
Cite this RFC:TXT | XML | BibTeX
DOI: https://doi.org/10.17487/RFC9424
Discuss this RFC: Send questions or comments to the mailing listopsec@ietf.org
Other actions:View Errata | Submit Errata | Find IPR Disclosures from the IETF | View History of RFC 9424
Cyber defenders frequently rely on Indicators of Compromise (IoCs) toidentify, trace, and block malicious activity in networks or onendpoints. This document reviews the fundamentals, opportunities,operational limitations, and recommendations for IoC use. Ithighlights the need for IoCs to be detectable in implementations ofInternet protocols, tools, and technologies -- both for the IoCs'initial discovery and their use in detection -- and provides afoundation for approaches to operational challenges in networksecurity.
For the definition ofStatus,seeRFC 2026.
For the definition ofStream, seeRFC 8729.