Skip to content

Most Active Malware Widget #992

Closed
Closed

Description

Problem to Solve

Our organization would like to add a "Top 5 Active Malware" section on some of our reporting within a specific timeframe. A widget with this capability would be extremely helpful.

Current Workaround

No workaround exists

Proposed Solution

To add a widget that displays most active malware in a specific timeframe. It can be set to a month by default but the user can use specific dates.

Additional Information

Below are images from Mandiant. Having this capability in OpenCTI would be extremely useful. It would also be helpful if this feature does not require a subscription, but calculates the top 10 with data ingested in OpenCTI or from an Open Source.

MostActiveMalware

The Most Active Malware Widget with date modifications. This only allows the user to select time frames by weeks, months or quarters. Allowing the user to specify a start date and an end date is preferred.

MalwareDateMod

After dates are specified and malware results are populated, the user can click on a malware and OpenCTI would provide CVE information, associated actors, external references and any additional information related to the specific CVE.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Assignees

No one assigned

    Labels

    featureuse for describing a new feature to developsolveduse to identify issue that has been solved (must be linked to the solving PR)

    Type

    No type

    Projects

    No projects

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions