From: TIM: threat context-enhanced TTP intelligence mining on unstructured threat data
Element | Gazetteer words |
---|---|
Encode&Encryption Algorithm | aes,xor,ror,base64,rc4,des,lznt1 |
cast,3des,lzo | |
Communication Protocols | http,https,ftp,smtp,pop3,dns. |
Data Object | desktop,clipboard,directory, |
exchange,gmail,outlook,mailbox, | |
keystroke,keylogger,password. |