Mandiant Advantage

Threat Intelligence

The Mandiant Threat Intelligence module, accessible through the Mandiant Advantage SaaS platform, provides organizations of all sizes visibility into the latest threats directly from the frontlines. Get started today for free.

200k+

Hours responding to attacks per year

1 million+

Unique malware samples per day

Threat Intelligence
About

Know the threats that matter right now.

Mandiant Threat Intelligence gives security practitioners unparalleled visibility and expertise into threats that matter to their business right now.

Our threat intelligence is compiled by over 300 security and intelligence individuals in 22 countries, researching actors via undercover adversarial pursuits, incident forensics, malicious infrastructure reconstructions and actor identification processes which comprise the knowledge embedded in Mandiant Intel Grid.

wolf-graphic-product
Informed decision making
Informed decision making

Improve defenses by understanding the identity, targets, timing, motivation and methods of threat actors worldwide.

Optimize risk reduction
Optimize risk reduction

Prioritize vulnerabilities and exposures by focusing on the highest risk first.

Improve detection and response
Improve detection and response

Access threat actor indicators, tactics and behaviors to reduce alert fatigue and quickly surface malicious attacks.

Integrate with detection tools
Integrate with detection tools

Seamlessly integrate threat data into existing detection tools or use our browser plugin to overlay data onto any web page and application.

Streamlined feed

Intuitive dashboards

Navigate quickly between actors, malware, tactics and vulnerability reports to get a 360-degree view on all aspects of ongoing threat activity.

Intuitive dashboards
Expert insights and context
Prioritize

Expert insights and context

Search for threat indicators by IP, URL, Domain and File Hash to get expert-based maliciousness score (M-Score) and source context. Get daily news analysis with insights from Mandiant specialists to help you determine which news to trust and why.

Go deeper

To-the-minute intelligence with analysis

Mandiant’s unique data intelligence gathering, research, curation and dissemination enables organizations to obtain threat visibility ahead of other vendors. Mandiant analyzes records and graduates threat actors, from uncategorized activity clusters (UNC), through to TEMP, APT or FIN groups. Users get continuous transparency on this process before public release.

To-the-minute intelligence with analysis

Find a subscription plan that best suits your intelligence needs.

Free

Investigate publicly known threats with insights from Mandiant experts.


Included in free:

  • Global dashboard
  • Public intelligence and descriptions
  • Actor, malware, and vulnerability info
  • OSINT indicator with M-Score
  • Mandiant news analysis

Security Operations

Detect persistent or unseen attacks. Accelerate investigation and response.


Everything in free plus:

  • Mandiant dynamic host and malware
  • Indicators and Yara rules
  • MITRE ATT&CK and graph views
  • OSINT indicator with M-Score
  • Vulnerability analysis add-on

Fusion

Build an informed cyber defense strategy with our most comprehensive, all-inclusive threat intelligence subscription.


Everything in Security Operations plus:

  • Mandiant FINTEL reports
  • Vulnerability analysis
  • Dark web monitoring search

What makes us different

Why Mandiant Threat Intelligence will tell you more about your adversaries than anyone else

Breach intelligence
Breach intelligence

Over the last 15+ years, we have gained a reputation as the industry’s premier incident responder, attending 800+ incident response engagements annually.

Machine intelligence
Machine intelligence

We have approximately 4 million virtual guest images deployed globally in 102 countries, generating tens of millions of sandbox detonations per hour, confirming 50,000 - 70,000 malicious events per hour.

Operational intelligence
Operational intelligence

Our Managed Defense team performs detection and response services for over 300 customers from four international Cyber Threat Operations Centers, ingesting 99 million+ events and validating 21 million+ alerts.

Adversary intelligence
Adversary intelligence

Mandiant Threat Intelligence deploys 300+ intelligence analysts and researchers located in 23 countries. We collect up to 1 million malware samples per day from more than 70 different sources.

Forrester Wave Leader 2021: External Threat Intelligence Services
Analyst Report

The Forrester Wave™:
External Threat Intelligence Services, Q1 2021

Get an evaluation of the 12 most significant vendors that offer external, threat intelligence services, and see why we were named a leader.

IDC - Analyze the Future

"Lots of vendors say that they have the leading threat intelligence, however, the focus is typically on inputs. Mandiant Advantage is a divergence from the traditional path. By consolidating expertise backed products and services under Mandiant, customers get a vendor agnostic view into the effectiveness of outcomes. This pairing makes Mandiant truly differentiated."

Chris Kissell

Research Director at IDC

Ready to get started?

Get in touch for an online demonstration or register online today for free and receive your login details to access publicly known threat intelligence, Mandiant insights and daily threat analysis.

Cyber Threat Intelligence Expertise
Cyber Threat Intelligence Expertise

Get expert assistance with building a sustainable intelligence-led organization and improve your team’s analytical and threat hunting capabilities.

View subscription options
View subscription options

From dark web monitoring to comprehensive security operations support, find the subscription package that suits your needs and access threat intelligence before it is publicly available.

Mandiant Advantage SaaS

Automate security operations with Advantage

Mandiant Threat Intelligence is a part of the Mandiant Advantage platform. Mandiant Advantage combines XDR capabilities with the Mandiant Intel Grid, embedded into automated solutions that prioritize detections, validate defenses, identify the latest threats and lower security costs. With Mandiant Advantage, teams can:

  • Automate time consuming manual tasks
  • Easily integrate and use preferred tools
  • Effortlessly switch between Mandiant products with single login
  • Improve your overall security posture