With this Playbook app, you can integrate ThreatSTOP DNS and IP threat intelligence directly into Dataminr. ThreatSTOP aggregates threat intelligence from hundreds of sources to define custom policies loaded on Firewalls and DNS Servers to block malicious connections and DNS lookups. The “Active IOCs” integration between ThreatSTOP and Dataminr automates the import of the IOCs from ThreatSTOP Policies into the Dataminr TIP. This provides users with the ability to:
- Browse the IOCs in their current ThreatSTOP policies and view their metadata.
- Leverage their ThreatSTOP Policies in Dataminr playbooks.
This app can be downloaded by clicking the install button on the left.
