Skip to main content
Ctrl+K
Logo image Logo image

EclecticIQ Intelligence Center 3.1.1

Site Navigation

  • Release notes
  • Install Configure Upgrade
  • Get to know EclecticIQ Intelligence Center
  • Work with intelligence
  • Integrations

Section Navigation

  • Data model and EclecticIQ JSON
  • MITRE ATTACK
  • Entities
    • STIX compatibility
      • STIX 2.1 Common Properties
      • STIX 2.1 STIX Patterns
      • STIX 2.1 Indicator SDO
      • STIX 2.1 Observed Data SDO
      • STIX 2.1 Data Markings
      • STIX 2.1 Cyber-observable Objects
      • STIX 2.1 Known issues
    • Edit entities
    • Copy entities
    • Entity details
      • Access the entity detail pane
      • Examine the entity overview
      • Entity versions
      • Entity history
      • Observables tab
      • Manually add observables from entities overview
      • Neighborhood tab
      • Add relationships
      • JSON tab
      • Download PDFs
    • Entity types
      • Entities: Common properties
      • Attack pattern
      • Campaign
      • Course of Action
      • Exploit target
      • Identity
      • Incident
      • Indicator
      • Infrastructure
      • Intrusion Set
      • Location
      • Malware
      • Malware Analysis
      • Report
      • Sighting
      • Threat Actor
      • Tool
      • TTP (deprecated)
    • Create entities
      • Draft and published entities
      • Create entities from observables
    • View and search
      • Dashboard overview
      • Search for entities
      • Discover entities
      • Act on exposed entities
    • Manage entities
      • Manually upload files
      • Review uploaded files
      • Upload failure
      • Export entities
      • Download entities
      • Delete entities
      • Merge entities
  • Observables
    • About observables
    • Add observables
    • Manage observables
    • Ignore observables
    • Observable link types
    • Observable maliciousness
  • Relationships
    • Relationship type compatibility tables
  • Taxonomy
    • About taxonomy
    • Create a taxonomy entry
    • Edit a taxonomy entry
    • Filter by tag and taxonomy
    • Delete a taxonomy entry

Entity types#

Entities are objects on EclecticIQ Intelligence Center that you can use to represent discrete pieces of threat intelligence.

Tip

Sections or properties may be marked with Compatible with STIX 2.1 export or Compatible with STIX 1.2 export to describe the version of STIX supported. See STIX compatibility.

  • Entities: Common properties
  • Attack pattern
  • Campaign
  • Course of Action
  • Exploit target
  • Identity
  • Incident
  • Indicator
  • Infrastructure
  • Intrusion Set
  • Location
  • Malware
  • Malware Analysis
  • Report
  • Sighting
  • Threat Actor
  • Tool
  • TTP (deprecated)

previous

Download PDFs

next

Entities: Common properties