Research Sources (Threat Actors, Intelligence Sources, & Vulnerabilities) Flashcards

1
Q

Vendor web sites

A

Cisco, Microsoft, Amazon Web Services, as also security companies like Fortinet, Symantec, McAfee, sans.org, CrowdStrike all those different web sites, Splunk, Rapid7, to name a few

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Vulnerability feeds

A

vulnerability databases like CVE and NVD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Conferences

A

DEFCON, blackhat conferences, RSA conferences, the sans.org conferences

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Academic journals

A

various academic journals and magazines, requests for comments

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Request for Comments (RFC)

A

IEEE is going to have their fleet of RFCs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Local industry groups

A

local groups of, let’s say, REDIS database people, Palo Alto networks practitioners, people that specialize in HIPAA security, other local groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Social Media

A

part of our information gathering and open source intelligence. You can get some good information in Twitter feeds

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Threat feeds

A

e-mail bulletins, text messaging, RSS feeds from sans.org. from Cisco, advanced malware protection. Threat feeds from different cloud service providers as well

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Adversary tactics, techniques, and procedures (TTP)

A

TTPs are a kind of indicator of compromise, indicator of actions, IoAs: this is basically how threat agents and threat actors orchestrate and automate and manage their attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

OSINT tools

A

OSINT tools like Maltego, which can help you categorize and delineate and visualize all this different information throughout the entire Internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Emerging social media tools

A

be on the lookout for new tools that show up in new builds of exploit kits and KALI Linux and obviously word of mouth

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Word of mouth

A

Building your own community, maybe through LinkedIn and sharing information in chat rooms and e-mail. Getting together in a Zoom conference and sharing information through word of mouth

How well did you know this?
1
Not at all
2
3
4
5
Perfectly