ManageEngine Log360 integrates with ThreatFox, an open-source threat intel platform, to enhance threat detection experience for its customers. ThreatFox offers a list of domain-based indicators of compromise (IoCs), with datasets—such as payload delivery domains, Botnet C2 domains, etc.—that get added to Log360's Central Threat Repository. This data is used to detect and defend against malicious domains.
Combining this wealth of knowledge with Log360's robust threat mitigation capabilities, you can be assured that your organization stays secure.
Please note that the integration comes with the basic pricing of Log360. The Advanced Threat Analytics (ATA) add-on contain credible and curated threat feeds from our technical partners like BrightCloud and Constella Intelligence.
The ATA add-on is required to obtain the ThreatFox integration. There's no additional configuration needed to enable this integration, as Log360 auto-fetches threat data from this open-source community.
Key benefits:
ThreatFox is a project operated by abuse.ch. The purpose of this project is to collect and share indicators of compromise (IOCs), helping IT-security researchers and threat analysts protecting their constituency and customers from cyberthreats.
Have questions about Log360’s integration capabilities or need technical guidance?