Closed krmaxwell closed 10 years ago
Alienvault data contains both inbound as well as outbound. The notes will map which indicator is which.
For reference, what I currently use:
(Scanning Host|Spamming)
(Malware|C&C|APT)
:+1:
Alienvault data contains both inbound as well as outbound. The notes will map which indicator is which.