
Palo Alto Networks Autofocus Threat Intelligence
Overview
The ThreatQuotient for AutoFocus Integration is a unidirectional connector that pulls information from AutoFocus and uploads it into the ThreatQ instance. It pulls samples from AutoFocus, and creates events based off of them within ThreatQ. In addition, it will pull any related indicators, tags, regions, and signatures that it finds using AutoFocus' API.
Analyze, investigate and instantly respond to critical threats
The AutoFocus™ contextual threat intelligence service speeds your ability to respond to cyberattacks faster.
Faster, more precise threat analysis
Disconnected tools and data sources have made it harder for security analysts to do their jobs quickly and effectively.
AutoFocus contextual threat intelligence brings speed, consistency and precision to threat investigation. It provides instant access to community-based threat data, enhanced with deep context and attribution from the Unit 42 threat research team, saving time and effort. Now your teams can quickly investigate, correlate and pinpoint malware’s root cause without adding dedicated malware researchers or additional tools. Plus, automated protections make it simple to turn raw intelligence into protection across your environment.