Data Feed: Operational Technology Protocol Exposure Intelligence

Operational technology (OT) systems are areas of critical importance that globally power many types of critical infrastructure. A security incident affecting OT can have catastrophic consequences, are highly specialized, and can be difficult to proactively secure.

Schema

Data available in Operational Technology Exposure Intelligence:

Field Description
record_id

String

An internal identifier for this exposure record.
company_guid

String [entity_guid]

The Universally Unique Identifier (UUID) of the company.
service_type

String

The protocol name.
first_seen

String [YYYY-MM-DD HH:MM:SS]

The first time this observation was detected.
last_seen

String [YYYY-MM-DD HH:MM:SS]

The most recent observation timestamp.
observations_count

Integer

The number of times this observation was detected.
observations

Array

Observation timestamps.
observation_ip

String

The IP this record was observed on, encoded in standard dot (IPv4) or colon (IPv6) string form.
port

Integer

The port where this record was observed.
domain

String

The domain in normalized punycode used for this observation (if applicable).
country

String

The country code associated with this record's IP, extracted by looking up the GeoName for convenience.
geoname_id

Integer

The GeoName identifier of the record’s location. This field is more precise than the country code.
transport

String

The transportation type used for this record.
  • November 27, 2024: Published.
Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.