Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Analyzer] WAD #814

Closed
0ssigeno opened this issue Dec 24, 2021 · 6 comments
Closed

[Analyzer] WAD #814

0ssigeno opened this issue Dec 24, 2021 · 6 comments
Assignees

Comments

@0ssigeno
Copy link
Contributor

We can retrieve more information about the infrastructure behind a domain using WAD.

Since it is actually contacting the domain, we should add the leak_info flag in the configuration.

@mlodic
Copy link
Member

mlodic commented Dec 24, 2021

Good catch but we do not usually integrate tools that actively scan a target in IntelOwl.

This is because IntelOwl is not a tool that should be used for perfroming reconnaissance of a target. There are plenty of other projects that do that better and this has never been its main goal. I have already closed other similar issues.

However I understand that the framework completely supports these use cases and could integrate several similar tools/services. The point is that we should categorize them differently. We cannot just add them as normal analyzers.

I guess that a little customization for the "reconnaissance tools/services" can be thought and done once we will start working on the playbooks (#628). The playbooks will allow to group some analyzers together, to better separate use cases from one another. So I think we could keep this issue as a reminder.

But right now, considering the almost all the IntelOwl users just run "all the analyzers", I think we should avoid this.

@mlodic mlodic changed the title New analyzer: WAD [New Scanner] WAD Jan 4, 2023
@mlodic
Copy link
Member

mlodic commented Jan 4, 2023

from 2021 to 2023, now it could be time to start thinking about this.

We have implemented Playbooks and we have IntelOwl v4.
The framework can now support active scanners too in an easier way.

@mlodic mlodic changed the title [New Scanner] WAD [Analyzer] WAD Mar 29, 2024
@mlodic
Copy link
Member

mlodic commented Mar 29, 2024

this could be implemented like a normal analyzer

@basedBaba
Copy link
Contributor

Hello! I would like to work on this issue. :D

@drosetti
Copy link
Contributor

ok, i'll assign it to you

@drosetti drosetti assigned drosetti and basedBaba and unassigned drosetti Dec 30, 2024
basedBaba added a commit to basedBaba/IntelOwl that referenced this issue Jan 3, 2025
@basedBaba basedBaba mentioned this issue Jan 3, 2025
22 tasks
basedBaba added a commit to basedBaba/IntelOwl that referenced this issue Jan 3, 2025
basedBaba added a commit to basedBaba/IntelOwl that referenced this issue Jan 7, 2025
basedBaba added a commit to basedBaba/IntelOwl that referenced this issue Jan 7, 2025
basedBaba added a commit to basedBaba/IntelOwl that referenced this issue Jan 7, 2025
fgibertoni pushed a commit that referenced this issue Jan 14, 2025
* WAD Analyzer, Closes #814

* Remove WAD from FREE_TO_USE_ANALYZERS playbook

* Update WAD maximum_tlp to CLEAR

* Fix WAD monkeypatch

* Update WAD error message to a more generic one

* Update migration number and dependencies
@basedBaba
Copy link
Contributor

basedBaba commented Jan 14, 2025

This issue can be closed now. #2655

drosetti pushed a commit that referenced this issue Jan 17, 2025
* Added service_api_key parameter and migrations

* Added mb_get and mb_google

* Added logging for api key

* Fix deepsource warning

* WAD Analyzer, Closes #814 (#2655)

* WAD Analyzer, Closes #814

* Remove WAD from FREE_TO_USE_ANALYZERS playbook

* Update WAD maximum_tlp to CLEAR

* Fix WAD monkeypatch

* Update WAD error message to a more generic one

* Update migration number and dependencies

* Added service_api_key parameter and migrations

* Added mb_get and mb_google

* Added logging for api key

* Fix deepsource warning

* Fixed migration number

* Removed wrongly duplicated migration

* Added other analyzers to reverse_migrate

* Added common mixin and updated code accordingly

* Solved MRO

* Deepsource

* Made mixin compatible with ingestors

* Removed inheritance from analyzers

* Added missing return statement

* Removed old configs and used a property

* Left behind values

* Added explainatory comment

---------

Co-authored-by: Pragati Raj <basedBaba@proton.me>
pranjalg1331 pushed a commit to pranjalg1331/IntelOwl that referenced this issue Jan 25, 2025
* WAD Analyzer, Closes intelowlproject#814

* Remove WAD from FREE_TO_USE_ANALYZERS playbook

* Update WAD maximum_tlp to CLEAR

* Fix WAD monkeypatch

* Update WAD error message to a more generic one

* Update migration number and dependencies
pranjalg1331 pushed a commit to pranjalg1331/IntelOwl that referenced this issue Jan 25, 2025
* Added service_api_key parameter and migrations

* Added mb_get and mb_google

* Added logging for api key

* Fix deepsource warning

* WAD Analyzer, Closes intelowlproject#814 (intelowlproject#2655)

* WAD Analyzer, Closes intelowlproject#814

* Remove WAD from FREE_TO_USE_ANALYZERS playbook

* Update WAD maximum_tlp to CLEAR

* Fix WAD monkeypatch

* Update WAD error message to a more generic one

* Update migration number and dependencies

* Added service_api_key parameter and migrations

* Added mb_get and mb_google

* Added logging for api key

* Fix deepsource warning

* Fixed migration number

* Removed wrongly duplicated migration

* Added other analyzers to reverse_migrate

* Added common mixin and updated code accordingly

* Solved MRO

* Deepsource

* Made mixin compatible with ingestors

* Removed inheritance from analyzers

* Added missing return statement

* Removed old configs and used a property

* Left behind values

* Added explainatory comment

---------

Co-authored-by: Pragati Raj <basedBaba@proton.me>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

6 participants