Cisco Security and Cybersixgill

Cybersixgill & Cisco - Endpoint protection at machine speed

Darkfeed is the most comprehensive feed of malicious IOCs available - autonomously extracted & delivered in real-time with critical context about the nature, source & urgency of each threat - helping customers capture & block IOCs before they are weaponized. 

Cybersixgill’s CTI solutions are powered by the most extensive, automated collection of threat intelligence from the cybercriminal underground, providing exclusive and real- time access to the largest database of deep, dark and clear web activity on the market. Our proprietary algorithms extract data from a wide range of sources, including content from limited-access deep and dark web forums, underground markets, invite-only messaging groups on Telegram, Discord and QQ, as well as an unparalleled archive of indexed, searchable historical data from as early as the 1990s. This data is then enriched with machine learning techniques to create profiles and patterns of malicious threat actors and their interactions with peers across platforms, which otherwise remain invisible or inaccessible to enterprises.

Product Integrations: Darkfeed Enrichment

  • SecureX threat response: With this strategic partnership, Cisco SecureX users can seamlessly access Cybersixgill’s industry-leading real-time cyber threat intelligence data directly through their SecureX dashboard, and gain full visibility into their organizational threat landscape at massive scale.
  • Darkfeed is the most comprehensive stream of malicious Indicators of Compromise (IPs, URLs, malware hashes, RDPs, and more) on the market - autonomously extracted and delivered in real-time, enriched with critical context surrounding the source, actor, post title and creation date of each threat. While most TI feeds are generated from telemetry - detecting attacks already in progress - Darkfeed collects, tags and filters IOCs sourced directly from chatter among cybercriminals in the underground, capturing emerging threats in the earliest stages of the malicious supply chain as they surface on the forums and markets of the deep & dark web. Darkfeed’s indicators are both unique (66% undetected by other antivirus vendors), and proactive, alerting to an IOC days or even months before it is weaponized in an attack and detected by traditional telemetry.