
Nov 26, 2024
1.1.0
ThreatQ versions >= 5.20.0
TeamT5 ThreatVision Operation
Overview
The TeamT5 ThreatVision Operation enables the enrichment of IOCs in ThreatQ using the TeamT5 ThreatVision API.
TeamT5's ThreatVision is a customer-engaged threat intelligence platform that provides real-time alerts, technical data, OSINT analysis, and in-depth APT investigations.
The operation provides the following action:
- Enrich - enriches an indicator with context from ThreatVision.
The operation is compatible with the following indicator types:
- IP Address
- FQDN
- MD5
- SHA-1
- SHA-256