ThreatIocMaliciousFlag
Threat ioc malicious flag
Values
mlops_ioc_email_attachments_ms_removed
mlops_ioc_email_attachments_type_compressed
mlops_ioc_email_attachments_type_doc
mlops_ioc_email_attachments_type_eml
mlops_ioc_email_attachments_type_html
mlops_ioc_email_attachments_type_macro_enabled
mlops_ioc_email_attachments_type_pdf
mlops_ioc_email_body_contains_only_clickable_image
mlops_ioc_email_body_has_detection_obfuscation
mlops_ioc_email_body_mentions_advance_fee_keywords
mlops_ioc_email_body_mentions_bitcoin
mlops_ioc_email_body_mentions_fax_keywords
mlops_ioc_email_body_mentions_free_service_email
mlops_ioc_email_body_mentions_large_sums_of_money
mlops_ioc_email_body_mentions_lottery_scam_keywords
mlops_ioc_email_body_mentions_microsoft_and_payment
mlops_ioc_email_body_mentions_money_lending
mlops_ioc_email_body_mentions_money_transfer_keywords
mlops_ioc_email_body_mentions_password_and_expire
mlops_ioc_email_body_mentions_urgency_keywords
mlops_ioc_email_body_mentions_voicemail
mlops_ioc_email_body_mentions_wetransfer
mlops_ioc_email_commercial_deception
mlops_ioc_email_fake_ms_planner
mlops_ioc_email_fake_subscription_renewal
mlops_ioc_email_html_contains_ms_logo
mlops_ioc_email_html_has_hidden_text
mlops_ioc_email_is_flagged_by_spam_filter
mlops_ioc_email_is_reconnaissance
mlops_ioc_email_links_contain_equals_receiver_email
mlops_ioc_email_links_contain_hashtag_receiver_email
mlops_ioc_email_links_contain_open_redirects
mlops_ioc_email_links_to_cloud_sharing
mlops_ioc_email_links_to_third_party_services
mlops_ioc_email_links_url_shortener
mlops_ioc_email_mentions_adult_content
mlops_ioc_email_mentions_business_opportunity
mlops_ioc_email_mentions_document_signing
mlops_ioc_email_mentions_financial_institution
mlops_ioc_email_mentions_human_resources
mlops_ioc_email_mentions_it_department
mlops_ioc_email_mentions_law_enforcement
mlops_ioc_email_mentions_postal_service
mlops_ioc_email_mentions_qr_keywords
mlops_ioc_email_mentions_remittance_advice
mlops_ioc_email_receivers_all_in_bcc
mlops_ioc_email_sender_address_free_service
mlops_ioc_email_sender_address_matches_receiver_address
mlops_ioc_email_sender_name_has_authority_impersonation
mlops_ioc_email_sender_name_has_email
mlops_ioc_email_sender_name_has_homoglyphs
mlops_ioc_email_sender_name_has_phone_number
mlops_ioc_email_subject_has_detection_obfuscation
mlops_ioc_email_subject_has_receiver_alias
mlops_ioc_email_subject_has_receiver_domain
mlops_ioc_email_subject_has_receiver_email
mlops_ioc_email_subject_many_upper_case_chars