oasis-open / cti-training

OASIS TC Open Repository: Providing a collection of CTI-related training materials
https://github.com/oasis-open/cti-training
Other
47 stars 19 forks source link

STIX2 / TAXII2 In Practice- 2.5 hours of content #4

Closed treyka closed 6 years ago

treyka commented 6 years ago
ikiril01 commented 6 years ago

I believe we already have some slides we can use for (at least as a starting point):

Also, we can probably create some slides based on the examples in https://oasis-open.github.io/cti-documentation/stix/examples

ikiril01 commented 6 years ago

For the python-stix2 stuff, we can probably reuse much of the content on RTD: https://stix2.readthedocs.io/en/latest/

ikiril01 commented 6 years ago

We should also try to break down each topic by time, to give us a rough idea of how much content we'll need - I took a stab at doing so in the top comment

treyka commented 6 years ago

I'm working on updating the Jupyter notebook...

ikiril01 commented 6 years ago

Slide deck here: https://docs.google.com/presentation/d/1Op4921a15aFzOeIaE-nYKdHR0LszQlQqiGOJ5BFy2g0/edit?usp=sharing

ikiril01 commented 6 years ago

As a secondary modeling exercise/presentation, we may want to think about incorporating the work done by Palo Alto on Oilrig: https://researchcenter.paloaltonetworks.com/2017/12/unit42-introducing-the-adversary-playbook-first-up-oilrig/

johnwunder commented 6 years ago

Trey and I talked through an agenda for a 1hr developer session (to follow the modeling stuff).