ThreatConnect Marketplace
  • Apps
  • Playbooks
  • Apps
  • Playbooks
Home » Apps Overview » QIntel Crosslink
Back to Apps

Categories:
  • Data Enrichment
Built by

ThreatConnect

QIntel Crosslink

QIntel CrossLink is a tool that gives users access to a very rich set of underground criminal data. With this Playbook app, you can enrich threat data in ThreatConnect with QIntel Crosslink data, and then any key linkages such as Passive DNS, WHOIS, exposed credentials, or others can be used to informed decisions during investigations. Our new integration with QIntel Crosslink consists of a single Playbook app to perform multiple enrichment actions as part of an automated Playbook or Workflow investigation. The following actions are available:

  • Search Communications
  • Search Exposed Credentials
  • Search PDNS Records
  • Search Profiles
  • Search WhoIs Records

This app can be found in the ThreatConnect App Catalog under the name: QIntel Crosslink

Related Apps

Cisco Umbrella Reporting
Data Enrichment

With the Cisco Umbrella Reporting integration you are able to retrieve reports from Cisco Umbrella Reporting.

DomainTools Iris Search Hash Monitoring Playbook
Data Enrichment

This playbook not only provides DomainTools Iris enrichment, but can also be utilized to monitor specific Iris Search hashes...

Hyas Insight Enrichment Playbooks
Data Enrichment

With the HYAS Insight integration for ThreatConnect, SOC, CSIRT, and threat intel teams can connect specific attack instances...

Developers

  • Knowledge Base
  • Training Site

Company

  • ThreatConnect
  • Contact Us
  • Blog
  • Twitter
  • Facebook
  • Linkedin

© Copyright - ThreatConnect Marketplace
Scroll to top