Threat Intelligence Flashcards

1
Q

What are the 3 forms of threat intelligence?

A

Tactical = technical identifiers, signatures, tools that can indicate IOCs ( AV, IPS,LOG Files)

Operational = how threat actors behave, Tactical Threat and Procedures (TTPs)

Strategic = high-level threat information. News feed. Staying up to date

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are OSINT?

A

Open source intelligence - solution open to all.

We have to be aware of the validity of the info

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a closed-source intelligence?

A

Offered by various organizations for a fee.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is an vulnerability?

A

A weakness in software that allows attackers access.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does CVE and NVD stand form?

A

Common Vulnerabilities and Exposures. (CVE)

National Vulnerability Database

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are public/private information centers?

A

Information sharing and analyst center or organization (ISAC,ISAO). These facilitate the exchange of data between commercial and governmental entities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What might be a good reason to search the Dark Web?

A

If you are researching for any potential data breaches. If you find it then you can then try to mitigate the problem.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is STIX?

A

Structured Threat information eXpression.

A standardized way of representing threat intelligence. Its the format that the information is presented.

It is a data structure or a schema. It uses JASON

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is TAXII?

A

Trusted Automated eXchange of Indicator Information.

A protocol used to exchange STIX data over HTTPS. It is a transportation used to send STIX data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly