
Apr 7, 2026
1.1.0
ThreatQ versions >= v6.7.2
NCFTA CDF
Overview
The NCFTA CDF integration ingests published MISP events from a user-provided, self-hosted MISP server instance. The MISP threat sharing platform is free and open source software that enables sharing of threat intelligence represented in the MISP data model format.
The integration ingests data from the following endpoint:
- NCFTA - ingests MISP events from the NCFTA MISP instance.
The integration ingests the following system objects:
- Adversaries
- Attachments
- Attack Patterns
- Course of actions
- Events
- Indicators
- Intrusion Sets
- Malware
- Signatures
- Tools