STIX
E590627
STIX is a structured language and data format used for representing, sharing, and analyzing cyber threat intelligence across organizations and tools.
Statements (49)
| Predicate | Object |
|---|---|
| instanceOf |
cyber threat intelligence language
ⓘ
data format ⓘ |
| abbreviation | STIX NERFINISHED ⓘ |
| basedOn | JSON NERFINISHED ⓘ |
| domain | cybersecurity ⓘ |
| enables |
automated detection and response workflows
ⓘ
correlation of threat data across tools ⓘ sharing of indicators of compromise ⓘ |
| fullName | Structured Threat Information Expression NERFINISHED ⓘ |
| governedBy | OASIS Cyber Threat Intelligence Technical Committee NERFINISHED ⓘ |
| hasComponent |
STIX Cyber-observable Objects
NERFINISHED
ⓘ
STIX Domain Objects NERFINISHED ⓘ STIX Relationship Objects NERFINISHED ⓘ |
| hasConcept |
attack pattern
ⓘ
campaign ⓘ course of action ⓘ identity ⓘ indicator ⓘ infrastructure ⓘ intrusion set ⓘ location ⓘ malware ⓘ note ⓘ observed data ⓘ opinion ⓘ report ⓘ sighting ⓘ threat actor ⓘ tool ⓘ vulnerability ⓘ |
| hasVersion |
STIX 1.x
NERFINISHED
ⓘ
STIX 2.0 NERFINISHED ⓘ STIX 2.1 NERFINISHED ⓘ |
| primaryGoal | standardize cyber threat intelligence representation ⓘ |
| relatedStandard |
CybOX
NERFINISHED
ⓘ
TAXII NERFINISHED ⓘ |
| standardizedBy | OASIS NERFINISHED ⓘ |
| supports |
automation of threat intelligence sharing
ⓘ
interoperability between security tools ⓘ machine-readable threat intelligence ⓘ structured representation of cyber threats ⓘ |
| usedBy |
government agencies
ⓘ
incident response teams ⓘ information sharing and analysis centers ⓘ security operations centers ⓘ threat intelligence platforms ⓘ |
| usedFor |
analyzing cyber threat intelligence
ⓘ
representing cyber threat intelligence ⓘ sharing cyber threat intelligence ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.