[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: Re: [cti-users] CybOX diversified observable data set example
DHS/US-CERT publishes 100's of diverse STIX packages (e.g., MIFR,MAR, JIB, IB). I use STIX Ramrod to batch convert (https://github.com/STIXProject/stix-ramrod) legacy versions. These provide a rich set of compound observables.
These will provide a much more diverse set of CybOX than anything you will find on Hail-a-TAXII which tend to be very narrow in what is expressed (e.g., Lists of Malicious IP Addresses, Lists of Malicious Domains).
These STIX packages are generally not in the public domain, but are available in places like the US-CERT Portal (https://portal.us-cert.gov). A keyword search for "STIX" and "MIFR" may reveal alternative sources.
Patrick Maroney
Office: (856)983-0001
Cell: (609)841-5104
President
Integrated Networking Technologies, Inc.
PO Box 569
Marlton, NJ 08053
From: <cti-users@lists.oasis-open.org> on behalf of "Noel, Steven E" <snoel@mitre.org>
Date: Friday, January 29, 2016 at 10:17 AM To: Shevah Marants <shevahm@gmail.com>, "cti-users@lists.oasis-open.org" <cti-users@lists.oasis-open.org> Subject: RE: [cti-users] CybOX diversified observable data set example I’m wondering if this is helpful:
http://hailataxii.com/. I have never used it, would be interested in hearing about your experiences with it. Steve From:
cti-users@lists.oasis-open.org [mailto:cti-users@lists.oasis-open.org]
On Behalf Of Shevah Marants Hello, I am currently investigating CybOX. I am looking for a big corpus/dataset of Observables varying in type for different experiments on CybOX data. The STIX and CybOX sites offer a couple of examples but they are limited in size and diversification. Can someone point me to an interesting dataset with diversified types of Observables and Observable patterns? Thanks. |
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]