6b5305efa5 | ||
---|---|---|
.. | ||
ActiniumIOC.csv | ||
AzureBuiltInRole.csv | ||
CMMCPolicyMapping.csv | ||
ChiaCryptoIOC.csv | ||
CommandsInURL.csv | ||
DEV-0322_SolarWinds_Serv-U_IoC.csv | ||
DEV-0586.csv | ||
Dev-0530_July2022.csv | ||
EmpireCommandString.txt | ||
Europium_September2022.csv | ||
EventLogManagement.csv | ||
FoggyWebIOC.csv | ||
HiveRansomwareJuly2022.csv | ||
LocalFileInclusionIndicators.csv | ||
Log4j_IOC_List.csv | ||
M2131RecommendedDataTables.csv | ||
MSTIC IoCs - Exchange Server Vulnerabilities Readme.txt | ||
MSTICIoCs-ExchangeServerVulnerabilitiesDisclosedMarch2021.csv | ||
MSTICIoCs-ExchangeServerVulnerabilitiesDisclosedMarch2021.json | ||
Mercury_August2022.csv | ||
Microsoft.Covid19.Indicators.csv | ||
Microsoft.Covid19.Indicators.json | ||
Microsoft.IoT-Dump-pwd-infected.zip | ||
Microsoft.OAuth.KnownApplications.csv | ||
NISTSP800171PolicyMapping.csv | ||
ReadMe.md | ||
RiskyFileExtensionsInUrl.csv | ||
SEABORGIUMIOC.csv | ||
SOURGUM.csv | ||
Tarrask.csv | ||
TestIOCs.csv | ||
UnusualUserAgents.csv | ||
VPS_Networks.csv | ||
WhiteListedDomainsForWebSessionUseCases.csv | ||
ZeroTrustTIC3Mapping.csv | ||
ZincOctober2022IOCs.csv |
ReadMe.md
Folder to store threat intel indicator and feed data
Enabling security research & hunting with open source IoT attack data https://techcommunity.microsoft.com/t5/azure-sentinel/enabling-security-research-amp-hunting-with-open-source-iot/ba-p/1279037
Microsoft open-sources Covid19 threat intelligence: https://www.microsoft.com/security/blog/2020/05/14/open-sourcing-covid-threat-intelligence/
Using Azure Playbooks to import text-based threat indicators to Azure Sentinel: https://techcommunity.microsoft.com/t5/azure-sentinel/using-azure-playbooks-to-import-text-based-threat-indicators-to/ba-p/1383980
Integrating open source threat feeds with MISP and Azure Sentinel: https://techcommunity.microsoft.com/t5/azure-sentinel/integrating-open-source-threat-feeds-with-misp-and-sentinel/ba-p/1350371