[Request] Update changelog_helper to handle updated detection schema

Aperta
#188 1 commento 0 reazioni 0 assegnatari Vedi su GitHub

Nessuno ha ancora preso questa issue.

Valutazione

Difficoltà
4/5
Tempo stimato
3-5 giorni
Idoneità per principianti
45/100
Tipo di issue
Funzionalità
Chiarezza
Abbastanza chiara
Stato di attività
Tranquilla
Stack tecnologico
python
Ambito
security, tooling

Direzione di ricerca

Inizia da mitreattack/diffStix/changelog_helper.py e leggi i dettagli più recenti dello schema in attack-data-model issue 14. Traccia il modo in cui lo script identifica gli oggetti ATT&CK modificati, quindi aggiorna la sua gestione in modo che gli attuali data sources e data components risultino come deprecated e detection strategies, log sources e analytics risultino come added. Il lavoro è completo quando l’output del changelog riflette queste modifiche allo schema.

Scritto dal modello di indicizzazione a partire dal testo della issue.

Descrizione

Is your feature request related to a problem?

This is not a problem yet. But the October 2025 ATT&CK release plans to update the schema around data sources, data components, etc. which is detailed here: https://github.com/mitre-attack/attack-data-model/issues/14. When that goes into effect, https://github.com/mitre-attack/mitreattack-python/blob/master/mitreattack/diffStix/changelog_helper.py will need to be updated to handle how changes are made between ATT&CK releases.

Describe the solution you'd like

The output of the changelog_helper.py script should appropriately show the current data source and data component objects as being deprecated. It should also know about and show the new detection strategy, log source, and analytic objects as being added. This issue here may become out of date if the schema changes further, so the latest information at https://github.com/mitre-attack/attack-data-model/issues/14 should always be referenced.

Describe alternatives you've considered

Since the ATT&CK team uses ATT&CK Workbench to create ATT&CK releases, one day this functionality should be baked into ATT&CK Workbench, per this GitHub issue: https://github.com/center-for-threat-informed-defense/attack-workbench-frontend/issues/573

Additional context

None at this time

Lingua principale
HTML
Stelle
743
Fork
176
Metriche di merge delle PR
Nessuna PR unita negli ultimi 30g

Guida per i contributori

Apri la guida per i contributori

Come iniziare

  1. Leggi tutta la issue e poi la guida ai contributi del progetto.
  2. Commenta sulla issue per dire che te ne occupi tu — evita che due persone facciano lo stesso lavoro.
  3. Fai un fork del repository e lavora su un branch.
  4. Apri una pull request che faccia riferimento al numero della issue.

Altre issue di mitre-attack/mitreattack-python

Tutte le issue di mitre-attack/mitreattack-python

Issue simili

Altre issue su Security

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.