Group-IB
Supported by Filigran
Adversary & Campaign Insights
Overview
Imports threat actor profiles, campaigns, malware, and infrastructure intelligence from Group-IB Threat Intelligence into OpenCTI via API.
The Group-IB connector imports threat intelligence from the Group-IB Threat Intelligence platform into OpenCTI via its API. It collects data on threat actors, intrusion sets, campaigns, malware, domains, IPs, and infrastructure built from 22+ years of cybercrime investigation and incident response. The connector pushes structured STIX objects into OpenCTI, enabling attribution, threat hunting, and network protection workflows.