
Jun 21, 2023
1.1.0
ThreatQ versions >= 4.25.0
Accenture CTI
Overview
Accenture CTI empowers its customers' environments with contextual, timely and actionable security intelligence, enabling businesses and governments to make smarter decisions to defend against new and evolving threats.
Accenture CTI Insights help your Organization:
- Improve IT expenditure and resource allocation decisions
- Detect, analyze and mitigate attacks faster
- Investigate, prioritize and remediate incidents
- Increase your team's capability and productivity
- Evolve existing tools with better visibility
- Secure high-value assets and programs from advanced threats
Feeds included:
- Accenture CTI Campaigns
Threat Campaigns, supporting context, and relationships to Adversaries, Campaigns, Malware, TTPs, and Tools.
-
Accenture CTI Domains
Domains, supporting context, and relationships to Malware families, Indicators, and more.
-
Accenture CTI Global Events
Major Global Events and their related context.
Note: This feed has a low volume of data.
-
Accenture CTI Hashes
File hashes, supporting context, and relationships to Malware families, Indicators, and more.
-
Accenture CTI IPs
IP addresses, supporting context, and relationships to Malware families, Indicators, and more.
-
Accenture CTI Malicious Events
Events, supporting context, and relationships to Adversaries, Malware families, Indicators, and more.
-
Accenture CTI Malicious Tools
Tools, supporting context, and relationships to Adversaries, Malware families, Indicators, and more.
-
Accenture CTI Malware Families
Malware families and their supporting context.
Note: Due to the large amount of indicators provided by this feed, they have been excluded. Instead, it brings in attributes and a description.
-
Accenture CTI Threat Actors
Threat Actors, supporting context, and relationships to Malware families, TTPs, and more.
-
Accenture CTI Vulnerabilities
Vulnerabilities (ingested as CVE indicators) with related context such as CVSS (v2 and v3) scores, severity, popularity, references, and more.
Data Summary
Objects included in most feeds above:
Adversaries, Campaigns, Events, Indicators (FQDN, Filename, IP Address, MD5, SHA-1, SHA-256, URL), Malware, Tools, TTPs
Supporting context included in most feeds above:
Affected Technology, Alias, Analysis, Attack Type, Capability, CVSS Base Score (v2 / v3), CVSS Temporal Score (v2 / v3), CWE, Description, Event Type, Has Zero Day, Hashtag, iDefense Title, Impacted Country, Impacted Organization, Impacted Vertical, Interesting Characteristics, Language, Last Seen As, Location, Metadata, Mitigation, Motivation, Motive, Nationality, Popularity, Proof of Concept, Real Name, Reference, Religion, Severity, Skill Level, Targeted Country, Targeted Organization, Targeted Vertical, Threat Type, Variety, Vector, Vendor Fix