Bleepingcomputer Criminal IP Partners with Securonix ThreatQ for Enhanced Threat Intelligence Integration
Article Content
- •Criminal IP integrates its Threat Intelligence into Securonix ThreatQ to enhance workflows.
- •The integration automates the enrichment of IP indicators with real-time contextual data.
- •Analysts can access enhanced threat intelligence directly within the ThreatQ interface.
On May 1, 2026, Criminal IP announced a partnership with Securonix to integrate its Threat Intelligence into ThreatQ. This integration allows organizations to enhance their existing workflows by incorporating external IP intelligence, improving the speed and effectiveness of threat analysis and response. Criminal IP's services provide visibility into asset exposure across the internet, which is a departure from traditional intelligence feeds. The integration enables automated enrichment of incoming IP indicators with contextual data, including maliciousness scoring and vulnerability detection. Security teams can access this enriched data directly within the ThreatQ interface, facilitating real-time validation of suspicious IP activity. The collaboration aims to streamline investigation processes and improve risk assessment capabilities. Analysts can also perform on-demand lookups and visualize enriched data through dashboards, enhancing overall situational awareness. This partnership reflects a growing trend toward exposure-based intelligence in cybersecurity.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…