Threat Intelligence is knowledge and information about potential or known cyber threats which pose risks to an organisation’s data, systems, and networks.
This includes collecting, analysing, and interpreting information from various sources to gain insights into the Tactics, Techniques, and Procedures (TTPs) employed by threat actors.
By leveraging this intelligence, organisations can strengthen their security posture, enhance their threat detection capabilities, and respond effectively to cyber threats, subsequently reducing the risk of successful attacks and minimising the potential impact on their systems and data.
The AUSCERT Daily Intelligence Report is a daily summary of cyber security news curated by our analysts from multiple reliable sources that enables you to stay up to date with current news and alerts. Each Friday we issue a “Week in Review” (WIR) summary with AUSCERT announcements, essential security bulletins, and key news articles from the week.
Members are issued with a Sensitive Information Alert if leaked credentials or sensitive material are found by our analyst team. Sensitive Information Alerts are issued via email and will include an encrypted file containing the data for your organisation to analyse and action.
Members who opt into AusMISP will be given access to our MISP instance, which is a shared feed of curated threat intelligence, including the ACSC CTIS (Cyber Threat Intelligence Sharing) data.
Utilise the provided threat indicators to enhance your network security by integrating them into defensive controls like SIEMs, firewalls, IDS/IPS, ACLs, web proxies, and mail filters.
AusMISP enables the sharing of diverse security-related data from members. This includes a comprehensive database that stores both technical and non- technical information about malware, incidents, attackers, and intelligence, such as:
AusMISP can help you identify relationships between attributes and indicators from malware, previous attack campaigns, or analysis through its correlation engine. This aids in connecting campaigns and understanding the techniques used in incidents.
This is a live feed and content is frequently added and removed based upon ongoing AUSCERT analysis and intelligence. It is available for two different time periods:
It’s an all-inclusive feed, for Phishing and Malware in both txt and xml formats.