arXiv · 2203.04136
Cybersecurity Playbook Sharing with STIX 2.1
Abstract
Understanding that interoperable security playbooks will become a fundamental component of defenders' arsenal to decrease attack detection and response times, it is time to consider their position in structured sharing efforts. This report documents the process of extending Structured Threat Information eXpression (STIX) version 2.1, using the available extension definition mechanism, to enable sharing security playbooks, including Collaborative Automated Course of Action Operations (CACAO) playbooks.
Explore related subjects
Keep this discovery
Vasileios Mavroeidis, Mateusz Zych. 2022-01-22. Cybersecurity Playbook Sharing with STIX 2.1. https://arxiv.org/abs/2203.04136
Cite the original work for its findings. Save a collection to share your selection of sources.