
Jun 21, 2023
1.0.0
ThreatQ versions >= 4.37.0
Kaspersky APT DEMO CDF
Overview
The Kaspersky APT DEMO CDF ingests threat intelligence data used in malicious APT campaigns from Kaspersky Threat Intelligence.
The CDF includes the following feeds:
- Kaspersky APT IPs DEMO - ingests IP Address indicators and attributes.
- Kaspersky APT URLs DEMO - ingests indicators and attributes.
- Kaspersky APT Hashes DEMO - ingests hash indicators and attributes.
The integration ingests the following system object types:
- Indicators
- Indicator Attributes