FortiSIEM Discussions
HugoPinto
Contributor

Integrate Minemeld (Palo Alto) with FortiSIEM and FortiGuard

What is minemeld?

Minemeld is an IOC Aggregator, its used for EDL (External Dynamic List), it will collect IOC(s) from OTX, FortiGuard, join together and reduce duplicate entry's, then EDL will distribute to SIEM, Firewall, etc. the output can be in STIXX/TAXI, CSV, etc..

How to Push FortiGuard IOC, for separate the threats?

We will Push IOC(s) from the Fortiguard, for then separate the indicator for Threat Type, like APT Attack, Malware Post Infection.

0 REPLIES 0