Maltego NIST NVD Transform
Prerequisites:
- Maltego CE (Community Edition) or Maltego XL installed.
- Access to the NIST NVD transform from the Maltego Transform Hub.
- (Optional) NIST NVD API access (to obtain an API key, if needed).
Step 1: Download the NIST NVD Transform from the Transform Hub
Before you can use the NIST NVD Maltego transform, you need to download it from the Maltego Transform Hub:
- Open Maltego.
- Go to the “Apps” tab on the left sidebar.
- In the “Transform Hub” section, search for “NIST NVD” or the specific transform package provided by NIST.
- Click on it, then click “Download” or “Install.”
Step 2: Set Up Your NIST NVD Transform
After downloading the transform, you can set it up:
- Open Maltego.
- In the “Manage” tab, click on “Transforms Manager.”
- Find the NIST NVD transform you downloaded and click on “Settings” or “Configure.”
Step 3: Configure API Access (If Required)
If you plan to use the NVD API, you may need to register for an API key on the NVD website:
- Go to the NIST NVD API registration page: NIST NVD API Registration.
- Follow the instructions on the page to obtain your API key.
Step 4: Use the NIST NVD Transform
Now that you’ve configured the transform and, if necessary, obtained your API key, you can use it to query the NIST NVD for vulnerability information:
- Open Maltego.
- Create a new graph or open an existing one.
- Right-click on an entity (e.g., a software application or a CVE identifier) in your Maltego graph.
- In the context menu, select “Run Transform.”
- Choose the NIST NVD transform from the list.
- Click “Run.”
The transform will query the NVD database for relevant vulnerability information and present it in your Maltego graph.
Step 5: Access NIST NVD URLs
To access the NIST NVD website and the API registration page, use the following URLs:
You can visit the NVD website for additional information on vulnerabilities and use the API registration page to obtain an API key if you haven’t already.
Step 6: Save and Export
After performing your analysis and enriching your Maltego graph with NVD data, you can save your graph and export it in various formats for reporting and sharing.