Which threat intelligence sharing platform and protocol enables automated machine-to-machine exchange of threat indicators in a standardized format?
Select an answer to reveal the explanation.
Short Explanation and Infographic
Here's the deal — b is correct because TAXII is the transport protocol for sharing STIX-formatted threat intelligence objects; together they form the de facto standard for automated, machine-readable threat intelligence exchange between organizations and platforms. A is wrong because CVE is a vulnerability identifier database, not a threat intelligence sharing protocol for indicators.
Full explanation below image
Full Explanation
B is correct because TAXII is the transport protocol for sharing STIX-formatted threat intelligence objects; together they form the de facto standard for automated, machine-readable threat intelligence exchange between organizations and platforms. A is wrong because CVE is a vulnerability identifier database, not a threat intelligence sharing protocol for indicators. C is wrong because SNMP traps are network management event notifications from network devices, not threat intelligence sharing. D is wrong because syslog is a log transport protocol; it does not carry structured threat intelligence in the STIX format.