#ailproject

Alexandre Dulaunoyadulau@infosec.exchange
2024-12-24

Ever wonder why we build our own open-source tools? It's often to tackle unique challenges other tools can't handle.

In this case, we needed to track and monitor CVEs (Common Vulnerabilities and Exposures), especially proof-of-concept (PoC) discussions emerging on social networks like Telegram. We're automating the monitoring of these channels, but our goal is to empower analysts, not burden them with manual work.

Check out (annotated screenshots below) how we developed and using the AIL Project @ail_project to automatically:

  • Link and correlate CVEs with social media posts & references.
  • Extract text from images using OCR.

This lets our analysts focus on insights, not tedious data wrangling.

AIL Project ( @ail_project )is an open source project combined an extensive integration with MISP Project @misp and other open source tooling that we developed for the past years.

#opensource #ailproject #darkweb #vulnerability #vulnerabilities #poc #cybersecurity

Correlation view of the CVE mention in AIL project.Extraction of Telegram post with AIL project.
2024-10-03

We announce the release of AIL Framework v5.8, packed with new features, improvements, and bug fixes to facilitate the usage. This release focuses on expanding functionality and improving efficiency in key areas such as **QR code extraction**, domain lookups, image handling, and more.

🔗 ail-project.org/blog/2024/10/0

#threatintel #osint #intelligence #opensource #ailproject #darkweb

QR code value extracted from AIL framework.Correlation of QR code value in AIL framework.
Alexandre Dulaunoyadulau@infosec.exchange
2024-10-02

You might be surprised by what can be encoded in a QR code. We've added automatic QR code extraction to the @ail_project for hidden services, social media messages, and any collected images. Many QR codes contain information that can be used for correlation, such as Bitcoin addresses, validation codes, invitation codes, and even XML streams.

#osint #ailproject #threatintel #threatintelligence #opensource

Thanks to @terrtia for the tireless testing with the different QR code decoding library.

QR code decoded in AIL projectCorrelation with QR code in AIL Project
2024-03-27

AIL framework 5.4 released with many semantic improvements in chat channels, new Tor vanity domain explorer and various improvements.

ail-project.org/blog/2024/03/2

#darkweb #opensource #monitoring #threatintelligence #ThreatIntel #tor #ailproject

Alexandre Dulaunoyadulau@infosec.exchange
2023-11-08

How to Improve and Support Your Threat Intelligence Process with AIL.

Slide deck 🔗 ail-project.org/assets/img/fir

The slide deck given at @firstdotorg
#FIRSTCTI23 #threatintel #threatintelligence #opensource #ailproject #cti

Using AIL to improve your processing threat intelligence process. This slide is about the deduplication of Tor hidden services.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst