stage-4: multi-source Scoutline — CISA KEV + Feodo Tracker
Scoutline is now a source registry: urlhaus, cisa-kev, feodo. CISA KEV brings exploit/CVE cases, Feodo Tracker brings botnet C2 cases — real incident-type variety beyond URLhaus's malware monotone. Classifyline is source-aware (feed tag → incident type; ransomware-flagged KEV → critical). CLI gains fetch-cisa-kev, fetch-feodo, fetch-all. Both new feeds are keyless public download feeds (verified). Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>
This commit is contained in:
@@ -45,7 +45,7 @@ python3 -m virtualenv .venv
|
||||
.venv/bin/pip install -e .
|
||||
|
||||
.venv/bin/psyc init # create the sqlite db
|
||||
.venv/bin/psyc fetch-urlhaus --limit 50 # ingest a URLhaus pass
|
||||
.venv/bin/psyc fetch-all # ingest URLhaus + CISA KEV + Feodo Tracker
|
||||
.venv/bin/psyc serve --port 8767 # cockpit at http://127.0.0.1:8767
|
||||
.venv/bin/psyc status # count of ingested cases
|
||||
```
|
||||
|
||||
Reference in New Issue
Block a user