<?xml version="1.0" encoding='utf-8'?>
<!DOCTYPE wml PUBLIC "-//WAPFORUM//DTD WML 1.1//EN" "http://www.wapforum.org/DTD/wml_1.1.xml">
<wml>
<card id="card1" title="Cyber threat intelligence - Page 7 - Wikipedia">
<p>
<a accesskey="1" href="page.php?w=Cyber_threat_intelligence&amp;p=6">1.Previous</a><br />
<a accesskey="3" href="page.php?w=Cyber_threat_intelligence&amp;p=8">3.Next</a>
</p>
<p>malware signatures, and similar artifacts. Security operations teams use these indicators to identify and block threats in real time through <a href="page.php?w=SIEM">SIEM</a> rules, <a href="page.php?w=Firewall_%28computing%29">firewall</a> policies, and endpoint detection systems.<br/>
* Operational: Focused on understanding adversary behavior and campaigns. Operational intelligence analyzes who the threat actors are, their <a href="page.php?w=tactics%2C_techniques%2C_and_procedures">tactics, techniques, and procedures</a> (TTPs), infrastructure</p><p>
<a accesskey="1" href="page.php?w=Cyber_threat_intelligence&amp;p=6">1.Previous</a><br />
<a accesskey="3" href="page.php?w=Cyber_threat_intelligence&amp;p=8">3.Next</a>
</p>

<do type="prev" label="Search">
        <go href="search.wml"/>
</do>

</card>
</wml>
