{"id":21346399,"url":"https://github.com/thehive-project/cortex-analyzers","last_synced_at":"2026-03-02T10:05:59.493Z","repository":{"id":37405762,"uuid":"78535576","full_name":"TheHive-Project/Cortex-Analyzers","owner":"TheHive-Project","description":"Cortex Analyzers Repository","archived":false,"fork":false,"pushed_at":"2026-02-27T10:11:42.000Z","size":215066,"stargazers_count":476,"open_issues_count":135,"forks_count":392,"subscribers_count":47,"default_branch":"master","last_synced_at":"2026-02-27T15:55:45.144Z","etag":null,"topics":["analyzer","cortex","cyber-threat-intelligence","dfir","digital-forensics","enrichment","free","free-software","incident-response","ioc","json","observable","open-source","python","thehive"],"latest_commit_sha":null,"homepage":"https://TheHive-Project.github.io/Cortex-Analyzers/","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"agpl-3.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/TheHive-Project.png","metadata":{"files":{"readme":"README.md","changelog":"CHANGELOG.md","contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":"code_of_conduct.md","threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":"SECURITY.md","support":null,"governance":null,"roadmap":null,"authors":"AUTHORS","dei":null,"publiccode":null,"codemeta":null,"zenodo":null,"notice":null,"maintainers":null,"copyright":null,"agents":null,"dco":null,"cla":null}},"created_at":"2017-01-10T13:23:10.000Z","updated_at":"2026-02-27T10:01:17.000Z","dependencies_parsed_at":"2023-02-17T04:16:17.702Z","dependency_job_id":"3d3a0c50-62e2-4b97-adcf-ba58a96844da","html_url":"https://github.com/TheHive-Project/Cortex-Analyzers","commit_stats":{"total_commits":2140,"total_committers":188,"mean_commits":"11.382978723404255","dds":0.7345794392523364,"last_synced_commit":"d7a0609c49928f7bb0e0d3b703b075dde0e57b3e"},"previous_names":[],"tags_count":163,"template":false,"template_full_name":null,"purl":"pkg:github/TheHive-Project/Cortex-Analyzers","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/TheHive-Project%2FCortex-Analyzers","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/TheHive-Project%2FCortex-Analyzers/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/TheHive-Project%2FCortex-Analyzers/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/TheHive-Project%2FCortex-Analyzers/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/TheHive-Project","download_url":"https://codeload.github.com/TheHive-Project/Cortex-Analyzers/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/TheHive-Project%2FCortex-Analyzers/sbom","scorecard":{"id":140117,"data":{"date":"2025-08-11","repo":{"name":"github.com/TheHive-Project/Cortex-Analyzers","commit":"6489a546c8d338dc938df060074edf9dd397202f"},"scorecard":{"version":"v5.2.1-40-gf6ed084d","commit":"f6ed084d17c9236477efd66e5b258b9d4cc7b389"},"score":4.1,"checks":[{"name":"Maintained","score":10,"reason":"30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10","details":null,"documentation":{"short":"Determines if the project is \"actively maintained\".","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#maintained"}},{"name":"Security-Policy","score":10,"reason":"security policy file detected","details":["Info: security policy file detected: SECURITY.md:1","Info: Found linked content: SECURITY.md:1","Info: Found disclosure, vulnerability, and/or timelines in security policy: SECURITY.md:1","Info: Found text in security policy: SECURITY.md:1"],"documentation":{"short":"Determines if the project has published a security policy.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#security-policy"}},{"name":"Code-Review","score":0,"reason":"Found 1/17 approved changesets -- score normalized to 0","details":null,"documentation":{"short":"Determines if the project requires human code review before pull requests (aka merge requests) are merged.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#code-review"}},{"name":"CII-Best-Practices","score":0,"reason":"no effort to earn an OpenSSF best practices badge detected","details":null,"documentation":{"short":"Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#cii-best-practices"}},{"name":"Token-Permissions","score":0,"reason":"detected GitHub workflow tokens with excessive permissions","details":["Warn: no topLevel permission defined: .github/workflows/build.yml:1","Info: no jobLevel write permissions found"],"documentation":{"short":"Determines if the project's workflows follow the principle of least privilege.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#token-permissions"}},{"name":"Dangerous-Workflow","score":10,"reason":"no dangerous workflow patterns detected","details":null,"documentation":{"short":"Determines if the project's GitHub Action workflows avoid dangerous patterns.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#dangerous-workflow"}},{"name":"Binary-Artifacts","score":10,"reason":"no binaries found in the repo","details":null,"documentation":{"short":"Determines if the project has generated executable (binary) artifacts in the source repository.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#binary-artifacts"}},{"name":"License","score":10,"reason":"license file detected","details":["Info: project has a license file: LICENSE:0","Info: FSF or OSI recognized license: GNU Affero General Public License v3.0: LICENSE:0"],"documentation":{"short":"Determines if the project has defined a license.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#license"}},{"name":"Fuzzing","score":0,"reason":"project is not fuzzed","details":["Warn: no fuzzer integrations found"],"documentation":{"short":"Determines if the project uses fuzzing.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#fuzzing"}},{"name":"Branch-Protection","score":0,"reason":"branch protection not enabled on development/release branches","details":["Warn: branch protection not enabled for branch 'master'"],"documentation":{"short":"Determines if the default and release branches are protected with GitHub's branch protection settings.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#branch-protection"}},{"name":"Signed-Releases","score":0,"reason":"Project has not signed or included provenance with any releases.","details":["Warn: release artifact 3.5.23 not signed: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/239343408","Warn: release artifact 3.5.22 not signed: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/236832180","Warn: release artifact 3.5.21 not signed: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/236213097","Warn: release artifact 3.5.20 not signed: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/235579806","Warn: release artifact 3.5.19 not signed: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/234790791","Warn: release artifact 3.5.23 does not have provenance: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/239343408","Warn: release artifact 3.5.22 does not have provenance: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/236832180","Warn: release artifact 3.5.21 does not have provenance: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/236213097","Warn: release artifact 3.5.20 does not have provenance: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/235579806","Warn: release artifact 3.5.19 does not have provenance: https://api.github.com/repos/TheHive-Project/Cortex-Analyzers/releases/234790791"],"documentation":{"short":"Determines if the project cryptographically signs release artifacts.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#signed-releases"}},{"name":"Packaging","score":10,"reason":"packaging workflow detected","details":["Info: Project packages its releases by way of GitHub Actions.: .github/workflows/build.yml:484"],"documentation":{"short":"Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#packaging"}},{"name":"SAST","score":0,"reason":"SAST tool is not run on all commits -- score normalized to 0","details":["Warn: 0 commits out of 18 are checked with a SAST tool"],"documentation":{"short":"Determines if the project uses static code analysis.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#sast"}},{"name":"Pinned-Dependencies","score":0,"reason":"dependency not pinned by hash detected -- score normalized to 0","details":["Info: Possibly incomplete results: error parsing shell code: / must follow an expression: utils/compile-manalyze.sh:0","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:23: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:86: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:91: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:94: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:97: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:251: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:494: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:499: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:502: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:505: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:661: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:903: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:930: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:942: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:961: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:963: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/build.yml:967: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: third-party GitHubAction not pinned by hash: .github/workflows/build.yml:988: update your workflow using https://app.stepsecurity.io/secureworkflow/TheHive-Project/Cortex-Analyzers/build.yml/master?enable=pin","Warn: containerImage not pinned by hash: analyzers/CERTatPassiveDNS/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/Capa/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/ClamAV/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/EmlParser/Dockerfile:15: pin your Docker image by updating python:3-slim to python:3-slim@sha256:6f79e7a10bb7d0b0a50534a70ebc78823f941fba26143ecd7e6c5dca9d7d7e8a","Warn: containerImage not pinned by hash: analyzers/FileInfo/Dockerfile:1: pin your Docker image by updating python:3.9 to python:3.9@sha256:754dbbaf5fe730bb2460efb3300293c62c222f74fbf8534ed23691c617c9609b","Warn: containerImage not pinned by hash: analyzers/Hippocampe/Dockerfile:1: pin your Docker image by updating python:2 to python:2@sha256:cfa62318c459b1fde9e0841c619906d15ada5910d625176e24bf692cf8a2601d","Warn: containerImage not pinned by hash: analyzers/Jupyter_Analyzer/Dockerfile:2: pin your Docker image by updating python:3.9 to python:3.9@sha256:754dbbaf5fe730bb2460efb3300293c62c222f74fbf8534ed23691c617c9609b","Warn: containerImage not pinned by hash: analyzers/Malpedia/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/MalwareClustering/Dockerfile:1: pin your Docker image by updating python:3-slim to python:3-slim@sha256:6f79e7a10bb7d0b0a50534a70ebc78823f941fba26143ecd7e6c5dca9d7d7e8a","Warn: containerImage not pinned by hash: analyzers/OpenCTI/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/QrDecode/Dockerfile:1: pin your Docker image by updating python:3-slim to python:3-slim@sha256:6f79e7a10bb7d0b0a50534a70ebc78823f941fba26143ecd7e6c5dca9d7d7e8a","Warn: containerImage not pinned by hash: analyzers/VirusTotal/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/Yara/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: analyzers/Yeti/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: responders/Gmail/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: responders/Jupyter_Responder/Dockerfile:1: pin your Docker image by updating python:3-slim to python:3-slim@sha256:6f79e7a10bb7d0b0a50534a70ebc78823f941fba26143ecd7e6c5dca9d7d7e8a","Warn: containerImage not pinned by hash: responders/MSDefenderOffice365/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: responders/MailIncidentStatus/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: containerImage not pinned by hash: responders/Velociraptor/Dockerfile:2: pin your Docker image by updating python:3-slim to python:3-slim@sha256:6f79e7a10bb7d0b0a50534a70ebc78823f941fba26143ecd7e6c5dca9d7d7e8a","Warn: containerImage not pinned by hash: responders/VirustotalDownloader/Dockerfile:1: pin your Docker image by updating python:3-alpine to python:3-alpine@sha256:f196fd275fdad7287ccb4b0a85c2e402bb8c794d205cf6158909041c1ee9f38d","Warn: pipCommand not pinned by hash: analyzers/CERTatPassiveDNS/Dockerfile:7","Warn: pipCommand not pinned by hash: analyzers/Capa/Dockerfile:12","Warn: pipCommand not pinned by hash: analyzers/ClamAV/Dockerfile:7","Warn: pipCommand not pinned by hash: analyzers/EmlParser/Dockerfile:20","Warn: pipCommand not pinned by hash: analyzers/FileInfo/Dockerfile:13-19","Warn: pipCommand not pinned by hash: analyzers/FileInfo/Dockerfile:23","Warn: pipCommand not pinned by hash: analyzers/Hippocampe/Dockerfile:5","Warn: pipCommand not pinned by hash: analyzers/Jupyter_Analyzer/Dockerfile:5","Warn: pipCommand not pinned by hash: analyzers/Jupyter_Analyzer/Dockerfile:7","Warn: pipCommand not pinned by hash: analyzers/Malpedia/Dockerfile:11","Warn: pipCommand not pinned by hash: analyzers/MalwareClustering/Dockerfile:13","Warn: pipCommand not pinned by hash: analyzers/OpenCTI/Dockerfile:8","Warn: pipCommand not pinned by hash: analyzers/QrDecode/Dockerfile:4","Warn: pipCommand not pinned by hash: analyzers/VirusTotal/Dockerfile:11","Warn: pipCommand not pinned by hash: analyzers/Yara/Dockerfile:11","Warn: pipCommand not pinned by hash: analyzers/Yeti/Dockerfile:7","Warn: pipCommand not pinned by hash: responders/Gmail/Dockerfile:8","Warn: pipCommand not pinned by hash: responders/Jupyter_Responder/Dockerfile:4","Warn: pipCommand not pinned by hash: responders/MSDefenderOffice365/Dockerfile:45","Warn: pipCommand not pinned by hash: responders/MailIncidentStatus/Dockerfile:11","Warn: pipCommand not pinned by hash: responders/Velociraptor/Dockerfile:16","Warn: pipCommand not pinned by hash: responders/VirustotalDownloader/Dockerfile:11","Warn: pipCommand not pinned by hash: utils/docker/Dockerfile_template:22","Warn: pipCommand not pinned by hash: utils/test_doc/testdoc-venv.sh:40","Warn: pipCommand not pinned by hash: utils/test_doc/testdoc-venv.sh:45","Warn: pipCommand not pinned by hash: .github/workflows/build.yml:973","Info:   0 out of   7 GitHub-owned GitHubAction dependencies pinned","Info:   0 out of  11 third-party GitHubAction dependencies pinned","Info:   0 out of  26 pipCommand dependencies pinned","Info:   0 out of  20 containerImage dependencies pinned"],"documentation":{"short":"Determines if the project has declared and pinned the dependencies of its build process.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#pinned-dependencies"}},{"name":"Vulnerabilities","score":0,"reason":"111 existing vulnerabilities detected","details":["Warn: Project is vulnerable to: PYSEC-2014-14 / GHSA-652x-xj99-gmcc","Warn: Project is vulnerable to: GHSA-9hjg-9r4m-mvj7","Warn: Project is vulnerable to: GHSA-9wx4-h78v-vm56","Warn: Project is vulnerable to: PYSEC-2014-13 / GHSA-cfj3-7x9c-4p3h","Warn: Project is vulnerable to: PYSEC-2018-28 / GHSA-x84v-xcm2-53pg","Warn: Project is vulnerable to: PYSEC-2022-42991 / GHSA-v3c5-jqr6-7qm8","Warn: Project is vulnerable to: PYSEC-2013-22 / GHSA-27x4-j476-jp5f","Warn: Project is vulnerable to: PYSEC-2025-49 / GHSA-5rjg-fvgr-3xxf","Warn: Project is vulnerable to: GHSA-cx63-2mw6-8hw5","Warn: Project is vulnerable to: PYSEC-2022-43012 / GHSA-r9hx-vwmv-q579","Warn: Project is vulnerable to: GHSA-3rq5-2g8h-59hc","Warn: Project is vulnerable to: GHSA-3c5c-7235-994j","Warn: Project is vulnerable to: GHSA-3f63-hfp8-52jq","Warn: Project is vulnerable to: PYSEC-2021-41 / GHSA-3wvg-mj6g-m9cv","Warn: Project is vulnerable to: PYSEC-2020-77 / GHSA-3xv8-3j54-hgrp","Warn: Project is vulnerable to: PYSEC-2020-80 / GHSA-43fq-w8qq-v88h","Warn: Project is vulnerable to: GHSA-44wm-f244-xhp3","Warn: Project is vulnerable to: GHSA-4fx9-vc88-q2xc","Warn: Project is vulnerable to: PYSEC-2021-35 / GHSA-57h3-9rgr-c24m","Warn: Project is vulnerable to: PYSEC-2020-172 / GHSA-5gm3-px64-rw72","Warn: Project is vulnerable to: PYSEC-2021-331 / GHSA-7534-mm45-c74v","Warn: Project is vulnerable to: PYSEC-2021-92 / GHSA-7r7m-5h27-29hp","Warn: Project is vulnerable to: PYSEC-2020-78 / GHSA-8843-m7mw-mxqm","Warn: Project is vulnerable to: PYSEC-2023-227 / GHSA-8ghj-p4vj-mr35","Warn: Project is vulnerable to: PYSEC-2014-87 / GHSA-8m9x-pxwq-j236","Warn: Project is vulnerable to: PYSEC-2022-10 / GHSA-8vj2-vxx3-667w","Warn: Project is vulnerable to: PYSEC-2021-36 / GHSA-8xjq-8fcg-g5hw","Warn: Project is vulnerable to: PYSEC-2016-6 / GHSA-8xjv-v9xq-m5h9","Warn: Project is vulnerable to: PYSEC-2021-42 / GHSA-95q3-8gr9-gm8w","Warn: Project is vulnerable to: PYSEC-2022-168 / GHSA-9j59-75qj-795w","Warn: Project is vulnerable to: PYSEC-2014-10 / GHSA-cfmr-38g9-f2h7","Warn: Project is vulnerable to: PYSEC-2020-76 / GHSA-cqhg-xjhh-p8hf","Warn: Project is vulnerable to: PYSEC-2021-40 / GHSA-f4w8-cv6p-x6r5","Warn: Project is vulnerable to: PYSEC-2021-69 / GHSA-f5g8-5qq7-938w","Warn: Project is vulnerable to: PYSEC-2021-139 / GHSA-g6rj-rv7j-xwp4","Warn: Project is vulnerable to: PYSEC-2015-16 / GHSA-h5rf-vgqx-wjv2","Warn: Project is vulnerable to: PYSEC-2016-5 / GHSA-hggx-3h72-49ww","Warn: Project is vulnerable to: PYSEC-2020-84 / GHSA-hj69-c76v-86wr","Warn: Project is vulnerable to: PYSEC-2016-7 / GHSA-hvr8-466p-75rh","Warn: Project is vulnerable to: PYSEC-2015-15 / GHSA-j6f7-g425-4gmx","Warn: Project is vulnerable to: GHSA-j7hp-h8jx-5ppr","Warn: Project is vulnerable to: PYSEC-2019-110 / GHSA-j7mj-748x-7p78","Warn: Project is vulnerable to: GHSA-jgpv-4h4c-xhw3","Warn: Project is vulnerable to: PYSEC-2022-42979 / GHSA-m2vv-5vj5-2hm7","Warn: Project is vulnerable to: PYSEC-2021-37 / GHSA-mvg9-xffr-p774","Warn: Project is vulnerable to: PYSEC-2020-83 / GHSA-p49h-hjvm-jg3h","Warn: Project is vulnerable to: PYSEC-2022-8 / GHSA-pw3c-h7wp-cvhx","Warn: Project is vulnerable to: PYSEC-2021-93 / GHSA-q5hq-fp76-qmrc","Warn: Project is vulnerable to: PYSEC-2020-82 / GHSA-r7rm-8j6h-r933","Warn: Project is vulnerable to: PYSEC-2014-23 / GHSA-r854-96gq-rfg3","Warn: Project is vulnerable to: PYSEC-2016-8 / GHSA-rwr3-c2q8-gm56","Warn: Project is vulnerable to: PYSEC-2020-81 / GHSA-vcqg-3p29-xw73","Warn: Project is vulnerable to: PYSEC-2020-79 / GHSA-vj42-xq3r-hr3r","Warn: Project is vulnerable to: PYSEC-2021-70 / GHSA-vqcj-wrf2-7v73","Warn: Project is vulnerable to: PYSEC-2016-9 / GHSA-w4vg-rf63-f3j3","Warn: Project is vulnerable to: PYSEC-2014-22 / GHSA-x895-2wrm-hvp7","Warn: Project is vulnerable to: PYSEC-2022-9 / GHSA-xrcv-f9gm-v42c","Warn: Project is vulnerable to: PYSEC-2021-137","Warn: Project is vulnerable to: PYSEC-2021-138","Warn: Project is vulnerable to: PYSEC-2021-317","Warn: Project is vulnerable to: PYSEC-2021-38","Warn: Project is vulnerable to: PYSEC-2021-39","Warn: Project is vulnerable to: PYSEC-2021-94","Warn: Project is vulnerable to: PYSEC-2023-175","Warn: Project is vulnerable to: GHSA-34jh-p97f-mpxf","Warn: Project is vulnerable to: PYSEC-2023-212 / GHSA-g4mx-q9vg-27p4","Warn: Project is vulnerable to: PYSEC-2023-207 / GHSA-gwvm-45gx-3cf8","Warn: Project is vulnerable to: PYSEC-2019-133 / GHSA-mh33-7rrq-662w","Warn: Project is vulnerable to: GHSA-pq67-6m6q-mj2v","Warn: Project is vulnerable to: PYSEC-2019-132 / GHSA-r64q-w8jr-g9qp","Warn: Project is vulnerable to: PYSEC-2023-192 / GHSA-v845-jxx5-vc9f","Warn: Project is vulnerable to: PYSEC-2020-148 / GHSA-wqvq-5m8c-6g24","Warn: Project is vulnerable to: PYSEC-2018-32 / GHSA-www2-v7xj-xrc6","Warn: Project is vulnerable to: PYSEC-2021-108 / GHSA-q2q7-5pp4-w6pg","Warn: Project is vulnerable to: PYSEC-2024-48 / GHSA-fj7x-q9j7-g6q6","Warn: Project is vulnerable to: GHSA-29gw-9793-fvw7","Warn: Project is vulnerable to: PYSEC-2015-24 / GHSA-4vwq-x64q-j4cj","Warn: Project is vulnerable to: PYSEC-2017-46 / GHSA-66gw-5xpf-gfp5","Warn: Project is vulnerable to: PYSEC-2015-25 / GHSA-92mr-v722-f48m","Warn: Project is vulnerable to: PYSEC-2022-12 / GHSA-pq7m-3gw7-gq5x","Warn: Project is vulnerable to: PYSEC-2017-47","Warn: Project is vulnerable to: PYSEC-2022-249 / GHSA-9jmq-rx5f-8jwq","Warn: Project is vulnerable to: GHSA-753j-mpmx-qq6g","Warn: Project is vulnerable to: GHSA-7cx3-6m66-7c5m","Warn: Project is vulnerable to: PYSEC-2020-213 / GHSA-8vpw-mgpf-mpvv","Warn: Project is vulnerable to: GHSA-8w49-h785-mj3c","Warn: Project is vulnerable to: PYSEC-2012-5 / GHSA-f7fv-v9rh-prvc","Warn: Project is vulnerable to: PYSEC-2023-75 / GHSA-hj3f-6gcp-jg8j","Warn: Project is vulnerable to: GHSA-qppv-j76h-2rpx","Warn: Project is vulnerable to: GHSA-w235-7p84-xx57","Warn: Project is vulnerable to: PYSEC-2019-124 / GHSA-38fc-9xqv-7f7q","Warn: Project is vulnerable to: PYSEC-2019-123 / GHSA-887w-45rq-vxgf","Warn: Project is vulnerable to: PYSEC-2012-9 / GHSA-hfg2-wf6j-x53p","Warn: Project is vulnerable to: PYSEC-2017-24 / GHSA-r9jw-mwhq-wp62","Warn: Project is vulnerable to: PYSEC-2019-203 / GHSA-f58w-649r-qjr9","Warn: Project is vulnerable to: GHSA-9772-cwx9-r4cj","Warn: Project is vulnerable to: GHSA-jjg7-2v4v-x38h","Warn: Project is vulnerable to: PYSEC-2021-59 / GHSA-5phf-pp7p-vc2r","Warn: Project is vulnerable to: PYSEC-2019-217 / GHSA-462w-v97r-4m45","Warn: Project is vulnerable to: PYSEC-2014-8 / GHSA-8r7q-cvjq-x353","Warn: Project is vulnerable to: GHSA-cpwx-vrp4-4pq7","Warn: Project is vulnerable to: PYSEC-2014-82 / GHSA-fqh9-2qgg-h84h","Warn: Project is vulnerable to: PYSEC-2021-66 / GHSA-g3rq-g295-4j3m","Warn: Project is vulnerable to: GHSA-h5c8-rqwp-cp95","Warn: Project is vulnerable to: GHSA-h75v-3vvj-5mfj","Warn: Project is vulnerable to: PYSEC-2019-220 / GHSA-hj2j-77xm-mc5v","Warn: Project is vulnerable to: GHSA-q2x7-8rv6-6q7h","Warn: Project is vulnerable to: GHSA-3ww4-gg4f-jr7f","Warn: Project is vulnerable to: GHSA-9v9h-cgj8-h64p","Warn: Project is vulnerable to: PYSEC-2021-62 / GHSA-hggm-jpg3-v476","Warn: Project is vulnerable to: PYSEC-2017-8 / GHSA-q3cj-2r34-2cwc"],"documentation":{"short":"Determines if the project has open, known unfixed vulnerabilities.","url":"https://github.com/ossf/scorecard/blob/f6ed084d17c9236477efd66e5b258b9d4cc7b389/docs/checks.md#vulnerabilities"}}]},"last_synced_at":"2025-08-16T07:48:07.867Z","repository_id":37405762,"created_at":"2025-08-16T07:48:07.867Z","updated_at":"2025-08-16T07:48:07.867Z"},"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":29998151,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-03-02T09:59:02.300Z","status":"ssl_error","status_checked_at":"2026-03-02T09:59:02.001Z","response_time":60,"last_error":"SSL_read: unexpected eof while reading","robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":false,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["analyzer","cortex","cyber-threat-intelligence","dfir","digital-forensics","enrichment","free","free-software","incident-response","ioc","json","observable","open-source","python","thehive"],"created_at":"2024-11-22T02:08:30.712Z","updated_at":"2026-03-02T10:05:59.424Z","avatar_url":"https://github.com/TheHive-Project.png","language":"Python","readme":"The following repository is used by [TheHive Project](https://thehive-project.org)\nto develop and store [Cortex](https://github.com/TheHive-Project/Cortex/blob/master/README.md)\nanalyzers \u0026 responders.\n\n![](images/cortex-ui.png)\n\nAnalyzers can be written in any programming language supported by Linux such \nas Python, Ruby, Perl, etc. Refer to the [How to Write and Submit an Analyzer](https://thehive-project.github.io/Cortex-Analyzers/dev_guides/how-to-create-an-analyzer/)\npage for details on how to write and submit one.\n\nTo configure analyzers and responders, please refer to the detailed  [documentation](https://thehive-project.github.io/Cortex-Analyzers/).\n\n\n# License\n\n**Unless specified otherwise**, analyzers are released under the [AGPL](https://github.com/TheHive-Project/Cortex-analyzers/blob/master/LICENSE) (Affero General Public License).\n\nIf an analyzer is released by its author under a different license, the subfolder corresponding to it will contain a *LICENSE* file.\n\n\n# Updates\n\nInformation, news and updates are regularly posted on [TheHive Project Twitter account](https://twitter.com/thehive_project), [StrangeBee Twitter account](https://twitter.com/strangebee) and on [the blog](https://blog.strangebee.com/).\n\n# Contributing\n\nWe welcome your **[contributions for new analyzers](https://thehive-project.github.io/Cortex-Analyzers/dev_guides/how-to-create-an-analyzer/)**\nthat can take away the load off overworked fellow analysts or improvements to existing ones. Please feel free to fork the code, play with it, make some patches and send us pull requests using [issues](https://github.com/TheHive-Project/Cortex-analyzers/issues).\n\n**Important**: To make it easy for every one, please send **one** pull request per analyzer. It will help us reviewing the code, and merging as soon as feasible.\n\nWe do have a [Code of conduct](code_of_conduct.md). Make sure to check it out before contributing.\n\n# Security\n\nSee the [dedicated page](./SECURITY.md).\n\n# Support\n\nif you encounter an issue with an analyzer or would like to request a new one or an improvement to an existing analyzer, please open an issue on the [analyzers' dedicated GitHub repository](https://github.com/TheHive-Project/Cortex-Analyzers/issues/new).\n\nAlternatively, if you need to contact the project team, send an email to \u003csupport@thehive-project.org\u003e.\n\n\n# Community Discussions\n\nWe have set up a Google forum at \u003chttps://groups.google.com/a/thehive-project.org/d/forum/users\u003e. To request access, you need a Google account. You may create one [using a Gmail address](https://accounts.google.com/SignUp?hl=en) or [without one](https://accounts.google.com/SignUpWithoutGmail?hl=en).\n\nAlternatively, you can join the community on [Discord](https://chat.thehive-project.org).\n\n\n# Website\n\n\u003chttps://www.strangebee.com/\u003e\n","funding_links":[],"categories":[],"sub_categories":[],"project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fthehive-project%2Fcortex-analyzers","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fthehive-project%2Fcortex-analyzers","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fthehive-project%2Fcortex-analyzers/lists"}