350-701 · Question #557
Which threat intelligence standard contains malware hashes?
The correct answer is C. structured threat information expression. STIX is a standardized language for sharing cyber threat intelligence, encompassing various indicators including malware hashes.
Question
Which threat intelligence standard contains malware hashes?
Options
- Aadvanced persistent threat
- Bopen command and control
- Cstructured threat information expression
- Dtrusted automated exchange of indicator information
How the community answered
(54 responses)- A2% (1)
- B4% (2)
- C87% (47)
- D7% (4)
Why each option
STIX is a standardized language for sharing cyber threat intelligence, encompassing various indicators including malware hashes.
Advanced Persistent Threat (APT) describes a type of sophisticated, prolonged cyberattack, not a threat intelligence standard itself.
Open Command and Control (OpenC2) is a standard for command and control of cyber defense systems, not a standard for threat intelligence content.
Structured Threat Information Expression (STIX) is a standard for representing and exchanging cyber threat intelligence, designed to convey a full range of CTI data, including indicators like malware hashes, IP addresses, and domain names. This enables automated sharing and analysis of threat information across organizations and security tools.
Trusted Automated Exchange of Indicator Information (TAXII) is a standard for *exchanging* cyber threat intelligence, working in conjunction with STIX, but STIX is the standard that *contains* the threat intelligence itself, like malware hashes.
Concept tested: Cyber Threat Intelligence standards
Source: https://www.oasis-open.org/standards/stix/
Topics
Community Discussion
No community discussion yet for this question.