Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Bug] ERROR SENDIND DATA TO MISP WITH CORTEX ANALYZER AND THEHIVE #1316

Open
b4lh4ck opened this issue Jan 27, 2025 · 0 comments
Open

[Bug] ERROR SENDIND DATA TO MISP WITH CORTEX ANALYZER AND THEHIVE #1316

b4lh4ck opened this issue Jan 27, 2025 · 0 comments

Comments

@b4lh4ck
Copy link

b4lh4ck commented Jan 27, 2025

Describe the bug
I got an error sometimes with MISP analyzer with the new version of it v2.5.5 and I can't send cases to MISP with Thehive

To Reproduce
Steps to reproduce the behavior:

  1. enable MISP analyzer and have an instance with MISP v2.5.5
  2. analize one IOC (IP, URL, etc)
  3. get the result of analysis

Expected behavior
I expect a good result of trying to view if exist events in MISP instance, not sometimes works properly and sometimes not

Work environment

  • Client OS: Linux RHEL 8.10
  • Browse type and version: Google Chrome
  • Cortex version: 3.1
  • Thehive 4
  • Cortex Analyzer/Responder name: MISP
  • Cortex Analyzer/Responder version: 2.1

Additional context

HI everyone I have a problem trying to integrate thehive and cortex with MISP in the new version of MISP v2.5.5

I have Thehive 4 and Cortex 3.1

When I integrated Cortex with MISP and try to analyze one IP sometimes I got an error and sometimes works properly

Image

Image

Image

with thehive I can't send or import a case to MISP I got the following error

Image

Image

Im using a self sign certificate with MISP but Im using the code to use the certificate in thehive

Image

I tried installing the version 2.5.4 of pymisp but I got errors when I installing it or something went wrong

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant