2025-03-26 20:00:31 +01:00
2025-01-30 16:28:14 +01:00
2025-03-26 19:58:04 +01:00
2024-08-29 20:12:02 +02:00
2025-03-26 19:56:06 +01:00
2025-03-26 19:58:43 +01:00
2025-01-30 21:30:14 +01:00
2024-08-29 21:03:36 +02:00

flask-soc-site

This is a Python project to learn working with Flask. To make it useful for my day job as a security analyst, I turned it into a one-page website that can look up security-relevant data about hosts (IP addresses, fully qualified domain names, URLs and domains). Current features include: VirusTotal and AbuseIPDB-results, DMARC, DKIM and SPF information and registrar information.

Todos

  • reorganize the SPF, DMARC and DKIM results (organize the SPF to match ['record'] with ['parsed']) 📧
  • try to incorporate OTX Alienvault results (unfortunately the historical telemetry is not possible via the API...) 👽
  • start working again on the upload feature to analyze hosts in a text or csv file 📎
  • parse and display lookup results for multiple, differently typed and separated hosts (look at parsing in gui-host-lookup) 💯
  • Make the foldable detail lines more useful and readable
  • Update the (currently broken) lookup of URLs
  • Differentiate both the lookup functions (the Host class initialization) and the result HTML/Jinja-pages on host type
  • Deploy the app to production (soc.joostagterhoek.nl) which first requires to follow some deployment and app organization tutorials (https://flask.palletsprojects.com/en/stable/tutorial/database/ for example)
    • Follow the example of the working 'packaging-flask-soc-site'-folder ánd incorporate config.py 'from config import config')
  • Implement caching across the entire website (now only for AbuseIPDB API requests)
Description
This is a Python project to learn working with Flask. To make it useful for my day job as a security analyst, I turned it into a one-page website that can look up security-relevant data about hosts (IP addresses, fully qualified domain names, URLs and domains). Current features include: VirusTotal and AbuseIPDB-results, DMARC, DKIM and SPF information and registrar information.
Readme 328 KiB
Languages
Python 58.7%
HTML 26.8%
CSS 13%
JavaScript 1.5%