Skip to content

Missing malware SDO #74

Description

@cobsec

Hey all,
So I might be missing something here, but it seems there is a SRO that refers to a malware SDO that isn't in the repo. Appreciate that it could refer to an object in another repo, but it doesn't seem intentional, so just thought I would let you know it was missing.

Details:
relationship--53364899-1ea5-47fa-afde-c210aed64120: intrusion-set--8a831aaa-f3e0-47a3-bed8-a9ced744dd12 uses malware--c41a8b7c-3e42-4eee-b87d-ad8a100ee878

The intrusion set is Dark Caracal and the relationship has a reference to the lookout report:
https://info.lookout.com/rs/051-ESQ-475/images/Lookout_Dark-Caracal_srr_20180118_us_v.1.0.pdf

There are a few references to different malware in that report so I'd need to do a fair bit of reverse engineering through the rest of the data set to figure out what is missing...hoping that someone at your end might be able to fill in the gaps rather than spending time on that?

Thanks,
Chris

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions