Sep 17, 2024
1.0.0
ThreatQ versions >= 5.6.0
RST Threat Feed TAXII Feeds
Overview
The RST Threat Feed is comprehensive threat intel feed of indicators (IP, Domain, URL, Hash) with their relationships to malware, TTPs, tools, threat groups, sectors, CVE, and other objects. Compiled from over 260 sources, including Twitter, Telegram, online sandboxes (Any.Run, Hybrid Analysis, VMRay, etc.), threat reports, CERTs, malware research sites, GitHub, pastebin, closed sources and our global RST Honeypot network.
This guide will provide you with the steps to install the following RST TAXII feeds:
- RST Threat Feed: High Risk Indicators
- RST Threat Feed: Medium Risk Indicators
- RST Threat Feed: Low Risk Indicators
Note: These feeds are TAXII feeds and do not require installation files from the ThreatQ Marketplace.