Author: CortexXSOAR Cisco AMP
ANY.RUN
APIVoid
AWS - ACM
AWS - AccessAnalyzer (beta)
AWS - Athena (Beta)
AWS - CloudTrail
AWS - CloudWatchLogs
AWS - EC2
AWS - GuardDuty
AWS - IAM
AWS - Lambda
AWS-NetworkFirewall
AWS - Route53
AWS - S3
AWS - SQS
AWS - Security Hub
Amazon DynamoDB
AWS Sagemaker
AbuseIPDB
Access Investigation
ActiveMQ
Active Directory Query
Akamai WAF SIEM
Akamai WAF
Alexa Rank Indicator
AlgoSec
AlienVault OTX
AlienVault USM Anywhere
Anomali Enterprise
Anomali ThreatStream
Ansible Tower
ApiModules
AquatoneDiscover
ArcSight ESM
ArcSight Logger
ArcSight XML
RSA Archer
Asset
AttackIQ Platform
Attivo Botsink
AutoFocus
Awake Security
Azure Compute
Azure Kubernetes Services
Azure Log Analytics
Azure Network Security Groups
Azure SQL Management (Beta)
Azure Security Center
Azure Sentinel (Beta)
Azure WAF
Palo Alto Networks BPA
Base
BeyondTrust Password Safe
BigFix
BitcoinAbuse Feed
Blockade.io
Bluecat Address Manager
Blueliv (Beta)
Bmc Helix Remedyforce
Bonusly
Box
US - Breach Notification
Brute Force
C2sec irisk
CIRCL
CVE Search
CVSS
Carbon Black Endpoint Standard
Carbon Black Cloud Enterprise EDR
Carbon Black Enterprise Protection
Carbon Black Enterprise Live Response
Carbon Black Enterprise Response
Censys
Centreon
CheckPhish
Check Point Firewall
Cherwell
Cisco Umbrella Enforcement
Cisco Umbrella Investigate
Cisco ASA
Cisco Email Security (Beta)
CiscoFirepower
Cisco Webex Teams
Cloaken
Cloud Convert
Cisco CloudLock
Cofense Intelligence
Common Dashboards
Common Playbooks
Common Reports
Common Scripts
Common Types
Common Widgets
Compliance
Atlassian Confluence Server
Cortex Data Lake
Palo Alto Networks Cortex XDR - Investigation and Response
CounterTack
Crisis Management
CrowdStrike Falcon
CrowdStrike Falcon Sandbox
CrowdStrike Falcon Streaming
CrowdStrike FalconX
FalconHost
CrowdStrike Falcon Intel
CrowdStrike Malquery
Cryptocurrency
Cuckoo Sandbox
CyberArk
Cyber Triage
Cybereason
Cylance Protect
D2
DeHashed
Default Playbook
Demisto Lock
Demisto REST API
Deprecated Content
Developer Tools
Devo
Digital Shadows
DUO Admin
Palo Alto Networks PAN-OS EDL Service
EWS
EWS Mail Sender
EasyVista
EclecticIQ Platform
Elasticsearch
Email Communication
EmailRepIO
Employee Offboarding
Endgame
Exabeam
Exchange 2016 Compliance Search
ExifRead
Expanse v2
Export Indicators
ExportToXLSX
F5 firewall
AWS Feed
AlienVault Feed
Azure Feed
Microsoft Azure AD Connect Health Feed
Bambenek Consulting Feed
BlockList DE Feed
BruteForce Feed
CSV Feed
Cloudflare Feed
Cofense Feed
Crowdstrike Falcon Intel Feed
DHS Feed
DShield Feed
Elasticsearch Feed
Fastly Feed
FeodoTracker Feed
FireEye Feed
GCP Whitelist Feed
JSON Feed
Majestic Million Feed
MalwareDomainList Feed
Microsoft Intune Feed
MITRE ATT&CK
Office 365 Feed
OpenCTI Feed
Plain Text Feed
Proofpoint Feed
Public DNS Feed
Recorded Future Feed
Spamhaus Feed
TAXII Feed
ThreatConnect Feed
Tor Exit Addresses Feed
Unit42 Feed
Zoom Feed
Abuse.ch SSL Blacklist Feed
Fetch Indicators From File
Fidelis Elevate Network
Fidelis Endpoint
FireEye ETP
FireEye HX
FireEye Helix
FireEye Network Security (NX)
Forcepoint
Forescout
FortiGate
FortiManager
FortiSIEM
Freshdesk
GDPR
GRR
G Suite Admin
GenericSQL
Generic Webhook
Get License ID
GetServerURL
Giphy
GitHub
Gmail
Gmail Single User (Beta)
Google BigQuery
Google Calendar
Google Cloud Compute
Google Cloud Functions
Google Cloud Storage
Google Cloud Translate
Google Docs
Google Drive
Google Key Management Service
Google Kubernetes Engine
Google Cloud Pub / Sub
Google Resource Manager
Google Safe Browsing
Google Vault
Google Vision AI
GuardiCore
Guidance Encase Endpoint
HIPAA - Breach Notification
Micro Focus Service Manager
HashiCorp Vault
Hello World IAM
HelloWorld
Hunting
Hybrid Analysis
IAM SCIM
IBM Resilient Systems
Icebrg
Image OCR
Imperva Skyfence
Imperva WAF
Impossible Traveler
Imperva Incapsula
InfoArmor VigilanteATI
Infoblox
IntSights
Integrations & Incidents Health Check
Ipstack
Cisco Email Security Appliance (IronPort)
IsItPhishing
Ivanti Heat
Jask
Atlassian Jira
Joe Security
JsonWhoIs
Kafka
Kenna
Koodous
Lastline
LogRhythm
LogRhythmRest
Lockpath Keylight
Looker
Lost / Stolen Device
MISP
Machine Learning
Mail Listener
MailListener - POP3 (Beta)
Mail Sender (New)
Rapid Breach Response
Maltiverse
Malware
Malwr
Mattermost
MaxMind GeoIP2
McAfee Active Response
McAfee Threat Intelligence Exchange
McAfee NSM
McAfee Web Gateway
McAfee Advanced Threat Defense
McAfee DXL
McAfee ESM v10 and v11
McAfee ESM
Microsoft Advanced Threat Analytics
Microsoft Cloud App Security
Microsoft Defender for Endpoint
Microsoft Endpoint Configuration Manager
Microsoft Graph API
Microsoft Graph Calendar
Microsoft Graph Device Management
Microsoft Graph Files
Microsoft Graph Groups
Microsoft Graph Mail Single User
Microsoft Graph Mail
Microsoft Graph Security
Microsoft Graph User
Microsoft Management Activity API (O365/Azure Events)
Microsoft Teams
Mimecast
ModulesManagement
Moloch
MongoDB
Multi-Tenant Performance
MxToolBox
NIST
Netcraft
Netskope
Nmap
Non Supported
Nutanix Hypervisor
OS Query
OSX Collector
OTRS Service Management XSOAR Pack
Office 365 and Azure (Audit Log)
Okta
OnboardingIntegration
OpenLDAP
OpenPhish
OpsGenie
PAN-OS
PANW Comprehensive Investigation
PacketMail.net
Packetsled
PagerDuty
Palo Alto Networks IoT
Palo Alto Networks IoT 3rd Party Integrations
Palo Alto Networks PAN-OS EDL Management
Palo Alto Networks Threat Vault
Palo Alto Networks WildFire
PCAP Analysis
Perch
PhishLabs
PhishTank
Phishing
Pipl
Port Scan
Preempt
Prisma Access
Prisma Cloud
Prisma Cloud Compute
Proofpoint Protection Server
Proofpoint TAP
Proofpoint Threat Response (Beta)
ProtectWise
Pwned
IBM QRadar
Quest Kace
RSA NetWitness Endpoint
RSA NetWitness v11.1
RTIR
Ransomware
Rapid7 InsightIDR
Rapid7 Nexpose
Recorded Future
Red Canary
Remedy On-Demand
Remedy AR
ReplaceMatchGroup
RSA NetWitness Packets and Logs
RSA NetWitness Security Analytics
Rundeck
SANS
Server Message Block (SMB)
SMIME Messaging
SNDBOX
Salesforce
Check Point Sandblast Appliance
Check Point Sandblast Cloud Services
Dell Secureworks
Securonix
SentinelOne
Manage Engine Service Desk Plus
ServiceNow
Shadow IT
Shift Management
Shodan
Signal Sciences WAF
Slack
Snowflake
Sophos Central
Sophos XG Firewall
Splunk
Starter Pack
Cisco Secure Cloud Analytics (Stealthwatch Cloud)
Sumo Logic
Symantec Blue Coat Content and Malware Analysis (Beta)
Symantec Data Loss Prevention (Beta)
Symantec Endpoint Protection
Symantec Managed Security Services
Symantec Management Center
Symantec Advanced Threat Protection
Symantec Deepsight Intelligence (Beta)
Symantec Messaging Gateway
Syslog Sender
TAXII Server
TCPIPUtils (Deprecated)
TIM - Indicator Auto-Processing
TIM - SIEM Integration
Tanium
Tanium Threat Response
Telegram (Beta)
Tenable.io
Tenable.sc
Thinkst Canary
ThreatConnect
ThreatExchange
Cisco Threat Grid
Threat Intelligence Management
ThreatMiner
ThreatX
Threat Crowd
Tidy
Palo Alto Networks Traps
Trend Micro Apex One
TrendMicro Cloud App Security
Trend Micro Deep Discovery Analyzer
Tripwire
Troubleshoot
Twilio
URLhaus
Urlscan.io
VMRay
VMware
Vectra
Venafi
Verodin
Vertica
VirusTotal - Private API
VirusTotal
Volatility
VulnDB
WhatIsMyBrowser
Where is the egg?
Whois
Windows Remote Management
Windows Defender Advanced Threat Protection (Deprecated)
Workday
X509Certificate
IBM X-Force Exchange
XSOAR Mirroring
Yara
Zendesk
ZeroFox
Zimperium
Zoom
Zscaler
Cisco ISE
Cisco Meraki
CyberArk AIM
Dnstwist
McAfee ePO
FireEye (AX Series)
iDefense
Ipinfo
FireEye iSIGHT
Jamf
McAfee DAM
Nessus
OPSWAT-Metadefender
Qualys
Rasterize
Remedy SR (Beta)
Sample Incident Generator
Trend Micro
Armis
Atlassian IAM
Azure Storage
Phishing Campaign
Cisco Secure Network Analytics (Stealthwatch)
DBot Truth Bombs
MITRE ATT&CK v2
Unit42 v2 Feed
FraudWatch PhishPortal
G Suite Security Alert Center
GraphQL
HostIo
Identity
Kaspersky Security Center
Microsoft 365 Defender
Microsoft Graph Applications
Microsoft Graph Identity & Access
Microsoft Policy And Compliance
Netscout Arbor Edge Defense - AED
Netscout Arbor Sightline
OpenCTI
PAN-OS Policy Optimizer
QualysFIM
Manage Engine Service Desk Plus (On-Premise)
SolarWinds
TOPdesk
TrustwaveSEG
CircleCI
Content Management (Alpha)
Elasticsearch Monitoring
F5 Silverline
RSS Feed
FireEye Central Management
FireEye Common Fields
FireEye Email Security (EX)
Google Maps
HPE Aruba Clearpass
Hey
Powershell Remoting
Splunk Prerelease
Windows Forensics
Author: ARIACybersecuritySolutions ARIAPacketIntelligence
Author: AcalvioTechnologies Acalvio ShadowPlex
Author: Accessdata Accessdata
Author: AellaStarLight Aella Star Light
Author: Agari Agari Phishing Defense
Author: AlphaSOC AlphaSOC Network Behavior Analytics
AlphaSOC Wisdom
Author: AdamBurt Arduino
CloudShare
MapRegex
NCSC Cyber Asssessment Framework
Netmiko
Random Images, Videos and Audio
Salesforce Indicators
Team Management
XSOAR Content Update Notifications
Author: Axonius Axonius
Author: HarriRuuttila Barracuda
Gophish
Graylog
PiHole
SSL Certificate Verifier
Spamcop
TwitterIOCHunter - Full Daily Feed
Author: BastilleNetworks Bastille Networks
Author: BitDam BitDam
Author: OriolCampderrós Blueliv ThreatCompass
Blueliv ThreatContext
Author: CortexXSOARCustomerSuccess CaseManagement-Generic
System Diagnostics and Health Check
Author: prashasthbaliga Centrify Vault
Author: MattHouston Cisco Umbrella cloud security
ServerLogs
Ja3er
Author: OsamaShenoda Cisco ESA IronPort Email API
Author: scottbrumley Cisco WebEx Feed
Author: Claroty Claroty
Author: CloudShark CloudShark
Author: Code42 Code42
Author: Cofense Cofense Triage
Cofense Intelligence v2
Author: Cognni Cognni
Author: MaciejDrobniuch ComputerVisionEngine
UnifiVideo NVR
Edgescan
Author: ShamsHasanRizvi ConcentricAI
Author: Coralogix Coralogix
Author: CounterCraft CounterCraft Deception Director
Author: CyCraftTechnologyCorporation. CyberTotal
Author: KonradZacharias CyberX - Central Manager
Pulsedive
Author: Cyberint Cyberint
Author: Cymptom Cymptom
Author: Cymulate Cymulate
Author: FarsightSecurity,Inc. Farsight DNSDB
Author: Darktrace Darktrace
Author: DeepInstinct DeepInstinct
Author: DigitalGuardian Digital Guardian
Author: DigitalDefense Digital Defense Frontline VM
Author: DomainTools DomainTools
DomainTools Iris
Author: Druva Druva Ransomware Response
Author: Endace Endace
Author: Expanse Expanse (Deprecated)
Author: MasahikoInoue Advanced Filter
RegexReplace
MapPattern
StringifyArray
UpdateEntriesBySearch
RemoveEmpty
Author: ExtraHop ExtraHop Reveal(x)
Author: Cyjax Cyjax Feed
Author: Cyren Cyren Threat InDepth Threat Intelligence
Author: Intel471 Intel471 Feed
Author: GuillermoSerrano Talos Feed
Author: FireEyeInc. FireEye Detection on Demand
Author: Flashpoint Flashpoint
Author: Genians Genians
Author: Chronicle Chronicle
Author: GreatHorn GreatHorn
Author: GreyNoise GreyNoise
Author: Gurucul Gurucul Risk Analytics
Author: Hatching Hatching Triage
Author: Humio Humio
Author: IllusiveNetworks Illusive Networks
Author: Indeni Indeni
Author: Infinipoint-ET Infinipoint
Author: Infocyte Infocyte
Author: Intezer Intezer
Author: IronDefense IronNet
Author: Accenture LSASS Credential Dumping
Malware Lateral Movement Assessment and Response
Author: AlanNix Lacework
Author: LogPoint LogPoint SIEM Integration
Author: Logz.io Logz.io
Author: Luminate Luminate
Author: Malwarebytes Malwarebytes
Author: ssudheerk99 Mantis
Author: MinervaLabs Minerva Labs Anti-Evasion Platform
Author: MobileIronInc. MobileIron-UEM
Author: NTTLtd. NTT Cyber Threat Sensor
Author: NozomiNetworks Nozomi Networks
Author: OrcaSecurity Orca
Author: MattSmith Palo Alto Networks Automatic SLR
Author: EnterpriseDLP Palo Alto Networks Enterprise DLP Contribution Pack
Author: RiskIQ PassiveTotal
RiskIQ Digital Footprint
Security Intelligence Services Feed
Author: Pentera Pentera
Author: PerceptionPoint Perception Point
Author: Phish.AI Phish.AI
Author: PolySwarm PolySwarm
Author: Group-IB Polygon
Group-IB Threat Intelligence & Attribution
Author: Query.AI QueryAI
Author: AndrewShepherd RSS
Author: RSTCloud RST Threat Feed
Author: RecordedFuture RecordedFuture v2
Author: ReversingLabs ReversingLabs A1000
ReversingLabs TitaniumCloud
ReversingLabs TitaniumScale
Author: RiskSense RiskSense
Author: SCADAfenceCNM SCADAfence CNM
Author: SafeBreach SafeBreach - Breach and Attack Simulation platform
Author: SailPoint SailPoint IdentityIQ
SailPoint IdentityNow
Author: SecBI SecBI
Author: SecurityAdvisor SecurityAdvisor
Author: Sepio Sepio
Author: beauchompers Shift Management - Assign to Next Shift
XSOAR - Simple Dev to Prod
Author: Silverfort Silverfort
Author: Sixgill Sixgill Darkfeed - Annual Subscription
Author: Skyformation Skyformation
Author: SlashNext SlashNext Phishing Incident Response - Annual Subscription (Direct Subscription)
Author: SmokescreenTechnologies Smokescreen IllusionBLACK
Author: JordanBerry Synapse
Author: ThreatQ ThreatQ
Author: TruSTAR TruSTAR
Author: Tufin Tufin
Author: Twinwave Twinwave
Author: UptycsInc. Uptycs
Author: DACHSERSE Viper
Author: WootCloud WootCloud
Author: XMCyber XM Cyber
Author: xMatters xMatters
Author: HenriqueCaires Zabbix
Author: Analyst1 Analyst1
Author: mnemonic mnemonic MDR
Author: OhadValtzer AlphaVantage
Author: SergeBakharev Ansible Powered Integrations
Author: zh-lim Asana Connect
Author: BitSight BitSight
Author: CywareLabs CTIX
Author: confluera Confluera
Author: PaloAltoNetworksSales Cortex 911
Author: AymanMahmoud DevSecOps
JWT Token Generator
Author: vibhuabharadwaj Forti Sandbox
QR Code Reader
Author: GammaEngineering Gamma
Author: GoogleCloudSCC Google Cloud SCC
Author: yacut iLert
Author: IPQualityScore IPQualityScore (IPQS) Threat Risk Scoring
Author: PaloAltoNetworksDeveloperRelations JARM
Author: NicholasEricksen JSON Sample Incident Generator
Author: Linkshadow Linkshadow
Author: MuratOzfidan Nist NVD
PICUS
USTA
Author: AdamBaumeister Opsgenie v2
Trello
GenerateAsBuilt
Author: BriceRENAUD PAN-OS to Cortex Data Lake Monitoring
Author: ClayCurtis ParseYAML
Author: VibhuBharadwaj Popular Cybersecurity News
Author: QuantumSecuritySystems Quantum Security Systems
Author: RespondSoftware Respond Analyst
Author: Rubrik Rubrik Polaris
Author: ArtNorton Screenshot Machine
Author: SharatPatil SendGrid
Author: SumoLogic Sumo Logic Cloud SIEM
Author: ShawnMurphy&NicholasEricksen TIM Campaign Tracking
Author: aburt-demisto TheHive Project
Author: XSOARLab XSOAR Lab Updates
Author: DMasters XSOAR Storage
Author: AbnormalSecurity Abnormal Security
Author: SiscaleEngineering ArcannaAI
Author: FieldEffectSecurity Covalence For Security Providers
Covalence Managed Security
Author: Cyberpion Cyberpion
Author: Cybersixgill Cybersixgill-DVE
Author: AnilAgrawal Dig
Author: HYAS HYAS Insight
Author: Ironscales Ironscales
Author: nicholashsiao LINENotify
Author: soarxperts PingCastle
Author: JoergStephan Redact/Defang Indicators (URLs, IPs, Email)
Author: Altipeak Altipeak
Author: GavrielFilippov Strip Accent Marks From String
Author: Thycotic,Inc Thycotic Secret Server
Author: Trend Micro Deep Security
Author: UbirchGmbH UBIRCH
Author: Unisys Unisys Stealth