Threat Intelligence
TAXII
Trusted Automated Exchange of Intelligence Information
Formal standard
Global
OASIS Cyber Threat Intelligence TC
Since 2012
The HTTPS application protocol for exchanging STIX content: collections to pull from, channels to subscribe to, and the API endpoints a sharing community agrees on.
Deploy it when you join a sharing community that runs one; there is no reason to adopt it in isolation.
At a glance
- Category
- Threat Intelligence
- Jurisdiction
- Global
- Governance
- OASIS Cyber Threat Intelligence TC
- Status
- TAXII 2.1 OASIS Standard (2021)
- First released
- 2012
Links
Related frameworks
Other entries under Threat Intelligence.
- MITRE ATT&CK: Adversarial Tactics, Techniques and Common Knowledge
- MITRE D3FEND: Defensive Countermeasures Knowledge Graph
- CWE: Common Weakness Enumeration
- CAPEC: Common Attack Pattern Enumeration and Classification
- STIX: Structured Threat Information Expression
See TAXII in context
Open the interactive Data Landscape for Regulation to compare TAXII against every other framework, or grab the raw JSON. Certification schemes and editions move — follow the source links before relying on this page.