Skip to main content

Flashpoint Feed

Download With Dependencies

Ingest indicators of compromise from Flashpoint Ignite.

Gain access to Flashpoint's Technical Intelligence dataset, which delivers Indicators of Compromise (IOCs) and technical data derived from Flashpoint's unique collections and Finished Intelligence Reports. This integration enables the seamless ingestion of high-fidelity intelligence into your existing workflows and automated tools.

Flashpoint is the globally trusted leader in risk intelligence for the fastest, most comprehensive coverage of threatening activity on the internet. From bolstering cyber and physical security, to detecting fraud and insider threats, Flashpoint partners with customers across the private and public sectors to help them rapidly identify threats and mitigate their most critical security risks.

What does this pack do?

Flashpoint Feed Integration allows importing indicators of compromise that occur in the context of an event on the Flashpoint platform.

The following types of indicators are retrieved:

  • IP
  • Domain
  • URL
  • Email
  • File
  • Flashpoint Indicator

Note: All the unsupported types of indicators are considered as Flashpoint Indicator such as ip-dst, Hostname, Filename, Text, Pdb, Yara, etc.

Gain access to Flashpoint's Technical Intelligence dataset, which delivers Indicators of Compromise (IOCs) and technical data derived from Flashpoint's unique collections and Finished Intelligence Reports. This integration enables the seamless ingestion of high-fidelity intelligence into your existing workflows and automated tools.

Flashpoint is the globally trusted leader in risk intelligence for the fastest, most comprehensive coverage of threatening activity on the internet. From bolstering cyber and physical security, to detecting fraud and insider threats, Flashpoint partners with customers across the private and public sectors to help them rapidly identify threats and mitigate their most critical security risks.

What does this pack do?

Flashpoint Feed Integration allows importing indicators of compromise that occur in the context of an event on the Flashpoint platform.

The following types of indicators are retrieved:

  • IP
  • Domain
  • URL
  • Email
  • File
  • Flashpoint Indicator

Note: All the unsupported types of indicators are considered as Flashpoint Indicator such as ip-dst, Hostname, Filename, Text, Pdb, Yara, etc.

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByPartner
CreatedSeptember 29, 2021
Last ReleaseMarch 22, 2026
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
By downloading or using Marketplace content, you agree to the applicable Terms of Use and End User License Agreement. Third-party content is provided by its publisher, and Palo Alto Networks does not warrant, endorse, support, or assume responsibility for content not expressly identified as owned by Palo Alto Networks.