Skip to main content

Flashpoint Feed

Download With Dependencies

Ingest indicators of compromise from Flashpoint Ignite.

Gain access to Flashpoint's Technical Intelligence dataset, which delivers Indicators of Compromise (IOCs) and technical data derived from Flashpoint's unique collections and Finished Intelligence Reports. This integration enables the seamless ingestion of high-fidelity intelligence into your existing workflows and automated tools.

Flashpoint is the globally trusted leader in risk intelligence for the fastest, most comprehensive coverage of threatening activity on the internet. From bolstering cyber and physical security, to detecting fraud and insider threats, Flashpoint partners with customers across the private and public sectors to help them rapidly identify threats and mitigate their most critical security risks.

What does this pack do?

Flashpoint Feed Integration allows importing indicators of compromise that occur in the context of an event on the Flashpoint platform.

The following types of indicators are retrieved:

  • IP
  • Domain
  • URL
  • Email
  • File
  • Flashpoint Indicator

Note: All the unsupported types of indicators are considered as Flashpoint Indicator such as ip-dst, Hostname, Filename, Text, Pdb, Yara, etc.

Gain access to Flashpoint's Technical Intelligence dataset, which delivers Indicators of Compromise (IOCs) and technical data derived from Flashpoint's unique collections and Finished Intelligence Reports. This integration enables the seamless ingestion of high-fidelity intelligence into your existing workflows and automated tools.

Flashpoint is the globally trusted leader in risk intelligence for the fastest, most comprehensive coverage of threatening activity on the internet. From bolstering cyber and physical security, to detecting fraud and insider threats, Flashpoint partners with customers across the private and public sectors to help them rapidly identify threats and mitigate their most critical security risks.

What does this pack do?

Flashpoint Feed Integration allows importing indicators of compromise that occur in the context of an event on the Flashpoint platform.

The following types of indicators are retrieved:

  • IP
  • Domain
  • URL
  • Email
  • File
  • Flashpoint Indicator

Note: All the unsupported types of indicators are considered as Flashpoint Indicator such as ip-dst, Hostname, Filename, Text, Pdb, Yara, etc.

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByPartner
CreatedSeptember 29, 2021
Last ReleaseFebruary 16, 2026
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
Content packs are licensed by the Publisher identified above and subject to the Publisher’s own licensing terms. Palo Alto Networks is not liable for and does not warrant or support any content pack produced by a third-party Publisher, whether or not such packs are designated as “Palo Alto Networks-certified” or otherwise.