Add EmailRep analyzer to observable support matrix

This commit is contained in:
weslambert
2022-05-03 10:10:57 -04:00
committed by GitHub
parent 5a9acb3857
commit f3a91d9fcd

View File

@@ -5,16 +5,17 @@ Security Onion provides a means for performing data analysis on varying inputs.
## Supported Observable Types ## Supported Observable Types
The built-in analyzers support the following observable types: The built-in analyzers support the following observable types:
| Name | Domain | Hash | IP | JA3 | Other | URI | URL | User Agent | | Name | Domain | Hash | IP | JA3 | Mail | Other | URI | URL | User Agent |
| ------------------------|--------|-------|-------|-------|-------|-------|-------|-------| | ------------------------|--------|-------|-------|-------|-------|-------|-------|-------|------------
| Alienvault OTX |✓ |✓|✓|✗|✗|✗|✓|✗| | Alienvault OTX |✓ |✓|✓|✗|✗|✗|✗|✓|✗|
| Greynoise |✗ |✗|✓|✗|✗|✗|✗|✗| | EmailRep |✗ |✗|✗|✗|✓|✗|✗|✗|✗|
| JA3er |✗ |✗|✗|✓|✗|✗|✗|✗| | Greynoise |✗ |✗|✓|✗|✗|✗|✗|✗|✗|
| LocalFile |✓ |✓|✓|✓|✓|✗|✓|✗| | JA3er |✗ |✗|✗|✓|✗|✗|✗|✗|✗|
| Pulsedive |✓ |✓|✓|✗|✗|✓|✓|✓| | LocalFile |✓ |✓|✓|✓|✗|✓|✗|✓|✗|
| Spamhaus |✗ |✗|✓|✗|✗|✗|✗|✗| | Pulsedive |✓ |✓|✓|✗|✗|✗|✓|✓|✓|
| Urlhaus |✗ |✗|✗|✗|✗|✗|✓|✗| | Spamhaus |✗ |✗|✓|✗|✗|✗|✗|✗|✗|
| Virustotal |✓ |✓|✓|✗|✗|✗|✓|✗| | Urlhaus |✗ |✗|✗|✗|✗|✗|✗|✓|✗|
| Virustotal |✓ |✓|✓|✗|✗|✗|✗|✓|✗|
## Developer Guide ## Developer Guide