Skip to content

Latest commit

 

History

History
63 lines (45 loc) · 2.48 KB

File metadata and controls

63 lines (45 loc) · 2.48 KB

Tags

The following document defines the standardized tags that can be used to categorize the different Sigma rules.

  • Version 1.0.1
  • Release date 2022/12/19

Summary

Namespaces

Namespace: attack

Tactics:

Namespace: car

Use the CAR tag from the analytics repository without the prepending CAR-. Example tag: car.2016-04-005.

Namespace: cve

Use the CVE tag from the mitre in lower case seperated by dots. Example tag: cve.2021.44228.

Namespace: tlp

All TLP levels defined by the FIRST TLP-SIG in lower case. Example tag: tlp.amber.

History

  • 2022/12/19 Tags V1.0.1
    • Minor updates and tweaks
  • 2022/09/18 Tags V1.0.0
    • Initial formalisation from the sigma wiki
  • 2017 Sigma creation