-
ThreatQuotient has surfaced a few issues with our integration. This may be turned into a meta issue, but the main areas of concern are:
- Updating confidence scoring logic
- Scaling up IOC ingestion…
-
In terms of threat, 8 TOUGH is much more of a threat than 1 ATTACK. (that is, a creep with 2 ATTACK vs [1 ATTACK, 8 TOUGH], the 2 ATTACK will lose.)
Ordering of the body parts is also significant -…
jbury updated
2 years ago
-
If I'm not mistaken, I think threat scores can be non-dichotomous? Is this decorator used only because it hasn't been implemented yet or am I mistaken?
```
def dichotomous_only(method):
"""De…
-
**Describe the bug**
Alert reason for Threat Enrichment rule content not formatted properly
**Build Details:**
```
Version: 8.6 BC5
Commit:ed40c16ce9999cc47ad55c11bb097d2e443b31a6
Build:58693
…
ghost updated
3 weeks ago
-
Hi there. I'd love to try your app, but when downloading and starting CringeClock.1.0.3.exe, nothing seems to happen. And for CringeClock.Setup.1.0.3.exe Hybrid-Analysis shows a threat score of 80/100…
-
**Describe the bug:**
max_signals property is not applied during rule preview
**Kibana/Elasticsearch Stack version:**
8.12, likely earlier by design
**Steps to reproduce:**
1. Create detect…
-
### What happened?
We are experiencing inconsistency with the usage of Google recaptcha v3. We have enabled recaptcha v3 on our tenant with the default threat score threshold of 0.5, and tried to ver…
-
We should consider adding the ability to capture one or more threat "scores" (or levels, etc.) as part of a TTP. While this would be arbitrary and highly contextually dependent, the ability to score t…
-
**Epics:** https://github.com/elastic/security-team/issues/1974 (internal), https://github.com/elastic/kibana/issues/174168
**Depends on:** https://github.com/elastic/kibana/issues/171520
## Summa…
-
## Task Description
Annual: Conduct risk assessment
## Steps
1. Review the current risk assessment methodology
2. Identify and list all assets, processes, and systems to be assessed
3. For each item,…