Indicator Types

Indicator types are determined by searching for predefined regular expressions (regex) in the War Room or by user assignment.
The indicators are categorized by indicator type, which determines the indicator layout (fields) that are displayed and which scripts are run on indicators of that type.
There are several system-level indicator types.
  • IP Address
  • Registry Path Reputation
  • File
  • Email
  • Username
  • Hostname
  • Domain
  • File Enhancement Scripts
  • CVE CVSS Score

Recommended For You