Intelligence Card Extensions
We’ve teamed up with select intelligence providers to develop extensions to help analysts find insights about emerging threats faster, by merging complementary threat intelligence from other providers and security firms into Intelligence Cards within Recorded Future.
Intelligence Cards™ are concise summaries of threat intelligence entities, e.g., IP addresses, domains, hashes, URLs, vulnerabilities, and malware families.
Some of these extensions are provided free of charge as part of your Recorded Future platform and others require you to bring your own credentials. The matrix below provides information on the different indicator types that each Intelligence Card Extension provides intelligence on:
Availability | IP | Domain | Hash | URL | Vulnerability | Malware | File | ||
AlienVault OTX | ⤫ | ✓ | ✓ | ✓ | ✓ | ||||
Bitdefender | ※ | ✓ | ✓ | ||||||
BitSight | ⤫ | ✓ | ✓ | ||||||
Censys | ⤫ | ✓ | ✓ | ✓ | ✓ | ||||
Cisco Umbrella Investigate | ⤫ | ✓ | ✓ | ✓ | |||||
Cofense | ⤫ | ✓ | ✓ | ✓ | |||||
DomainTools | ⤫ | ✓ | ✓ | ||||||
DomainTools Iris | ⤫ | ✓ | |||||||
Dragos | ⤫ | ✓ | ✓ | ✓ | |||||
Facebook ThreatExchange | ⤫ | ✓ | ✓ | ✓ | ✓ | ✓ | |||
Farsight Security | ⤫ | ✓ | ✓ | ||||||
GreyNoise | ⤫ | ✓ | |||||||
IBM X-Force Exchange | ⤫ | ✓ | ✓ | ✓ | ✓ | ✓ | |||
InQuest | ※ | ✓ | ✓ | ✓ | ✓ | ||||
Kaspersky | ⤫ | ✓ | ✓ | ✓ | ✓ | ||||
Mandiant | ⤫ | ✓ | ✓ | ||||||
Nucleon | ⤫ | ✓ | |||||||
Palo Alto Networks AutoFocus | ⤫ | ✓ | |||||||
Polyswarm | ※ | ✓ | |||||||
ReversingLabs | ⤫ | ✓ | ✓ | ✓ | ✓ | ✓ | |||
RiskIQ PassiveTotal | ⤫ | ✓ | ✓ | ||||||
SecurityTrails | ※* | ✓ | |||||||
SentinelOne Deep Visibility | ⤫ | ✓ | ✓ | ||||||
ServiceNow | ⤫ | ✓ | ✓ | ✓ | ✓ | ||||
Shodan | ※ | ✓ | ✓ | ✓ | |||||
Symantec DeepSight | ⤫ | ✓ | ✓ | ✓ | ✓ | ||||
ThreatConnect | ⤫ | ✓ | ✓ | ✓ | ✓ | ✓ | |||
VirusTotal | ⤫ | ✓ | ✓ | ✓ |
Availability key:
※ = All Recorded Future
⤫ = Bring Your Own Credentials
* = module specific to Brand or Threat Intelligence