- 29 Jul 2024
- 1 Minute to read
- Print
- DarkLight
View a list of all IOCs and IOFAs across all feeds and collections
- Updated on 29 Jul 2024
- 1 Minute to read
- Print
- DarkLight
Silent Push collects an exhaustive list of Indicators of Compromise (IOCs
) currently featured in all available feeds and collections, and corroborates the data into one indexed and searchable screen - Threat Ranking
.
To access the Threat Ranking
screen, navigate to Threat Intelligence Management > Threat Ranking
. Threat data is displayed across 9 categories:
Threat Name
- The name of the observableIOC Type
- The observable type (IP
,Domain
orURL
)Source
- The name of the feed providing the IOCVendor
- The feed ownerSource Score
- Harmfulness score from 0 to 100 calculated based on a custom Silent Push algorithmEnriched Score
- Cumulative score incorporating all secondary enriched attributesCustom Score
- Cumulative score incorporating all custom attributesTotal Score
- Single metric incorporating the source score, enriched score and source score.
Basic searching and filtering
The Threat Ranking screen allows you to search all available observables using text strings, and order the data using custom filtering options.
To search for a specific observable, type its name in the
Search Observable Name
boxTo apply custom filtering options on a per-category basis, click the filter icon next to the category name.
- For example, click the filter icon next to the
Source Score
category name, and use the slider to only search for data with a score of up to and including0
,25
,50
,75
or100
.
- For example, click the filter icon next to the
Click the
All
,Feeds
orCollections
buttons to only display data contained in feeds, collections, or both
For more advanced search options that use operators and statements, take a look at this article.