Skip to main content

ThreatConnect

Threat Intelligence

The ThreatConnect connector integrates with the ThreatConnect Threat Intelligence Platform. It synchronizes threat-intelligence groups (campaigns, incidents, reports, documents, emails, signatures, tasks, etc.) and indicators (addresses, hosts, files, URLs, and other IOCs) into the Brinqa platform using the ThreatConnect REST API v3.

Data retrieved from ThreatConnect

Connector ObjectRequiredMaps to Data Model
GroupYes(none — standalone object class)
IndicatorYes(none — standalone object class)

Model relationships

note

For detailed steps on how to view the data retrieved from ThreatConnect in the Brinqa Platform, see How to view your data.