Introduction

Ver. 06/03/2026

This plugin retrieves the 500 most frequent IPs from the last 30 days of MISP events and generates a SIEM rule to detect traffic from those IPs.

Type: Server Plugin


Revision #1
Created 6 March 2026 13:04:32 by Sergio Berruetta
Updated 6 March 2026 13:05:24 by Sergio Berruetta