RSA NetWitness Query Syntax Compared to Wireshark Display Filters
Common Information
Type Value
UUID 4bbb4382-1115-4d6e-bc14-81e1e9ce65db
Fingerprint 304cfe6524b76cdd
Analysis status DONE
Considered CTI value 1
Text language
Published Aug. 23, 2018, 7:50 p.m.
Added to db Jan. 18, 2023, 9:23 p.m.
Last updated Nov. 17, 2024, 5:57 p.m.
Headline NetWitness Community
Title RSA NetWitness Query Syntax Compared to Wireshark Display Filters
Detected Hints/Tags/Attributes 26/1/4
Attributes
Details Type #Events CTI Value
Details Domain 39
xxx.xxx.xxx.xxx
Details IPv4 124
192.168.0.0
Details IPv4 1
10.43.54.65
Details Threat Actor Identifier - APT 297
APT27