Find notable cyber news and cases, enriched with sources, timelines, and signals.

Criminal IP and Securonix ThreatQ integration adds exposure intelligence to investigations

Security Tool/Service
First reported
Last updated
Happening score
H score 10
1 unique sources, 1 articles

Summary

Hide ▲

Criminal IP’s integration into ThreatQ adds IP reputation and exposure intelligence to security workflows, helping teams speed up analysis and response. The update automatically enriches incoming IP indicators with maliciousness scoring, VPN/proxy detection, remote access exposure, open ports, and known vulnerabilities. Analysts can validate suspicious activity inside the ThreatQ interface without disrupting existing processes. The change strengthens triage, prioritization, and investigation context at scale.

Related Happenings

2025 Rise in legitimate-access intrusions across enterprise sectors

Target Trend
First: 01.04.2026 17:05 Last: 01.04.2026 17:05 Sources 1

About this happening: **Legitimate access abuse** is now a leading intrusion pattern across **2025** investigations, increasing the risk of stealthy compromise across **manufacturing, healthcare, MSPs,...

Criminal IP integration adds threat enrichment to IBM QRadar SIEM and SOAR

Security Tool/Service
First: 13.02.2026 17:05 Last: 13.02.2026 17:05 Sources 1

About this happening: **Criminal IP** integrated with **IBM QRadar SIEM** and **QRadar SOAR**, bringing **external IP and URL threat intelligence** into SOC detection, investigation, and response workf...

Criminal IP integration into Cortex XSOAR adds AI-driven exposure intelligence and automated scanning

Security Tool/Service
First: 19.12.2025 16:30 Last: 19.12.2025 16:30 Sources 1

About this happening: **Criminal IP** has been officially integrated into **Palo Alto Networks Cortex XSOAR**, expanding SOC automation with **real-time threat context**, **exposure intelligence**, and...

Timeline

  1. 01.05.2026 17:02 2 articles · 26d ago

    Criminal IP and Securonix announce ThreatQ intelligence integration

    Initial Disclosure

    Criminal IP and Securonix announce a ThreatQ integration that embeds Criminal IP’s Threat Intelligence into ThreatQ so organizations can automatically enrich incoming IP indicators with maliciousness scoring, VPN/proxy detection, remote access exposure, open ports, and known vulnerabilities. The integration lets analysts access Criminal IP intelligence inside the ThreatQ interface, perform on-demand lookups from indicator detail views or investigation boards, and use exposure-based context to speed validation, triage, prioritization, and response.

    Show sources