?Explore powerful integrations of DomainTools data in leading cyber security products. Discover solutions for threat hunting, in-context investigations and orchestration.
We would love to hear from you if you are currently a VAR or a consultant specializing in advanced cyber security products and services. Please register a lead to alert DomainTools to a joint customer opportunity.Register a Lead
DomainTools partners with industry leaders to provide turnkey resources for cyber threat intelligence analysts. Through these integrations, investigators who rely on DomainTools' unparalleled repository of DNS and Whois data will be able to more effectively assess threat risk levels, quickly mitigate attacks, create profiles of an attacker's online presence and reveal the true identity of an attacker.
When DomainTools first launched Iris, it was an initial step in a worthy journey to deliver an increasingly powerful browser-based product for indicator enrichment, threat investigation, and actor profiling. Reception for Iris has been even stronger than forecast, with over 200 enterprise security teams using Iris in their workflows in the first year since launch. Today we take another significant step towards our goal by announcing the deep integration of multiple leading ‘passive’ DNS data sets including the highly regarded Farsight DNSDB. This new release also includes an API for the essential DomainTools data sets inside Iris.
Mandiant (a FireEye company) is a leader in security incident response managed solutions. Mandiant threat analysts use DomainTools resources daily in investigating targeted threats. Subscribers to Mandiant's threat intelligence service directly access DomainTools Whois and DNS data to research domains linked to suspicious activity. The combination of Mandiant threat intelligence and DomainTools is a powerful weapon against targeted threats.
"APT actors rely on an elaborate system of domain names and IP addresses to camouflage their extensive Internet infrastructure. Mandiant uses DomainTools resources to better understand the attackers' use of the public domain name system and the attackers' infrastructure."
IID (now part of Infoblox) adds clarity to cyberthreat intelligence by distilling threat data from thousands of trusted sources, and fusing it into actionable intelligence delivered to security professionals and automated infrastructure. Through this partnership, IID is able to utilize DomainTools functionality along with other native capabilities to deliver accurate threat intelligence data to its customers and DomainTools gains access to the wide breadth of IID-sourced data regarding newly registered domains.