From 34d57c386b875f02af0a9c3ddd9318af49c4893c Mon Sep 17 00:00:00 2001 From: weslambert Date: Tue, 10 May 2022 09:32:18 -0400 Subject: [PATCH 1/2] Update analyzer docs with information about analyzers that require authentication --- salt/sensoroni/files/analyzers/README.md | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) diff --git a/salt/sensoroni/files/analyzers/README.md b/salt/sensoroni/files/analyzers/README.md index fe311725a..c19f1cbc2 100644 --- a/salt/sensoroni/files/analyzers/README.md +++ b/salt/sensoroni/files/analyzers/README.md @@ -18,6 +18,23 @@ The built-in analyzers support the following observable types: | Urlscan |✗ |✗|✗|✗|✗|✗|✗|✓|✗| | Virustotal |✓ |✓|✓|✗|✗|✗|✗|✓|✗| +## Authentication +Many analyzers require authentication, via an API key or similar. The table below illustrates which analyzers require authentication. + +| Name | Authn Req'd| +--------------------------|------------| +[Alienvault OTX](https://otx.alienvault.com/api) |✓| +[EmailRep](https://emailrep.io/key) |✓| +[Greynoise](https://www.greynoise.io/plans/community) |✓| +JA3er |✗| +LocalFile |✗| +[Pulsedive](https://pulsedive.com/api/) |✓| +Spamhaus |✗| +Urlhaus |✗| +[Urlscan](https://urlscan.io/docs/api/) |✓| +[Virustotal](https://developers.virustotal.com/reference/overview) |✓| + + ## Developer Guide ### Python From 91a7f25d3ac2e4f4e00a2d978c3084e90be9d8d8 Mon Sep 17 00:00:00 2001 From: Jason Ertel Date: Tue, 10 May 2022 09:39:19 -0400 Subject: [PATCH 2/2] Corrected brand name capitalization --- salt/sensoroni/files/analyzers/README.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/salt/sensoroni/files/analyzers/README.md b/salt/sensoroni/files/analyzers/README.md index c19f1cbc2..88962bebd 100644 --- a/salt/sensoroni/files/analyzers/README.md +++ b/salt/sensoroni/files/analyzers/README.md @@ -23,16 +23,16 @@ Many analyzers require authentication, via an API key or similar. The table belo | Name | Authn Req'd| --------------------------|------------| -[Alienvault OTX](https://otx.alienvault.com/api) |✓| +[AlienVault OTX](https://otx.alienvault.com/api) |✓| [EmailRep](https://emailrep.io/key) |✓| -[Greynoise](https://www.greynoise.io/plans/community) |✓| +[GreyNoise](https://www.greynoise.io/plans/community) |✓| JA3er |✗| LocalFile |✗| [Pulsedive](https://pulsedive.com/api/) |✓| Spamhaus |✗| Urlhaus |✗| [Urlscan](https://urlscan.io/docs/api/) |✓| -[Virustotal](https://developers.virustotal.com/reference/overview) |✓| +[VirusTotal](https://developers.virustotal.com/reference/overview) |✓| ## Developer Guide