CTIN · @ctin
166 followers · 245 posts · Server infosec.exchange
New article by #OSINT analyst Niels Groeneveld | Subject: How to leverage #STIX and #TAXII for intelligence collection | https://cyberthreatintelligencenetwork.com/index.php/2023/01/25/expanding-the-use-cases-of-stix-and-taxii-leveraging-threat-intelligence-frameworks-for-national-security-and-intelligence-analysis/

#osint #STIX #taxii

Last updated 3 years ago

HansQ4 · @hansq4
18 followers · 82 posts · Server mastodon.social

‎Yet another app! TraxTi, a object reader, that reads from the MITRE server. apps.apple.com/nl/app/traxti/i

#STIX #TAXII #cybersecurity #threat #intel #security

Last updated 3 years ago

Wordle 569 4/6

⬜⬜⬜🟩⬜
🟩⬜⬜🟩⬜
🟩🟨⬜🟩⬜
🟩🟩🟩🟩🟩

#Wordle #brownie #STIX

Last updated 3 years ago

Taylor Parizo · @taylorparizo
151 followers · 141 posts · Server infosec.exchange

@Imlordofthering This is a great reminder to all in that IOCs mean nothing without context and I agree we don't have a standard way of sharing them. Some vendors make it near impossible to simply copy/paste IOCs into a spreadsheet or export to a standard format like
From what I've seen, Analyst1 is the only TIP that can parse IOCs from PDFs and make them searchable and exportable.

#cti #STIX

Last updated 3 years ago

Félix Brezo · @febrezo
144 followers · 194 posts · Server mastodon.social

Simply a must for the community: 5.5.0 is out. github.com/OpenCTI-Platform/op I'll keep on working on the Spanish localization during the Christmas Holidays.

#cti #opencti #STIX

Last updated 3 years ago

Jason "JK" Keirstead · @BlueTeamJK
15 followers · 39 posts · Server infosec.exchange

News on AWS Security Lake, leveraging the Open Cybersecurity Schema Framework () is making the rounds. Proud that not only is IBM Security a launch partner, but was one of the very few products name-dropped in the launch keynote.

aws.amazon.com/blogs/aws/previ

Note that we have also added support for Security Lake to the Open Cybersecurity Alliance Shifter and projects - you can query and threat-hunt across AWS *and ~ 30 other products and clouds* all from one place, and apply out-of-the box ML and analytics... check it out if you have not.

opencybersecurityalliance.org/

#ocsf #qradar #aws #STIX #kestrel

Last updated 3 years ago

TribalCyberSecurity · @tribalcyber
10 followers · 10 posts · Server ioc.exchange
Charliefrick · @charliefrick
8 followers · 7 posts · Server infosec.exchange

We have been working with the Indicator of Behavior Working group to develop ways to represent cyber adversary behaviors, detections, and ways to correlate detections in machine readable formats.

We now have some reference implementation bundles and a python script to convert STIX 2.1 bundles to graph databases available on GitHub if anyone is interested.

github.com/opencybersecurityal

#oca #STIX #neo4j

Last updated 3 years ago

Félix Brezo · @febrezo
32 followers · 108 posts · Server mastodon.social

This document does not need a presentation for analysts but its the title: "STIX™ Best Practices Guide Version
1.0.0".

Link: docs.oasis-open.org/cti/stix-b

#threatintelligence #mustread #cti #STIX #bestpractices

Last updated 3 years ago

A new version of the core format is out. It's used to exchange cybersecurity threat information () as JSON objects between Open Source Threat Intelligence Sharing Platform instances (aka Malware Information Sharing Platform) and complements other CTI formats like .
twitter.com/MISPProject/status …

#STIX #CTI #misp

Last updated 6 years ago

Announcement : Today we release a new export format - our can now be consumed in customer's portal. We translate our context and relationships as tags, comments and objets in MISP format @MISPProject

#STIX #misp #threatintel

Last updated 6 years ago