Hacker News new | ask | show | jobs
by _wldu 1481 days ago
I'd be hesitant to consume this in a firewall or DNS RPZ. What if someone reported google.com as malicious?
1 comments

Happens all the time and those threat feeds aggregation platform that have a black box ML confidence generator for IOCs aren’t trustworthy either.

In this day and age, if people don’t put emphasis on TTPs and still only rely on old style threat intel, they will become obsolete.

TTPs?