cyber_threat_intelligence/README.md

22 lines
1.2 KiB
Markdown
Raw Normal View History

2021-09-28 14:14:43 +00:00
# Cyber Threat Intelligence Data and Analysis
2022-04-23 08:18:28 +00:00
Our unique [Cyber Threat Intelligence](https://vuldb.com/?kb.cti) aims to determine the ongoing research of APT actors to anticipiate their acitivities.
2021-09-28 14:14:43 +00:00
## Activity Monitoring
2022-04-23 08:19:19 +00:00
A broad activity monitoring is used to determine the actions by [actors](https://vuldb.com/?actor). Observing exploit markets on the Darknet, discussions of vulnerabilities on mailinglists, and social media exchanges makes it possible to identify planned attacks.
2021-09-28 14:14:43 +00:00
## Geopolitical Analysis
2022-04-23 08:19:19 +00:00
The CTI team is mapping structures of [countries](https://vuldb.com/?country) and their relationships to identify tensions and possible attack scenarios.
2021-09-28 14:14:43 +00:00
## Indicators
We provide a wide variety of indicators like campaigns, country associations, IOC (Indicator of Compromise), TTP (Tactics, Techniques, Procedures), IOA (Indicator of Attack), and external sources.
## Predictive Capabilities
Due to our unique AI-based system we are able to provide predictive indicators. These are indicators which are not yet used in attacks but might be used by the specific actors. This helps to anticipate and mitigate attacks very eary.
2022-04-23 08:18:00 +00:00
![The unique VulDB CTI model to predict activities and indicators](https://vuldb.com/documentation/images/cti_model.png)