Cyberint Premium Feed
Use the Check Point EM ThreatCloud Intelligence Feed integration to ingest high-fidelity IOC indicators from the Cyberint Infinity External Risk Management IOC APIs and to enrich a single indicator on demand.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- Cyberint
Configuration parameters
- url — Cyberint API URL (required)
- client_name — Company Name (required)
- access_token — API Key (Leave empty. Fill in the API Key in the password field.) (required)
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- feed — Fetch indicators
- feedReputation — Indicator Reputation
- feedReliability — Source Reliability (required)
- tlp_color — Traffic Light Protocol Color
- indicator_type — Indicator Type (required)
- activity — Activity
- confidence_min — Confidence Min
- confidence_max — Confidence Max
- severity_min — Severity Min
- severity_max — Severity Max
- malicious — Malicious
- first_fetch — First Fetch Time
- feedExpirationPolicy —
- feedExpirationInterval —
- feedFetchInterval — Feed Fetch Interval
- feedTags — Tags
- feedBypassExclusionList — Bypass exclusion list
Commands (2)
- cyberint-premium-enrich — Enriches a single IOC indicator with reputation, threat intelligence, and type-specific enrichment data.
- cyberint-premium-get-indicators — Gets indicators from the Infinity External Risk Management feed.