Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Threat level/severity code inverted between The Hive and MISP #292

Closed
gilles-m opened this issue Aug 25, 2017 · 0 comments
Closed

Threat level/severity code inverted between The Hive and MISP #292

gilles-m opened this issue Aug 25, 2017 · 0 comments
Assignees
Milestone

Comments

@gilles-m
Copy link

Threat level/severity code inverted between The Hive and MISP

Request Type

Bug

Work Environment

Question Answer
OS version (server) Debian Strech
TheHive version / git hash 2.12.1 / commit 8300fcc
Package Type Docker, Build from source

Problem Description

An event with a high threat level in MISP is imported into The Hive Project as alert with low severity

Steps to Reproduce

Import Event From MISP and compare fields.

Possible Solutions

Maybe change values in Constants.js file but I don't know the impact

Complementary information

When I compare these two codes, we see that the classification is reversed :
[TheHive] https://github.com/CERT-BDF/TheHive/blob/9c5c12b2f0dd17a6f47ecb5e8004b21a964726ba/ui/app/scripts/services/Constants.js
[MISP] https://github.com/MISP/MISP/blob/90c28602c31d88f576f3d676c31d439ad3e58e68/app/Test/Fixture/ThreatLevelFixture.php

@To-om To-om self-assigned this Aug 25, 2017
@To-om To-om added this to the 2.13.0 milestone Aug 25, 2017
@To-om To-om closed this as completed Aug 28, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants