Document:
Meeting Notes from CTI-TC Working Session - April 26

Draft (A preliminary unapproved sketch, outline, or version.)

Details

Submitted By Ms. Jane Ginn on 2016-04-26 8:04 pm UTC

Publication Type

None at this time.

Group / Folder

OASIS Cyber Threat Intelligence (CTI) TC / Meeting Notes

Modified by

Not modified.

Copy

This document is not a copy.

Technical Contact

None at this time.

Download Count

75

Download Agreement

None at this time.

Description

We covered the following Agenda items:

Status Updates - 5 minutes
1) Slack - Archiving the sightings and versioning channels
2) Vendor Defined Objects - Update, call for review
3) Observations (new name??) and Sightings - please review and make sure it will work

Working Session - 45 minutes
4) TTPs as a whole - need mini-group to help finish this
a) What to do with Kill-Chain and Kill-Chain-Phase TLOs
b) Can we merge Malicious Tool and Malware and just have a Boolean flag to distinguish them?
5) Can we remove the Common Types (Impact and Statement)?
6) Rename STIX Package
7) Exploit Targets as a whole

Week Ahead - 5 minutes
8) General call for other new mini-groups
9) Update on i18n