OpenIOC Editor that is not the Mandiant IOC Editor for Windows

722 views
Skip to first unread message

Douglas Wilson

unread,
Oct 3, 2013, 5:31:58 PM10/3/13
to ope...@googlegroups.com
So, I saw some discussion on Twitter following the last blog post, about people wanting an IOC Editor that is not the Windows based one that Mandiant supplies.

I myself am on a Mac, and usually run the IOC Editor in a VM, since the Windows one is our reference version. However, there have been some partially completed projects out there to do non-windows versions.

Is anyone working on a non-Windows editor? If so, where are you at with it? If someone was able to release some code that was not up to date (but had the guts there), would anyone be interested in running with that? 

Thoughts?

Doug

Matt Jezorek

unread,
Oct 3, 2013, 5:40:37 PM10/3/13
to ope...@googlegroups.com
I was apart of those conversations and we are working on a cross platform type solution for editing of OpenIOC documents. I can see this as a big part of getting adoption. As far as source that was no up to date but had the guts, that would be interesting to me.

vil...@evilthings.org

unread,
Oct 4, 2013, 1:47:41 AM10/4/13
to ope...@googlegroups.com

i was also part of that discussion. the team i'm in is all linux or osx which has generally stopped our adoption of using ioc's in our intelligence operations. i agree with matt, and see a cross platform solution being a driving factor behind adoption on a larger scale
Reply all
Reply to author
Forward
0 new messages