Threat Intelligence
Security
Curated data about adversaries, indicators, tactics, and campaigns used to inform detection and response.
Definition
Includes indicators of compromise (IOCs), tactics/techniques (TTPs), and contextual analysis. It supports detection rules and incident response, but must be validated for relevance.
Why this matters
Why it matters: Timely intel reduces dwell time and helps prevent repeat attacks.
Example
Example: Feed relevant IOCs into monitoring, tune alerts, and update training for prevalent phishing lures.
Apps Using Threat Intelligence
Examples of apps that implement or relate to this privacy concept