A curated list of Awesome Threat Intelligence resources
 
Go to file
Herman Slatman f540d93326 Merge pull request #2 from hslatman/hs_table
Table-fying - New way to add sources
2015-12-28 12:56:26 +01:00
LICENSE Initial commit 2015-12-21 12:31:04 +01:00
README.md Table-fying 2015-12-28 12:55:53 +01:00

README.md

awesome-threat-intelligence

A curated list of Awesome Threat Intelligence resources

Sources

Parsers

Standards

CybOX The Cyber Observable eXpression (CybOX) language provides a common structure for representing cyber observables across and among the operational areas of enterprise cyber security that improves the consistency, efficiency, and interoperability of deployed tools and processes, as well as increases overall situational awareness by enabling the potential for detailed automatable sharing, mapping, detection, and analysis heuristics.
STIX The Structured Threat Information eXpression (STIX) language is a standardized construct to represent cyber threat information. The STIX Language intends to convey the full range of potential cyber threat information and strives to be fully expressive, flexible, extensible, and automatable.
TAXII The Trusted Automated eXchange of Indicator Information (TAXII) standard defines a set of services and message exchanges that, when implemented, enable sharing of actionable cyber threat information across organization and product/service boundaries. TAXII defines concepts, protocols, and message exchanges to exchange cyber threat information for the detection, prevention, and mitigation of cyber threats.
MAEC The Malware Attribute Enumeration and Characterization (MAEC) projects is aimed at creating and providing a standardized language for sharing structured information about malware based upon attributes such as behaviors, artifacts, and attack patterns.

Frameworks

Research