CybOXProject / schemas

CybOX Schemas and Schema Development
42 stars 17 forks source link

Add Unix ELF Object #358

Open ikiril01 opened 9 years ago

ikiril01 commented 9 years ago

We should consider adding a new CybOX Object for characterizing Unix Executable and Linkable Format (ELF) format binaries.

ikiril01 commented 9 years ago

Context: this is necessary for better supporting UNIX in CybOX, and would be useful for use cases pertaining to digital forensics, as well as for describing properties of malicious ELF binaries (i.e. in MAEC), and indicators related to ELF binaries (i.e. in STIX).

LOE: Medium