Skip to content

Repository parsing Tor Nodes information in an ideal format for a CSV mapper in OpenCTI

Notifications You must be signed in to change notification settings

DreadFog/tor_csv_feed_opencti

Repository files navigation

CSV Feed for openCTI with the latest TOR nodes and their ports

Note: nodes are extracted from this url: onionoo.torproject.org

As per the description, "Onionoo is a web-based protocol to learn about currently running Tor relays and bridges."

These CSV files contain the following information for each node:

fingerprint,ipaddr,port,stix_pattern
(and then label_name,label_color,marking_type,marking_value,marking_priority for the CSV mapper)

To use it in OpenCTI, create the following CSV mapper (IPV4 example): image image image image image image image image

Note: You can add the label and the marking as attributes of any object or relationship

Then, create a CSV feed: image

About

Repository parsing Tor Nodes information in an ideal format for a CSV mapper in OpenCTI

Resources

Stars

Watchers

Forks

Contributors 2

  •  
  •  

Languages