Intelligence App Flashcards
Global intel at a glance: Actor counts, charts of intel by target country, the latest actors
Dashboard
This page shows: adversaries tracked by CS, target nations and industries, CSs research on their activities
Actors
CS names these with an adjective and an animal name that correlates to their origin country or org.
Actors
Includes hashes of adversaries malware activity and enables queries of CS intel IOCs
Indicators
Includes reports on malware samples that have been analyzed by Falcon X.
Sandbox
you can manually submit samples to Falcon X and review logs for failed sample analyses.
Sandbox
uses CSs intel data to provide a feed of activity, assists with situational awareness
Tailored Intel
you can monitor keywords and other mentions on Twitter and Pastebin
Tailored Intel
You can learn if you might be a target for a botnet config or DDoS attack
Tailored Intel
Provides periodic reports on adversary activities: CEF, NetWitness, Snort/Suricata, YARA Rules
Reports and Feeds
Allows malware samples to be submitted for processing by the CS Intel team
Submissions
samples will feed into the typical analysis workflow and may be developed into CS Tippers and Intel reports
Submissions
you can submit a request for info if you have ?s on a particular actor, industry, malware family or another intel topic
Submissions
Includes reports you’ve subscribed to and allows you to manage notifications
Subscriptions
Detailed actor info: Victims, Crimes & Motivation
Intelligence > Actors