Threat Intelligence (threat intelligence, cyber intelligence) is the process of collecting, analyzing, and applying data on current cyber threats.
The goal is to study the objectives, tactics, and tools of attackers, and then build an effective strategy to defend against attacks.
Threat Intelligence helps:
⏺ Identify threats before they lead to an incident: for example, information about malicious IP addresses, domains, loaders, and exploits that can be used to block threats already at the perimeter;
⏺ Assist in incident investigation: Threat Intelligence data helps understand the attack vector, tools and methods used, as well as potential attackers;
⏺ Predict threats: by analyzing trends and the activity of hacker groups, Threat Intelligence specialists can predict potential threats for a specific organization or industry.
GitHub - hslatman/awesome-threat-intelligence: A curated list of Awesome Threat Intelligence resources
A curated list of Awesome Threat Intelligence resources - hslatman/awesome-threat-intelligence