Skip to content

Hide Navigation Hide TOC

Function: Incident response vulnerability discovery (776f8c85-cd4e-5c93-b57e-fae183d54868)

During the course of analyzing a security incident, information may be discovered that indicates that a vulnerability was exploited by the attacker. An incident may have been enabled through exploitation of a known vulnerability that was previously unpatched or unmitigated; or it may be due to a new (zero-day) vulnerability. Some of this vulnerability information might be received as an output from one of the services of the Information Security Incident Management service area if a vulnerability was exploited as part of an incident. The information can then be passed on to the Vulnerability Triage function or the Vulnerability Analysis service, as appropriate.

Cluster A Galaxy A Cluster B Galaxy B Level
Function: Incident response vulnerability discovery (776f8c85-cd4e-5c93-b57e-fae183d54868) FIRST CSIRT Services Framework Service: Vulnerability discovery / research (e43c7bab-34c9-5ee1-9e40-915d265ccd70) FIRST CSIRT Services Framework 1