Skip to content

Commit 2acdc99

Browse files
chore: update feeds 2026-04-03
1 parent b70ecfa commit 2acdc99

11 files changed

Lines changed: 13632 additions & 13632 deletions

feeds/elastic_threat_intel.ndjson

Lines changed: 1416 additions & 1416 deletions
Large diffs are not rendered by default.

feeds/extsentry_feed.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"feed_name": "ExtSentry - Browser Extension Threat Intelligence",
33
"feed_version": "1.0",
4-
"generated": "2026-04-02T23:04:23Z",
4+
"generated": "2026-04-03T00:04:14Z",
55
"source": "https://github.com/mthcht/awesome-lists",
66
"license": "TLP:CLEAR",
77
"total_indicators": 1416,

feeds/extsentry_ioc_feed.csv

Lines changed: 1416 additions & 1416 deletions
Large diffs are not rendered by default.

feeds/misp_event.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,8 +4,8 @@
44
"threat_level_id": "2",
55
"analysis": "2",
66
"distribution": "3",
7-
"date": "2026-04-02",
8-
"timestamp": "1775171063",
7+
"date": "2026-04-03",
8+
"timestamp": "1775174654",
99
"published": false,
1010
"uuid": "41ef2090-fab5-547e-9eb6-2aa8f195c66f",
1111
"Orgc": {

feeds/misp_warninglist.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
{
22
"name": "ExtSentry - Known Malicious/Suspicious Browser Extension IDs",
3-
"version": 20260402,
3+
"version": 20260403,
44
"description": "List of known malicious, suspicious, and potentially unwanted browser extension IDs. Maintained by mthcht.",
55
"type": "string",
66
"matching_attributes": [

feeds/opencti_import.csv

Lines changed: 1416 additions & 1416 deletions
Large diffs are not rendered by default.

feeds/openioc_browser_extensions.ioc

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
<?xml version="1.0" ?>
2-
<ioc xmlns="http://schemas.mandiant.com/2010/ioc" id="3678fd2f-03b8-5532-a002-c96e7c7abd1e" last-modified="2026-04-02T23:04:23Z">
2+
<ioc xmlns="http://schemas.mandiant.com/2010/ioc" id="3678fd2f-03b8-5532-a002-c96e7c7abd1e" last-modified="2026-04-03T00:04:14Z">
33
<short_description>ExtSentry - Malicious Browser Extension IOCs</short_description>
44
<description>Browser extension IDs flagged as malicious/suspicious. Matches extension IDs in file paths and registry entries. Source: github.com/mthcht/awesome-lists</description>
5-
<authored_date>2026-04-02T23:04:23Z</authored_date>
5+
<authored_date>2026-04-03T00:04:14Z</authored_date>
66
<definition>
77
<Indicator operator="OR" id="5fd27988-48b0-53ea-88c2-7e57099fd433">
88
<IndicatorItem id="b8fd3c8e-90fe-5b23-86f8-c4207f36b674" condition="contains">

feeds/sentinel_analytics_rule.kql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
// ExtSentry - Browser Extension Threat Detection for Microsoft Sentinel
22
// Source: https://github.com/mthcht/awesome-lists
3-
// Generated: 2026-04-02T23:04:23Z
3+
// Generated: 2026-04-03T00:04:14Z
44
// Total extension IDs: 1416 in 8 chunks
55
//
66
// RECOMMENDATION: For production, import the IOC list as a Sentinel Watchlist

feeds/sigma_rules_browser_extensions.yml

Lines changed: 28 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -8,8 +8,8 @@ description: |
88
references:
99
- https://github.com/mthcht/awesome-lists
1010
author: ExtSentry / mthcht
11-
date: 2026-04-02
12-
modified: 2026-04-02
11+
date: 2026-04-03
12+
modified: 2026-04-03
1313
tags:
1414
- attack.persistence
1515
- attack.t1176
@@ -1451,8 +1451,8 @@ description: |
14511451
references:
14521452
- https://github.com/mthcht/awesome-lists
14531453
author: ExtSentry / mthcht
1454-
date: 2026-04-02
1455-
modified: 2026-04-02
1454+
date: 2026-04-03
1455+
modified: 2026-04-03
14561456
tags:
14571457
- attack.persistence
14581458
- attack.t1176
@@ -2893,8 +2893,8 @@ description: |
28932893
references:
28942894
- https://github.com/mthcht/awesome-lists
28952895
author: ExtSentry / mthcht
2896-
date: 2026-04-02
2897-
modified: 2026-04-02
2896+
date: 2026-04-03
2897+
modified: 2026-04-03
28982898
tags:
28992899
- attack.persistence
29002900
- attack.t1176
@@ -4332,8 +4332,8 @@ description: Detects browser extensions categorized as 'PUP' in the ExtSentry fe
43324332
references:
43334333
- https://github.com/mthcht/awesome-lists
43344334
author: ExtSentry / mthcht
4335-
date: 2026-04-02
4336-
modified: 2026-04-02
4335+
date: 2026-04-03
4336+
modified: 2026-04-03
43374337
tags:
43384338
- attack.persistence
43394339
- attack.t1176
@@ -4359,8 +4359,8 @@ description: Detects browser extensions categorized as 'malware' in the ExtSentr
43594359
references:
43604360
- https://github.com/mthcht/awesome-lists
43614361
author: ExtSentry / mthcht
4362-
date: 2026-04-02
4363-
modified: 2026-04-02
4362+
date: 2026-04-03
4363+
modified: 2026-04-03
43644364
tags:
43654365
- attack.persistence
43664366
- attack.t1176
@@ -5560,8 +5560,8 @@ description: Detects browser extensions categorized as 'compromised' in the ExtS
55605560
references:
55615561
- https://github.com/mthcht/awesome-lists
55625562
author: ExtSentry / mthcht
5563-
date: 2026-04-02
5564-
modified: 2026-04-02
5563+
date: 2026-04-03
5564+
modified: 2026-04-03
55655565
tags:
55665566
- attack.persistence
55675567
- attack.t1176
@@ -5677,8 +5677,8 @@ description: Detects browser extensions categorized as 'cryptocurrency' in the E
56775677
references:
56785678
- https://github.com/mthcht/awesome-lists
56795679
author: ExtSentry / mthcht
5680-
date: 2026-04-02
5681-
modified: 2026-04-02
5680+
date: 2026-04-03
5681+
modified: 2026-04-03
56825682
tags:
56835683
- attack.persistence
56845684
- attack.t1176
@@ -5817,8 +5817,8 @@ description: Detects browser extensions categorized as 'Credential Access' in th
58175817
references:
58185818
- https://github.com/mthcht/awesome-lists
58195819
author: ExtSentry / mthcht
5820-
date: 2026-04-02
5821-
modified: 2026-04-02
5820+
date: 2026-04-03
5821+
modified: 2026-04-03
58225822
tags:
58235823
- attack.persistence
58245824
- attack.t1176
@@ -5842,8 +5842,8 @@ description: Detects browser extensions categorized as 'Defense Evasion' in the
58425842
references:
58435843
- https://github.com/mthcht/awesome-lists
58445844
author: ExtSentry / mthcht
5845-
date: 2026-04-02
5846-
modified: 2026-04-02
5845+
date: 2026-04-03
5846+
modified: 2026-04-03
58475847
tags:
58485848
- attack.persistence
58495849
- attack.t1176
@@ -5866,8 +5866,8 @@ description: Detects browser extensions categorized as 'scam' in the ExtSentry f
58665866
references:
58675867
- https://github.com/mthcht/awesome-lists
58685868
author: ExtSentry / mthcht
5869-
date: 2026-04-02
5870-
modified: 2026-04-02
5869+
date: 2026-04-03
5870+
modified: 2026-04-03
58715871
tags:
58725872
- attack.persistence
58735873
- attack.t1176
@@ -5894,8 +5894,8 @@ description: Detects browser extensions categorized as 'RMM' in the ExtSentry fe
58945894
references:
58955895
- https://github.com/mthcht/awesome-lists
58965896
author: ExtSentry / mthcht
5897-
date: 2026-04-02
5898-
modified: 2026-04-02
5897+
date: 2026-04-03
5898+
modified: 2026-04-03
58995899
tags:
59005900
- attack.persistence
59015901
- attack.t1176
@@ -5918,8 +5918,8 @@ description: Detects browser extensions categorized as 'password manager' in the
59185918
references:
59195919
- https://github.com/mthcht/awesome-lists
59205920
author: ExtSentry / mthcht
5921-
date: 2026-04-02
5922-
modified: 2026-04-02
5921+
date: 2026-04-03
5922+
modified: 2026-04-03
59235923
tags:
59245924
- attack.persistence
59255925
- attack.t1176
@@ -5950,8 +5950,8 @@ description: Detects browser extensions categorized as 'PROXY/VPN' in the ExtSen
59505950
references:
59515951
- https://github.com/mthcht/awesome-lists
59525952
author: ExtSentry / mthcht
5953-
date: 2026-04-02
5954-
modified: 2026-04-02
5953+
date: 2026-04-03
5954+
modified: 2026-04-03
59555955
tags:
59565956
- attack.persistence
59575957
- attack.t1176
@@ -5980,8 +5980,8 @@ description: |
59805980
references:
59815981
- https://github.com/mthcht/awesome-lists
59825982
author: ExtSentry
5983-
date: 2026-04-02
5984-
modified: 2026-04-02
5983+
date: 2026-04-03
5984+
modified: 2026-04-03
59855985
tags:
59865986
- attack.persistence
59875987
- attack.t1176

0 commit comments

Comments
 (0)