diff --git a/taxonomies.html b/taxonomies.html index ad34df1..76ad508 100755 --- a/taxonomies.html +++ b/taxonomies.html @@ -482,6 +482,7 @@ body.book #toc,body.book #preamble,body.book h1.sect0,body.book .sect1>h2{page-b
An id value is required
+ + + + ++ + | ++ifx-vetting namespace available in JSON format at this location. The JSON format can be freely reused in your application or automatically enabled in MISP taxonomy. + | +
The IFX taxonomy is used to categorise information (MISP events and attributes) to aid in the intelligence vetting process
+The attribute/event describes something that is legitly used, but seems to be compromised by 3rd parties to be used for malicious activities. Consider this if blocking is your course of action.
+The attribute/event describes something legitly used, that does not show signes of compromise or misuse.
+The attribute/event describes something where it is not 100% clear if it is used only legitly.
+The attribute/event describes something that is definitly used maliciously.
+The attribute/event describes something that seems to be used maliciously, but there is no 100% proof.
+The attribute/event is invalid or wrong in respect to the situation described by the event.
+The attribute/event is irrelevant to your organization or CTI process.
+The nature of the attribute/event cannot be further determined. Use this only as a last resort.
+The attribute/event was not vetted but passed through for operational reasons. A result might be higher false-positive rates.
+IBAN
+Binary
+Hexadecimal
+Bitcoin address
@@ -8927,6 +9430,12 @@ infoleak namespace available in JSON format at +IBAN
+Binary
+Hexadecimal
+