Every claim in this report traces back to one of 30 evidence records below. Each was captured passively during recon, hashed at capture for chain-of-custody, and graded per the Admiralty Scale (NATO STANAG 2511). Click any ev_xxx chip elsewhere in the report to jump straight to its source record.
Cyber threat intelligence (CTI) is a part of cybersecurity that focuses on collecting, analyzing, and sharing information about potential or existing cyber threats. It gives organizations the information needed to predict, prevent, and respond to cyberattacks, enabling them to understand attackers’ behavior, tactics, and the vulnerabilities they exploit.
Threat Intelligence Platform (TIP) is an emerging technology discipline that helps organizations aggregate, correlate, and analyze threat data from multiple sources in real time to support defensive actions. … Modern threat intelligence platforms typically extend across many use-cases to encompass dark web monitoring, leaked credential monitoring, social media, and brand protection in addition to IOCs.
Mandiant, Inc. is an American cybersecurity firm and a subsidiary of Google. … In December 2013, FireEye acquired Mandiant for $1 billion. FireEye later sold its product line, name, and employees to Symphony Technology Group for $1.2 billion in June 2021. In March 2022, Google announced it would acquire Mandiant for $5.4 billion. The firm was fully incorporated into the Google Cloud division in September 2022.
Recorded Future, Inc. is an American cybersecurity company founded in 2009, with headquarters in Somerville, Massachusetts. The company was acquired by Mastercard in 2024.
Anomali Inc. is an American cybersecurity company that develops and provides threat intelligence products. In 2023, the company moved into providing security analytics powered by artificial intelligence (AI).
SourceOASIS Open — STIX V2.1 and TAXII V2.1 are published·Captured
Structured Threat Information Expression (STIX) is a language and serialization format used to exchange cyber threat intelligence. STIX enables organizations to share CTI with one another in a consistent and machine-readable manner.
CrowdStrike Holdings, Inc. is an American cybersecurity technology company based in Austin, Texas. It provides endpoint security, threat intelligence, and cyberattack response services. The company was co-founded in 2011 by George Kurtz, Dmitri Alperovitch, and Gregg Marston.
Palo Alto Networks, Inc. is an American multinational cybersecurity company with headquarters in Santa Clara, California. … It is home to the Unit 42 threat research team and hosts the Ignite cybersecurity conference.
Splunk Inc. is a subsidiary of Cisco Systems that produces software for indexing, searching, and analyzing machine-generated data … With a focus on cyber security and observability, Splunk describes its on-premises software and SaaS products as SIEM, SOAR, and observability solutions.
SourceRecorded Future newsroom — Mastercard Finalizes Acquisition of Recorded Future·Captured
Mastercard recently acquired the threat intelligence company as part of its efforts to secure the digital world against evolving cyber threats. Finalized December 2024.
Securonix Acquires ThreatQuotient to Deliver Industry's Broadest and Deepest Threat Detection Investigation and Response. The integration of Securonix and ThreatQuotient promises to deliver up to a 70% reduction in Mean Time to Respond (MTTR).
MISP Threat Sharing (MISP), formerly known as Malware Information Sharing Platform is an open source threat intelligence platform. The project develops utilities and documentation for more effective threat intelligence, by sharing indicators of compromise.
SourceMicrosoft Security Blog — Microsoft acquired RiskIQ to strengthen cybersecurity of digital transformation and hybrid work·Captured
Microsoft Defender Threat Intelligence will be discontinued and merged into Microsoft Defender for a powerful unified experience. Organizations can leverage RiskIQ threat intelligence to gain context on attackers.
EclecticIQ is ISO-certified. Headquartered in Amsterdam, and have offices in the UK, US and Singapore … From our AI-embedded threat intelligence platform to our services portfolio.
Kaspersky Lab is a Russian multinational cybersecurity and anti-virus provider company headquartered in Moscow, Russia. It was founded in 1997 by Eugene Kaspersky, Natalya Kaspersky and Alexey De-Monderik. … The Kaspersky Global Research and Analysis Team (GReAT) has led the discovery of sophisticated espionage platforms.
SourceGLEIF LEI record — ThreatConnect, Inc.·Captured
ThreatConnect, Inc. (LEI 25490037QYZS1T3TJR73), HQ 3865 Wilson Blvd #550, Arlington VA 22203 US; Delaware corporation 5626320; creation date 2014-11-13.
Trellix is a privately held cybersecurity company founded in 2022. It provides hardware, software, and services to investigate cybersecurity attacks, protect against malicious software, and analyze IT security risks.
The threat intelligence market is projected to grow from USD 11.55 billion in 2025 to USD 22.97 billion by 2030 at a compound annual growth rate (CAGR) of 14.7%.