MISP/misp-objects/blob/main/objects/virustotal-report/definition.json) - VirusTotalレポート。
- [objects/virustotal-submission](https://github.com/MISP/misp-objects/blob/main/objects/virustotal-submission/definition.json) - VirusTotal提出。
- [objects/vulnerability](https://github.com/MISP/misp-objects/blob/main/objects/vulnerability/definition.json) - 公開済み、未公開、審査中、またはエンバーゴ中のソフトウェア、機器、ハードウェアの脆弱性を説明できる共通脆弱性列挙を説明する脆弱性オブジェクト。
- [objects/wazuh-rule](https://github.com/MISP/misp-objects/blob/main/objects/wazuh-rule/definition.json) - 公式のWazuhルール構文の一般的なフィールドを使用してWazuh XMLルールを説明するオブジェクト。
- [objects/weakness](https://github.com/MISP/misp-objects/blob/main/objects/weakness/definition.json) - ソフトウェア、機器、ハードウェアの現行、不完全、ドラフト、または非推奨の弱点を説明できる共通弱点列挙を説明する弱点オブジェクト。
- [objects/whois](https://github.com/MISP/misp-objects/blob/main/objects/whois/definition.json) - Whoisは、ドメイン名またはIPアドレスの情報を記録します。
- [objects/wifi-connection](https://github.com/MISP/misp-objects/blob/main/objects/wifi-connection/definition.json) - SSID、認証、暗号化、および設定詳細を含むワイヤレスネットワーク接続パラメータ。
- [objects/windows-service](https://github.com/MISP/misp-objects/blob/main/objects/windows-service/definition.json) - Windowsサービスと、Windowsオペレーティングシステムで実行されているサービスに関する詳細。
- [objects/x-header](https://github.com/MISP/misp-objects/blob/main/objects/x-header/definition.json) - Xヘッダーを使用するSMTP、HTTP、またはその他のプロトコルのためのXヘッダー汎用オブジェクト。
- [objects/x509](https://github.com/MISP/misp-objects/blob/main/objects/x509/definition.json) - X.509証明書を説明するx509オブジェクト。
- [objects/yabin](https://github.com/MISP/misp-objects/blob/main/objects/yabin/definition.json) - yabin.pyは、バイナリのマッチングとハンティングのために、関数プロローグからYaraルールを生成します。参照:https://github.com/AlienVault-OTX/yabin
- [objects/yara](https://github.com/MISP/misp-objects/blob/main/objects/yara/definition.json) - バージョンとともにYARAルール(またはYARAルール名)を説明するオブジェクト。
- [objects/youtube-channel](https://github.com/MISP/misp-objects/blob/main/objects/youtube-channel/definition.json) - YouTubeチャンネル。
- [objects/youtube-comment](https://github.com/MISP/misp-objects/blob/main/objects/youtube-comment/definition.json) - YouTubeビデオコメント。
- [objects/youtube-playlist](https://github.com/MISP/misp-objects/blob/main/objects/youtube-playlist/definition.json) - YouTubeプレイリスト。
- [objects/youtube-video](https://github.com/MISP/misp-objects/blob/main/objects/youtube-video/definition.json) - YouTubeビデオ。## MISP オブジェクトのリレーションシップ

MISP オブジェクトモデルはオープンであり、ユーザーが独自のリレーションシップを使用できます。MISP は、イベントを他の MISP コミュニティと共有する予定がある場合に使用できるデフォルトのリレーションシップのリストを提供します。

- [relationships](https://github.com/misp/misp-objects/blob/HEAD/relationships/definition.json) - MISP オブジェクトを相互にリンクし、リレーションシップのコンテキストを説明するために使用できる、事前定義されたデフォルトのリレーションシップのリスト。

## MISP オブジェクトへの貢献方法

プロジェクトをフォークし、[objects ディレクトリ](https://github.com/misp/misp-objects/blob/HEAD/objects/) 内に、オブジェクト名に一致する新しいディレクトリを作成します。オブジェクトは既存の MISP 属性で構成されなければなりません。特定の属性が不足している場合は、[MISP プロジェクト](https://www.github.com/MISP/MISP) で issue を遠慮なく開いてください。

ユーザーがコメントを追加したりテキストを関連付けたりできるように、オブジェクトに **text** 属性を追加することをお勧めします。

未解析のオブジェクトを含めることができる場合、オブジェクト全体をインポートするために **raw-base64** 属性をオブジェクト内で使用できます。

すべてのオブジェクトには **uuid** が必要です。これは Linux コマンドラインで **uuidgen -r** を使用して作成できます。

オブジェクトが作成されたら、検証のために `validate_all.sh` と `jq_all_the_things.sh` が実行されます。このプロジェクトにプルリクエストを送ってください。既存のユースケースに適合する場合は、通常オブジェクトをマージします。

### MISP オブジェクトテンプレートを作成する際のベストプラクティス

- フィールド名には、アンダースコアや特殊文字(マイナスを除く)を使用しない小文字の名前を使用してください
- オブジェクトテンプレートのスコープとユースケースを説明する説明をオブジェクトテンプレートに追加してください
- オブジェクトが既存フォーマットのマッピングである場合は、オブジェクトテンプレートの説明に参照を追加してください
- オブジェクトはデフォルトでこれらのフィールドを持っているため、`first-seen` と `last-seen` はオブジェクトテンプレートでは必須ではありません。追加の時間情報が必要な場合は、新しい特定のフィールドを追加してください。
- デフォルトで必須とするフィールドの数には寛容にしてください(例:`requiredOneOf` を使用)。
- 新しいテンプレートを作成する前に、既存のオブジェクトテンプレートを確認してください。プルリクエストを行う際は、新しいテンプレートが必要な理由を遠慮なく追加してください。

## MISP オブジェクトのドキュメント

MISP オブジェクトは、以下の場所でドキュメント化されています: [HTML](https://www.misp-project.org/objects.html) および [PDF](https://www.misp-project.org/objects.pdf)。

ドキュメントは、JSON で表現された MISP オブジェクトテンプレートから自動生成されます。

## MISP オブジェクトは既存の標準と比較してどのような利点がありますか?

MISP オブジェクトは、MISP(脅威共有プラットフォーム)または他の情報共有プラットフォームのユーザーによって貢献される、動的に使用されるオブジェクトです。

その目的は、MISP のような運用中の分散共有システムにおけるオブジェクト定義の動的な更新を可能にすることです。セキュリティ脅威とそれに関連するインジケーターは非常に動的ですが、標準化されたフォーマットは非常に静的であり、新しいインジケーターが標準化されるまでにはかなりの時間が必要です。

MISP オブジェクトモデルは、MISP またはそれを使用する他の脅威共有プラットフォームの基盤となるコードベースを変更することなく、使用状況に基づいて新しい複合インジケーターフォーマットを追加することを可能にします。オブジェクトの定義は、その後、インジケーター自体とともに伝播させることができます。

## ライセンス

### MISP オブジェクト JSON ファイル

MISP オブジェクト(JSON ファイル)は、次のデュアルライセンスの下で提供されます:

- [CC0 1.0 Universal](https://creativecommons.org/publicdomain/zero/1.0/legalcode) (CC0 1.0) - パブリックドメイン献呈。

または~~~~
 Copyright (c) 2016-2026 Alexandre Dulaunoy - [email protected]
 Copyright (c) 2016-2026 CIRCL - Computer Incident Response Center Luxembourg
 Copyright (c) 2016-2026 Andras Iklody
 Copyright (c) 2016-2026 Raphael Vinot
 Copyright (c) 2016-2026 Christian Studer
 Copyright (c) 2016-2026 Various contributors to MISP Project

 Redistribution and use in source and binary forms, with or without modification,
 are permitted provided that the following conditions are met:

    1. Redistributions of source code must retain the above copyright notice,
       this list of conditions and the following disclaimer.
    2. Redistributions in binary form must reproduce the above copyright notice,
       this list of conditions and the following disclaimer in the documentation
       and/or other materials provided with the distribution.

 THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND
 ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
 WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
 IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,
 INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
 BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
 DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
 LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE
 OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
 OF THE POSSIBILITY OF SUCH DAMAGE.

タクソノミーの特定の作者が別のライセンスでライセンスしたい場合は、プルリクエストをリクエストできます。

ソフトウェア~~~~

Copyright (C) 2016-2024 Andras Iklody Copyright (C) 2016-2026 Alexandre Dulaunoy Copyright (C) 2016-2026 CIRCL - Computer Incident Response Center Luxembourg

This program is free software: you can redistribute it and/or modify it under the terms of the GNU Affero General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.

This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU Affero General Public License for more details.

You should have received a copy of the GNU Affero General Public License along with this program. If not, see http://www.gnu.org/licenses/.

root@kitploit:~
ツールをダウンロード