Skip to content

Commit 44d7760

Browse files
chore: update feeds 2026-04-27
1 parent 2afa43c commit 44d7760

11 files changed

Lines changed: 18506 additions & 18506 deletions

feeds/elastic_threat_intel.ndjson

Lines changed: 1893 additions & 1893 deletions
Large diffs are not rendered by default.

feeds/extsentry_feed.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"feed_name": "ExtSentry - Browser Extension Threat Intelligence",
33
"feed_version": "1.0",
4-
"generated": "2026-04-26T23:23:21Z",
4+
"generated": "2026-04-27T01:14:06Z",
55
"source": "https://github.com/mthcht/awesome-lists",
66
"license": "TLP:CLEAR",
77
"total_indicators": 1893,

feeds/extsentry_ioc_feed.csv

Lines changed: 1893 additions & 1893 deletions
Large diffs are not rendered by default.

feeds/misp_event.json

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,8 +4,8 @@
44
"threat_level_id": "2",
55
"analysis": "2",
66
"distribution": "3",
7-
"date": "2026-04-26",
8-
"timestamp": "1777245801",
7+
"date": "2026-04-27",
8+
"timestamp": "1777252446",
99
"published": false,
1010
"uuid": "41ef2090-fab5-547e-9eb6-2aa8f195c66f",
1111
"Orgc": {

feeds/misp_warninglist.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
{
22
"name": "ExtSentry - Known Malicious/Suspicious Browser Extension IDs",
3-
"version": 20260426,
3+
"version": 20260427,
44
"description": "List of known malicious, suspicious, and potentially unwanted browser extension IDs. Maintained by mthcht.",
55
"type": "string",
66
"matching_attributes": [

feeds/opencti_import.csv

Lines changed: 1893 additions & 1893 deletions
Large diffs are not rendered by default.

feeds/openioc_browser_extensions.ioc

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,8 +1,8 @@
11
<?xml version="1.0" ?>
2-
<ioc xmlns="http://schemas.mandiant.com/2010/ioc" id="3678fd2f-03b8-5532-a002-c96e7c7abd1e" last-modified="2026-04-26T23:23:21Z">
2+
<ioc xmlns="http://schemas.mandiant.com/2010/ioc" id="3678fd2f-03b8-5532-a002-c96e7c7abd1e" last-modified="2026-04-27T01:14:06Z">
33
<short_description>ExtSentry - Malicious Browser Extension IOCs</short_description>
44
<description>Browser extension IDs flagged as malicious/suspicious. Matches extension IDs in file paths and registry entries. Source: github.com/mthcht/awesome-lists</description>
5-
<authored_date>2026-04-26T23:23:21Z</authored_date>
5+
<authored_date>2026-04-27T01:14:06Z</authored_date>
66
<definition>
77
<Indicator operator="OR" id="5fd27988-48b0-53ea-88c2-7e57099fd433">
88
<IndicatorItem id="5c154364-a541-57d3-b8c4-2d4b60ec0ba5" condition="contains">

feeds/sentinel_analytics_rule.kql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
// ExtSentry - Browser Extension Threat Detection for Microsoft Sentinel
22
// Source: https://github.com/mthcht/awesome-lists
3-
// Generated: 2026-04-26T23:23:21Z
3+
// Generated: 2026-04-27T01:14:06Z
44
// Total extension IDs: 1893 in 10 chunks
55
//
66
// RECOMMENDATION: For production, import the IOC list as a Sentinel Watchlist

feeds/sigma_rules_browser_extensions.yml

Lines changed: 28 additions & 28 deletions
Original file line numberDiff line numberDiff line change
@@ -8,8 +8,8 @@ description: |
88
references:
99
- https://github.com/mthcht/awesome-lists
1010
author: ExtSentry / mthcht
11-
date: 2026-04-26
12-
modified: 2026-04-26
11+
date: 2026-04-27
12+
modified: 2026-04-27
1313
tags:
1414
- attack.persistence
1515
- attack.t1176
@@ -1928,8 +1928,8 @@ description: |
19281928
references:
19291929
- https://github.com/mthcht/awesome-lists
19301930
author: ExtSentry / mthcht
1931-
date: 2026-04-26
1932-
modified: 2026-04-26
1931+
date: 2026-04-27
1932+
modified: 2026-04-27
19331933
tags:
19341934
- attack.persistence
19351935
- attack.t1176
@@ -3847,8 +3847,8 @@ description: |
38473847
references:
38483848
- https://github.com/mthcht/awesome-lists
38493849
author: ExtSentry / mthcht
3850-
date: 2026-04-26
3851-
modified: 2026-04-26
3850+
date: 2026-04-27
3851+
modified: 2026-04-27
38523852
tags:
38533853
- attack.persistence
38543854
- attack.t1176
@@ -5763,8 +5763,8 @@ description: Detects browser extensions categorized as 'malware' in the ExtSentr
57635763
references:
57645764
- https://github.com/mthcht/awesome-lists
57655765
author: ExtSentry / mthcht
5766-
date: 2026-04-26
5767-
modified: 2026-04-26
5766+
date: 2026-04-27
5767+
modified: 2026-04-27
57685768
tags:
57695769
- attack.persistence
57705770
- attack.t1176
@@ -7469,8 +7469,8 @@ description: Detects browser extensions categorized as 'PUP' in the ExtSentry fe
74697469
references:
74707470
- https://github.com/mthcht/awesome-lists
74717471
author: ExtSentry / mthcht
7472-
date: 2026-04-26
7473-
modified: 2026-04-26
7472+
date: 2026-04-27
7473+
modified: 2026-04-27
74747474
tags:
74757475
- attack.persistence
74767476
- attack.t1176
@@ -7497,8 +7497,8 @@ description: Detects browser extensions categorized as 'compromised' in the ExtS
74977497
references:
74987498
- https://github.com/mthcht/awesome-lists
74997499
author: ExtSentry / mthcht
7500-
date: 2026-04-26
7501-
modified: 2026-04-26
7500+
date: 2026-04-27
7501+
modified: 2026-04-27
75027502
tags:
75037503
- attack.persistence
75047504
- attack.t1176
@@ -7612,8 +7612,8 @@ description: Detects browser extensions categorized as 'cryptocurrency' in the E
76127612
references:
76137613
- https://github.com/mthcht/awesome-lists
76147614
author: ExtSentry / mthcht
7615-
date: 2026-04-26
7616-
modified: 2026-04-26
7615+
date: 2026-04-27
7616+
modified: 2026-04-27
76177617
tags:
76187618
- attack.persistence
76197619
- attack.t1176
@@ -7725,8 +7725,8 @@ description: Detects browser extensions categorized as 'Credential Access' in th
77257725
references:
77267726
- https://github.com/mthcht/awesome-lists
77277727
author: ExtSentry / mthcht
7728-
date: 2026-04-26
7729-
modified: 2026-04-26
7728+
date: 2026-04-27
7729+
modified: 2026-04-27
77307730
tags:
77317731
- attack.persistence
77327732
- attack.t1176
@@ -7750,8 +7750,8 @@ description: Detects browser extensions categorized as 'Defense Evasion' in the
77507750
references:
77517751
- https://github.com/mthcht/awesome-lists
77527752
author: ExtSentry / mthcht
7753-
date: 2026-04-26
7754-
modified: 2026-04-26
7753+
date: 2026-04-27
7754+
modified: 2026-04-27
77557755
tags:
77567756
- attack.persistence
77577757
- attack.t1176
@@ -7774,8 +7774,8 @@ description: Detects browser extensions categorized as 'scam' in the ExtSentry f
77747774
references:
77757775
- https://github.com/mthcht/awesome-lists
77767776
author: ExtSentry / mthcht
7777-
date: 2026-04-26
7778-
modified: 2026-04-26
7777+
date: 2026-04-27
7778+
modified: 2026-04-27
77797779
tags:
77807780
- attack.persistence
77817781
- attack.t1176
@@ -7802,8 +7802,8 @@ description: Detects browser extensions categorized as 'RMM' in the ExtSentry fe
78027802
references:
78037803
- https://github.com/mthcht/awesome-lists
78047804
author: ExtSentry / mthcht
7805-
date: 2026-04-26
7806-
modified: 2026-04-26
7805+
date: 2026-04-27
7806+
modified: 2026-04-27
78077807
tags:
78087808
- attack.persistence
78097809
- attack.t1176
@@ -7826,8 +7826,8 @@ description: Detects browser extensions categorized as 'password manager' in the
78267826
references:
78277827
- https://github.com/mthcht/awesome-lists
78287828
author: ExtSentry / mthcht
7829-
date: 2026-04-26
7830-
modified: 2026-04-26
7829+
date: 2026-04-27
7830+
modified: 2026-04-27
78317831
tags:
78327832
- attack.persistence
78337833
- attack.t1176
@@ -7858,8 +7858,8 @@ description: Detects browser extensions categorized as 'PROXY/VPN' in the ExtSen
78587858
references:
78597859
- https://github.com/mthcht/awesome-lists
78607860
author: ExtSentry / mthcht
7861-
date: 2026-04-26
7862-
modified: 2026-04-26
7861+
date: 2026-04-27
7862+
modified: 2026-04-27
78637863
tags:
78647864
- attack.persistence
78657865
- attack.t1176
@@ -7888,8 +7888,8 @@ description: |
78887888
references:
78897889
- https://github.com/mthcht/awesome-lists
78907890
author: ExtSentry
7891-
date: 2026-04-26
7892-
modified: 2026-04-26
7891+
date: 2026-04-27
7892+
modified: 2026-04-27
78937893
tags:
78947894
- attack.persistence
78957895
- attack.t1176

0 commit comments

Comments
 (0)