This article demonstrates how to quickly add new MISP feeds, either to your own MISP server or as a contributor to the MISP project. I use the feeds from Threatview.io as an example. Threatview.io provides daily feeds on IPs, domains, URLs, and file hashes, as well as a C2 hunt feed.
MISP feeds are remote or local resources containing indicators that can be either imported into MISP or used for correlations without importing them into … Read more.