Acronym for Indicator of Compromise—technical evidence of a potential security breach.
IOC stands for Indicator of Compromise. See 'Indicator of Compromise' for the full definition. Common IOC types include IP addresses, domain names, URLs, file hashes (MD5, SHA256), email addresses, and registry keys.
Why It Matters
The DSC Perspective:
IOCs are the currency of threat intelligence sharing. When investigating incidents, collect and share IOCs with trusted parties. When receiving threat intelligence, integrate IOCs into your detection capabilities.
