Contact
All of the portfolioCyberthint
Threat intelligence

Cyberthint

Cyberthint watches the surface, deep and dark web for what is being said, leaked and sold about your organisation.

The alternative

Recorded Future and Intel 471. Both deliver intelligence on the assumption that you have an analyst to read it.

At a glance

Modules
Nine main modules and twenty five sub-modules
Coverage
Surface web, deep and dark web, underground forums, leaked databases, paste sites, messaging groups, social media
Integrations
SIEM and firewall, and a full API
Outputs
TXT, JSON, CSV, and STIX and TAXII
A global feed is raw material. Cyberthint brings you the part that is about you, already scored.

The breadth is in one platform rather than in a stack. Leak monitoring, brand impersonation, external asset discovery through whois, DNS, subdomains and open ports, command and control infrastructure, and malware tracking all render in the same interface, scoped to assets you defined rather than to the internet in general.

That scoping is the commercial difference, not a convenience. A team with no analyst of its own needs the part that names their domain, their brand and their executives, already prioritised by risk. Everything else is work somebody has to do before the intelligence becomes a decision. Where an analyst does exist, the same findings leave in STIX and TAXII and through the API, so the platform feeds a process rather than replacing it.

The second difference is regional visibility. Campaigns aimed at Türkiye and the surrounding geography get analysed and published, where a global provider reaches a regional actor later.

How it works

  • Your digital assets are defined first. Domains, brands, executives
  • Surface, deep and dark web are monitored continuously
  • Leaked credentials, lookalike domains and card data offered for sale are identified
  • Findings are scored and prioritised rather than delivered as a feed
  • Output leaves as an alert, a report, or a feed into the SIEM

Who it is for

  • Finance, e-commerce and public bodies whose brand is imitated
  • Organisations holding customer data that has to be watched for
  • Security teams with no analyst of their own
  • Teams that have a SIEM and need something worth putting into it

What we can point to

  • Listed on Gartner Peer Insights

Where it sits

Threat intelligence. Cyberthint maps your external assets in order to know what to watch for. S4E, in exposure management, monitors them in order to tell you what to fix.

Talk to us about CyberthintVendor site