TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Black Hills InfoSec

More on Threat Intelligence Feeds

BHIS · 2016-03-02 · Read original ↗

ATT&CK techniques detected

2 predictions
T1041Exfiltration Over C2 Channel
67%
“terms to describe technology end up becoming buzzwords used by vendors to sell more products – this definitely seems to be the case with threat intelligence. to me there are two categories. the first is atomic indicators of compromise ( iocs ). these are things that cannot be bro…”
T1566.001Spearphishing Attachment
30%
“out and become involved with security analyst communities that analyze and share information specific to your industry. these groups do exist, and data that you get from the analysts that contribute to the intelligence will have more context than a feed from a vendor serving ever…”

Summary

Derek Banks // John’s hating on threat intelligence feeds post got me thinking.  As a former blue team member that is now solidly purple team, I do not hate threat intelligence […]

The post More on Threat Intelligence Feeds appeared first on Black Hills Information Security, Inc..