User Tools

Site Tools


risk_classifications

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Next revision
Previous revision
risk_classifications [2023/11/15 12:46]
kaduuwikiadmin created
risk_classifications [2023/11/15 12:50] (current)
kaduuwikiadmin
Line 1: Line 1:
-You can find risk scores in various places in Kaduu. These are based on different criteria depending on the topic. For example, the risk scores for leaks are assigned based on the "tags". A tag is a description of what can be found in the leak. Examples of tags:+You can find risk scores in various places in Kaduu. These are based on different criteria depending on the topic. For example, the risk scores for leaks are assigned based on the "tags". A tag is a description of what can be found in the leak. 
  
-  - PII +{{::tags.png?950}}
-  - Address +
-  - Account +
-  - Hash +
-  - Password +
-  - Private +
-  - Business +
-  - Credit card +
-  - Phone +
-  - etc+
  
-For example, a leak that only contains the address of a user has a different risk than a leak that also contains a password or a credit card. 
  
 +Examples of tags:
  
-However, we also use risk scores which are determined more precisely. Examples:+  * PII 
 +  * Address 
 +  * ccount 
 +  * Hash 
 +  * Password 
 +  * Private 
 +  * Business 
 +  * Credit card 
 +  * Phone 
 +  * etc
  
-Infrastructure: If server has unusual ports, is recognizable as test or staging server or has CVE vulnerabilities.+For example, leak that only contains the address of a user has a different risk than a leak that also contains a password or a credit card. 
 + 
 +However, we also use risk scores which are determined more precisely. Examples:
  
-  Domains: If the domain fulfills certain criteria (reported in Phishtank, suspicious URL, automatic download, reported in Virustotal, etc.). See risk analysis in [[https://urlscan.kaduu.io/]]https://urlscan.kaduu.io/+  * [[public_ip_s_and_passive_vulnerability_monitoring|Infrastructure]]: If a server has unusual ports, is recognizable as a test or staging server or has CVE vulnerabilities. 
 +  * [[domain_database_search|Domains]]: If the domain fulfills certain criteria (reported in Phishtank, suspicious URL, automatic download, reported in Virustotal, etc.). See risk analysis in [[https://urlscan.kaduu.io/]]
risk_classifications.1700048782.txt.gz · Last modified: 2023/11/15 12:46 by kaduuwikiadmin