The IT Law Wiki
Advertisement

Definitions[]

Observables are "[a]ny actions that reveal indicators which are exploitable by adversaries."[1]

An observable is

a set of properties or characteristics that describe an entity within the operational cyber environment, such as a UNIX file, a library, or a Windows Registry Key.[2]

An observable is "an event (benign or malicious) on a network or system."[3]

References[]

  1. OPSEC Glossary of Terms (full-text).
  2. MITRE, "Frequently Asked Questions" (full-text).
  3. Cyber-Threat Intelligence and Information Sharing, at 1 n.2.
Advertisement