Chapter 6: Threat Intelligence
This chapter has been included in an attempt to drive a straightforward concept home for all of you – intelligence matters! Without the inclusion of intelligence and intelligence analysts in a threat hunt, the entire effort will be severely hamstrung throughout the course of the hunt. It would be no different than trying to ride a tricycle that only has two wheels – it just does not work well.
In this chapter, we are going to cover the following topics:
- Types of intelligence
- Why intel matters
- Visualization model
- Threat intelligence feeds
- Scenario A—internal threat hunt
- Scenario B—external threat hunt
By the end of the chapter, you will be able to do the following:
- Identify the different types of intel that could be applied to a threat hunt.
- Comprehend the importance of intelligence during a hunt.
- Comprehend how intelligence can be applied to a team throughout a hunt. ...