Explore the latest standards for Cyber Threat Intelligence in this comprehensive conference talk from nullcon Goa 2019. Dive into the new features and changes of STIX/TAXII Version 2.0 and 2.1, including the Interop/STIXPreferred certification program. Learn about key concepts in the STIX Data Model, covering adversary domain objects, attack-based properties, TTP domain objects, incident response properties, and detection domain objects. Discover STIX 2.1 enhancements, including confidence levels, and examine real-world examples like the Lime RAT Report. Gain insights into TAXII 2 key definitions, API root discovery, collection management, and data posting. Address STIX v1 interoperability challenges and understand the STIX TAXII 2 Preferred introduction and persona. Presented by Allan Thomson, CTO of LookingGlass Cyber Solutions and co-chair of STIX/TAXII 2 Interoperability standards, this talk offers valuable knowledge for professionals in threat intelligence, security, and InfoSec fields.
Read more