<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Knowledge management :: ODEF</title><link>https://odef.wiki/knowledge/index.html</link><description>Chapter 4 Knowledge management The importance of knowledge in an organization</description><generator>Hugo</generator><language>en-US</language><atom:link href="https://odef.wiki/knowledge/index.xml" rel="self" type="application/rss+xml"/><item><title>Documentation Template</title><link>https://odef.wiki/knowledge/doc-template/index.html</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://odef.wiki/knowledge/doc-template/index.html</guid><description>Template should be used to standardize the detection content and create a knowledge base&#10;Detection Summary Status (developing/active/decommissioned) Goal (Why) The goal of the detection TTP (What) Mitre attack link Strategy (How) Query or short explanation about it Automation (When) Schedule and automation details Sources (Where) Data sources used for the detection Severity high/medium/low Priority high/medium/low Research Goal The goal section provides the intended purpose of the alert. It is a simple, plaintext description of the type of behavior you’re attempting to detect and why.</description></item></channel></rss>