From 0ac8e76c27edb5c1256b0d6a0f861d5406cde9bb Mon Sep 17 00:00:00 2001 From: mrozitron Date: Mon, 15 Nov 2021 10:16:44 +0100 Subject: [PATCH 1/2] simulator: add spearphishing, skimmer, alt dns, tor dns simulations --- cmd/run/run.go | 32 ++++++++++++++++++++++++++++++++ 1 file changed, 32 insertions(+) diff --git a/cmd/run/run.go b/cmd/run/run.go index a6534a5..25c974c 100644 --- a/cmd/run/run.go +++ b/cmd/run/run.go @@ -190,6 +190,38 @@ var allModules = []Module{ HeaderMsg: "Preparing a random sample of C2 IP:port pairs", Timeout: 1 * time.Second, }, + Module{ + Module: simulator.CreateModule(wisdom.NewWisdomHosts("spearphishing", wisdom.HostTypeDNS), new(simulator.DNSResolveSimulator)), + Name: "spearphishing", + Pipeline: PipelineDNS, + NumOfHosts: 5, + HeaderMsg: "Preparing a random sample of spear phishing domains", + Timeout: 1 * time.Second, + }, + Module{ + Module: simulator.CreateModule(wisdom.NewWisdomHosts("skimmer", wisdom.HostTypeDNS), new(simulator.DNSResolveSimulator)), + Name: "skimmer", + Pipeline: PipelineDNS, + NumOfHosts: 5, + HeaderMsg: "Preparing a random sample of web skimming domains", + Timeout: 1 * time.Second, + }, + Module{ + Module: simulator.CreateModule(wisdom.NewWisdomHosts("alt_dns", wisdom.HostTypeDNS), new(simulator.DNSResolveSimulator)), + Name: "alt-dns", + Pipeline: PipelineDNS, + NumOfHosts: 5, + HeaderMsg: "Preparing a random sample of alternate DNS root domains", + Timeout: 1 * time.Second, + }, + Module{ + Module: simulator.CreateModule(wisdom.NewWisdomHosts("tor_dns", wisdom.HostTypeDNS), new(simulator.DNSResolveSimulator)), + Name: "tor-dns", + Pipeline: PipelineDNS, + NumOfHosts: 5, + HeaderMsg: "Preparing a random sample of suspicious Tor DNS domains", + Timeout: 1 * time.Second, + }, Module{ Module: simulator.NewDGA(), Name: "dga", From b2d430dd132600effde80f09181ed30f34daad0e Mon Sep 17 00:00:00 2001 From: mrozitron Date: Mon, 15 Nov 2021 14:35:25 +0100 Subject: [PATCH 2/2] simulator: drop alt-dns and tor-dns simulations for now --- cmd/run/run.go | 16 ---------------- 1 file changed, 16 deletions(-) diff --git a/cmd/run/run.go b/cmd/run/run.go index 25c974c..d58b189 100644 --- a/cmd/run/run.go +++ b/cmd/run/run.go @@ -206,22 +206,6 @@ var allModules = []Module{ HeaderMsg: "Preparing a random sample of web skimming domains", Timeout: 1 * time.Second, }, - Module{ - Module: simulator.CreateModule(wisdom.NewWisdomHosts("alt_dns", wisdom.HostTypeDNS), new(simulator.DNSResolveSimulator)), - Name: "alt-dns", - Pipeline: PipelineDNS, - NumOfHosts: 5, - HeaderMsg: "Preparing a random sample of alternate DNS root domains", - Timeout: 1 * time.Second, - }, - Module{ - Module: simulator.CreateModule(wisdom.NewWisdomHosts("tor_dns", wisdom.HostTypeDNS), new(simulator.DNSResolveSimulator)), - Name: "tor-dns", - Pipeline: PipelineDNS, - NumOfHosts: 5, - HeaderMsg: "Preparing a random sample of suspicious Tor DNS domains", - Timeout: 1 * time.Second, - }, Module{ Module: simulator.NewDGA(), Name: "dga",