PT Threat Intelligence Feeds

PT Threat Intelligence Feeds

Data feeds collected by Positive Technologies experts for threat detection

What are PT Threat Intelligence Feeds?

PT Threat Intelligence Feeds are data feeds on indicators of compromise (malicious domains, IP addresses, links, and file hashes) that provide SOC teams with current information on security threats.

PT ESC experts collect data for PT Threat Intelligence Feeds during incident investigations and research on hacker groups. Anonymized data from other Positive Technologies products is also used.

Загружайте в SIEM-систему

Integrate in SIEM systems

The most up-to-date data for fast and accurate threat detection

Integrate in other information security systems

Integrate in other information security systems

Quickly confirm and prioritize incidents with detailed context

Integrate in TI platforms

Integrate in TI platforms

Out-of-the-box integration with information security tools

Feed benefits

Important context to effectively and quickly detect dangerous activity on the network

Additional data for assessing incident severity and prioritizing response tasks

Regularly updated threat intelligence that can be used for proactive protection

Track current industry threats that are especially relevant for specific organizations

Created by the PT Expert Security Center

The PT Expert Security Center (PT ESC) is at the forefront of cyberthreat research, detection, response, and investigation of complex incidents in large companies. The PT ESC team also investigates the activities of hacker groups in Russia and around the world to learn about attacker tactics, techniques, and tools. Our specialists analyze and verify all the indicators of compromise in feeds to give you unique, valuable insights into real-world threats.

Features and advantages

Protection from real threats

Data from hundreds of threat intelligence sources allows you to counteract all modern information security threats

Reputation and assessment of potential damage

For each IoC, the Reputation and Potential Damage indicators are calculated; this helps to prioritize threats, assess the possible damage from their implementation, and focus on preventing the most dangerous of them

Improvement response to security incidents

The availability of contextual data allows you to quickly and accurately build a process for disarming the information security threat

Wide range of applications

The variety of feeds allows them to be used for any purpose: from protection against current threats to the implementation of policy scenarios

Integration with other vendors' products

PT Feeds supports different formats and an extensive list of information security tools, which is constantly being updated

Materials

General

Thinking about the best way to protect your company?

Contact us.

During the consultation we'll propose a solution precisely tailored to your organization.

 

General questions
We're happy to answer any questions you may have.
Partnership
Join us in making the world a safer place.
Request a pilot
Test drive our solutions with a customized pilot program.