示例#1
0
    mtg_entities = node.findall('.//{%s}MaltegoEntity' % NS_MTG)
    for entity in mtg_entities:
        try:
            new_entity = convert_entity[entity.attrib["type"]](entity)
            if new_entity is not None:
                misp_entities.append(new_entity)
        except:
            pass


misp = MISPServer(MISP_URL, API_KEY)
today = date.today().strftime("%Y-%m-%d")

misp_event = E.Event(
    E.id(),
    E.org(ORG),
    E.date(today),
    E.threat_level_id("4"),
    E.info("Imported graph elements from maltego"),
    E.published("0"),
    E.uuid(),
    E.attribute_count(str(len(misp_entities))),
    E.analysis("0"),
    E.timestamp(str(time.time())),
    E.distribution("0"),
    E.proposal_email_lock("0"),
    E.orgc(ORG),
    E.locked("0"),
    E.publish_timestamp(),
    E.ShadowAttribute(),
    E.RelatedEvent()