Infoblox Threat Defense with DDI (v2.0.4)

Utilize the Infoblox Threat Defense with DDI integration to manage SOC Insight incident response, indicator enrichment, and block cyber threats.

Author
Infoblox Inc.
Support
partner
URL
https://support.infoblox.com/
Default data source
InfobloxBloxOneThreatDefense
Categories
Data Enrichment & Threat Intelligence

Incident fields (37)

Integrations (2)

Layouts (2)

Modeling rules (1)

Playbooks (8)

README

Note: Support for this Pack was moved to Partner starting August 25, 2025. In case of any issues arise, please contact the Partner directly at support@infoblox.com or https://support.infoblox.com/.

The Infoblox Threat Defense with DDI integration leverages DNS as a security control point to detect and block cyber threats. This integration enables threat intelligence sharing, automated SOC Insight incident response, automated indicator enrichment, and DNS-based security controls within your Cortex XSOAR environment.

DNS Security

Threat Intelligence

DDI

Pack Use-cases

Support

Contact