What attribution data do you actually find useful when looking up an IOC?
Hey everyone!
I'm fairly new to threat intelligence, and I've been trying to understand which attribution details are actually worth paying attention to.
When you look up an IOC, what's most useful to you: the malware family, campaign, threat actor, related tools or infrastructure, or something else?