TheHive-Project / TheHive-Project/Cortex-Analyzers

[FR] Qintel QSentry Analyzer

Open
#1,063 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Python
Stars
490
Forks
405
Avg merge
2d 43m
Merged PRs (30d)
8

Description

Feature description
Support querying Qintel's QSentry platform for ip reputation data

Describe the solution you'd like
Add analyzer to query QSentry's API and return contextual data (threat tags, ASN details, observation timestamp)

Additional context
https://www.qintel.com/products/qsentry/

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

The issue names no files, tests, or entry points. Start by reviewing existing analyzers in the repository and the linked QSentry product information, then determine the API access details and response fields needed; done means a QSentry analyzer that queries IP reputation data and returns threat tags, ASN details, and an observation timestamp.

Written by the indexing model from the issue text.

Assessment

Tech stack
python
Domain
api, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
30/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.