Skip to content

Conversation

@ziracmo
Copy link
Contributor

@ziracmo ziracmo commented Nov 18, 2024

📝 CTI IP Report page

Description

This PR adds the new IP Detail Report Page to provide insights into specific IP addresses. Below are the key sections included:

  • IP Title and Status: Displays the IP address and its classification.
  • Key Information: Confidence level, timestamps, reasons for classification, MITRE techniques, and background noise.
  • Majority Report: Quarterly insights from CrowdSec.
  • IP Range, AS, and Reverse DNS.
  • IP Classification.
  • Activity Timeline: Recent activity over different timeframes.
  • Blocklist Information.
  • Detailed Classifications.
  • Targeted Countries.
  • Attack Details.
  • False Positive Feedback: User contributions to improve intelligence.
  • Security Engine Reports: (Logged-in users only) Interactive reports for internal sharing.

Let me know if any section needs clarification or adjustments. Screenshots attached for context.

image
image
image
image
image
image
image

@ziracmo ziracmo self-assigned this Nov 18, 2024
@aws-amplify-eu-west-1
Copy link

This pull request is automatically being deployed by Amplify Hosting (learn more).

Access this pull request here: https://pr-676.d1to60jd2gb6y6.amplifyapp.com

@ziracmo ziracmo requested a review from rr404 November 20, 2024 08:31
Copy link
Contributor

@rr404 rr404 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm - retours pris en compte dans dernière PR

@AlteredCoder
Copy link
Contributor

We can link this page: https://docs.crowdsec.net/u/cti_api/search_queries for more example on how to write lucene query on our CTI ?

@ziracmo ziracmo changed the base branch from main to cti-doc-getting-started November 25, 2024 08:22
Copy link
Contributor Author

ziracmo commented Nov 25, 2024

Copy link
Contributor Author

ziracmo commented Nov 25, 2024

Merge activity

  • Nov 25, 3:23 AM EST: A user started a stack merge that includes this pull request via Graphite.
  • Nov 25, 3:30 AM EST: Graphite rebased this pull request as part of a merge.
  • Nov 25, 3:31 AM EST: A user merged this pull request with Graphite.

@ziracmo ziracmo changed the base branch from cti-doc-getting-started to graphite-base/676 November 25, 2024 08:26
@ziracmo ziracmo changed the base branch from graphite-base/676 to main November 25, 2024 08:28
@ziracmo ziracmo merged commit 3fb4e65 into main Nov 25, 2024
1 of 3 checks passed
@ziracmo ziracmo deleted the cti-detailed-page branch November 25, 2024 08:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants