Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Threat Intelligence

New Cloudflare Service Provides Real-Time Threat Intelligence

Cloudflare launches Cloudforce Threat Events Feed, a service designed to provide security teams with real-time threat intelligence.

Cloudflare

Cloudflare on Tuesday announced the launch of Cloudforce One Threat Events Feed, a service designed to provide security teams with real-time threat intelligence based on the attacks observed by the company.

Built using the Cloudflare Workers AI platform, the new service is powered by the tens of millions of HTTP requests and DNS queries that Cloudflare processes every second. 

The goal is to provide indicators of compromise (IoCs) and context to help security teams quickly spot issues and respond to threats. 

For the time being, the Threat Events Feed covers DDoS attacks and sophisticated operations tracked by Cloudflare’s Cloudforce One Intelligence team, but in the future the service will also cover events blocked by the company’s WAF, zero trust gateway, and email security products.

The new service provides an attacker timelapse view showing information that can be personalized for the customer’s specific environment, region or industry. 

According to Cloudflare, analysts can use it to “self-serve and explore incidents through customizable filters, enabling them to identify patterns and respond effectively.” 

Advertisement. Scroll to continue reading.

The company added, “By providing access to real-time threat data, we empower organizations to make informed decisions about their security strategies.”

The threat intelligence feed’s capabilities have been demonstrated by Cloudflare by showing how it can analyze the IPs, domains, and file hashes contained in the recently leaked BlackBasta ransomware chats. 

The Threat Events Feed is available through the Cloudflare dashboard or through a dedicated API. In the future, the company plans on adding more visualisations and analytics, and making it possible to integrate the feed with third-party SIEM platforms. 

Related: Cloudflare Introduces AI Security Solutions

Related: Cloudflare Tunnels Abused for Malware Delivery

Related: Cloudflare Expands Zero Trust Capabilities with Acquisition of BastionZero

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

In cyber-physical systems (CPS), just one hour of downtime can outweigh an entire annual security budget. Learn how to master the Return on Security Investment (ROSI) to align security goals with the bottom-line priorities.

Register

Delve into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization.

Register

People on the Move

Remedio has appointed of Cynthia Stanton as Chief Marketing Officer.

Jacki Monson has joined CVS Health as SVP, Deputy CISO.

Gigi Schumm has been promoted to Chief Revenue Officer at Securonix.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.