%% You should probably cite draft-grimminck-safe-ioc-sharing-12 instead of this revision. @techreport{grimminck-safe-ioc-sharing-06, number = {draft-grimminck-safe-ioc-sharing-06}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-grimminck-safe-ioc-sharing/06/}, author = {Stefan Grimminck}, title = {{A Standard for Safe and Reversible Sharing of Malicious URLs and Indicators}}, pagetotal = 10, year = , month = , day = , abstract = {This document codifies a consistent and reversible convention used in the threat intelligence and security communities for sharing potentially malicious indicators of compromise (IOCs), such as URLs, IP addresses, email addresses, and domain names. It describes a safe obfuscation format that reduces the risk of accidental execution or activation when IOCs are displayed or transmitted. These conventions aim to improve interoperability among tools and feeds that exchange threat intelligence data. This specification references the URI syntax defined in RFC 3986 and follows the key word conventions from RFC 2119.}, }