
S2W Quaxar CDF
Overview
S2W Quaxar is a multi-domain cyber threat intelligence platform specializing in hidden channels and dark web intelligence. S2W provides a wide range of intelligence services, including dark web monitoring, threat intelligence, and cyber risk management. The Quaxar platform provides tailored intelligence to help organizations identify and mitigate threats to their business.
The S2W Quaxar CDF for ThreatQ enables the automatic ingestion of customized threat intelligence from Quaxar into ThreatQ. This may include leaked credentials, threat actor profiles, vulnerability reports, indicators, and much more. Ultimately, this integration allows organizations to better understand their attack surface and proactively defend against threats, by providing analysts the information they need to make informed decisions.
The integration provides the following feeds:
- S2W Quaxar - Threat Reports - ingests Threat Reports from S2W Quaxar, into ThreatQ
- S2W Quaxar - Vulnerability Reports - ingests Vulnerability Reports from S2W Quaxar, into ThreatQ
- S2W Quaxar - Indicator Reports - ingests Indicator Reports from S2W Quaxar, into ThreatQ
- S2W Quaxar - Talon Reports - ingests Talon Reports from S2W Quaxar, into ThreatQ
- S2W Quaxar - Threat Actors - ingests Actor Profiles from S2W Quaxar, into ThreatQ
- S2W Quaxar - Ransomware Activity - ingests organizations (identities) that have been affected by ransomware, from S2W Quaxar, into ThreatQ
- S2W Quaxar - Brand Impersonation Sites - ingests indicators associated with brand impersonation sites, from S2W Quaxar, into ThreatQ
- S2W Quaxar - Leaked Credit Cards - ingests Leaked Credit Cards as Indicators (type: String), from S2W Quaxar, into ThreatQ
- S2W Quaxar - Leaked Accounts - ingests leaked accounts (identities), from S2W Quaxar, into ThreatQ
- S2W Quaxar - Exposed Assets - ingests exposed asset alerts from the S2W Quaxar Attack Surface Management module, into ThreatQ
- S2W Quaxar - Signature Vault - ingests Snort & YARA signatures from the S2W Quaxar Signature Vault module, into ThreatQ
- S2W Quaxar - Indicators - ingests indicators from S2W Quaxar, into ThreatQ
The integration ingests the following system objects:
- Adversaries
- Assets
- Attack Patterns
- Campaigns
- Compromised Accounts
- Compromised Cards
- Identities
- Indicators
- Intrusion Sets
- Malware
- Reports
- Signatures
- Tools
- TTPs
- Vulnerabilities