Elastic, Logstash and Kibana tools used to detect threat in the environment and we will use IntelMQ to obtain data from various sources and feed into ELK
Posts for: #Blue Team
shadow server api
Lets try to use the shadow server api and pull data from there
IntelMQ and other component installation
We will install IntelMQ, IntelMQ API and IntelMQ Manager