Skip to content
This repository has been archived by the owner on Jun 17, 2023. It is now read-only.

Building

Wes edited this page Apr 12, 2017 · 5 revisions

Basic Usage

>>> from csirtg_indicator.indicator import Indicator
>>> i = Indicator(indicator='example.com', tlp='amber', group='everyone', tags='phishing')

>>> print(i.tags)
['phishing']

>>> print(i.indicator)
example.com

>>> print(i.itype)
fqdn

>>> print(i)
{"group": "everyone","tags": ["phishing"],"itype": "fqdn","tlp": "amber","uuid": "4492f80f-3521-488d-82bf-9a90de802ff4","count": 1,"indicator": "example.com"}
>>> 

Basic Formatting

>>> from csirtg_indicator.indicator import Indicator
>>> from csirtg_indicator.format.zcsv import get_lines
>>> i = Indicator(indicator='example.com', tlp='amber', group='everyone', tags='phishing')
>>> for l in get_lines([i]):
...     print(l)
... 
"tlp","group","lasttime","indicator","count","confidence","tags","description","rdata","provider"
"amber","everyone","","example.com","1","","phishing","","",""
Clone this wiki locally