Threat Intelligence
Live Fast-Flux Cyber Threat Intelligence
Real-time TAXII 2.1 feeds compatible with all major SIEM platforms. Track Fast Flux actors, Nation-State actors, and more. Seamlessly integrate with Microsoft Sentinel or any other SIEM.
Live Cyber Threat Map
Microsoft Sentinel Integration
Connect Microsoft Sentinel to our TAXII feeds with the built-in connector
MITRE TAXII Feed Configuration
Easy setup with any TAXII 2.1 compatible SIEM platform
Available Feeds
- Fast Flux actors detection
- Chinese Hacking Army tracking
- Nation-state threat actors
- MITRE ATT&CK Enterprise techniques
- MITRE ATT&CK Mobile techniques
- MITRE ATT&CK ICS techniques
TAXII 2.1 Configuration
Simply enter our API Root URL and specify the Collection ID to pull in real-time indicators.
API Root: https://cti.cyberautomation.com.au/taxii/
Collections:
- low - Low confidence indicators
- minimum - Minimum threshold indicators
- enterprise-attack - MITRE Enterprise ATT&CK
- mobile-attack - MITRE Mobile ATT&CK
- ics-attack - MITRE ICS ATT&CK
Free vs Premium Feeds
We offer both free threat feeds and premium, high-quality feeds for advanced data.
Free Feeds
- Basic Fast Flux detection
- MITRE ATT&CK frameworks
- Standard IoC updates
- Community threat data
Premium Feeds
- Enriched IoCs with context
- Enhanced correlation data
- Threat actor attributions
- Priority SOC-grade intel
Subscribe to Premium Feeds
Get access to enriched indicators, enhanced correlation, and threat actor attributions for enterprise SOCs.
Subscribe to Premium FeedsExplore All Products
See how all Cyber Automation products work together to secure your entire infrastructure.
Back to Product Overview