Get CVE, CWE, CAPEC, MITRE ATT&CK, MITRE D3FEND and MITRE ATLAS Techniques data automatically.
Try it online at https://galeax.github.io/CVE2CAPEC/.
](https://galeax.github.io/CVE2CAPEC/)
## Introduction
This project allows you to manage get all new CVE with their CWE, CAPEC, [MITRE ATT&CK](https://attack.mitre.org/), [MITRE D3FEND](https://d3fend.mitre.org/) and [MITRE ATLAS](https://atlas.mitre.org/) Techniques.
All CVE data are stored in `database` folder.
**CVE2CAPEC does not need to be run by yourself.**
In fact, github actions update the database every day at 00:05 UTC so you can get the new CVE with all their data in `results/new_cves.jsonl`.
However, if you want to run this project by your own :
### Installation
```sh
git clone https://github.com/Galeax/CVE2CAPEC.git
cd CVE2CAPEC
pip install -r requirements.txt
```
### Update databases
```sh
python update_capec_db.py
python update_cwe_db.py
python update_technique_db.py
python update_defend_db.py
python update_atlas_db.py
```
### Build the CVE - CWE - CAPEC - MITRE ATT&CK - MITRE D3FEND - MITRE ATLAS Techniques links
**1. Get new CVEs**
```sh
python retrieve_cve.py
```
**2. Get CWEs from new CVEs**
```sh
python cve2cwe.py
```
**3. Get CAPECs from CWEs**
```sh
python cwe2capec.py
```
**4. Get MITRE ATT&CK Techniques from CAPECs**
```sh
python capec2technique.py
```
**5. Get MITRE D3FEND Techniques from MITRE ATT&CK Techniques**
```sh
python technique2defend.py
```
**6. Get MITRE ATLAS Techniques from MITRE ATT&CK Techniques**
```sh
python technique2atlas.py
```
## Sources
- [MITRE ATT&CK](https://attack.mitre.org/) — Apache 2.0
- [MITRE D3FEND](https://d3fend.mitre.org/) — MIT
- [MITRE ATLAS](https://atlas.mitre.org/) — data: [`mitre-atlas/atlas-data`](https://github.com/mitre-atlas/atlas-data) (Apache 2.0); embedded Navigator: [`mitre-atlas/atlas-navigator`](https://github.com/mitre-atlas/atlas-navigator) (Apache 2.0)
- [CAPEC](https://capec.mitre.org/) and [CWE](https://cwe.mitre.org/)
## License
This project is released under the GNU General Public License version 3 (the GPL).
For commercial use where you need to not be using the GPL, please contact us at `contact [AT] galeax.com` for additional options.
## Contact
Made with ❤️ in 🇫🇷 by