Questions about recorded future and ICON/IDR

When integrated, will Recorded Future threat intelligence feed IDR’s Attacker Behavior Analytics?

Can we create a workflow to enrich a list of hashes and IPs with Recorded Future threat intelligence?

The Recorded Future plugin does allow you to perform lookups on indicators such as hashes and IPs. As an example, we have this Extension Library workflow that allows you to automatically enrich IDR with Recorded Future data.

1 Like