Threat Intelligence

RSAC Releases Quantickle Open Source Threat Intelligence Visualization Tool 

Quantickle is a browser-based tool designed for creating visual representations of threat research.

Open source security tool

RSAC Conference (formerly RSA Conference) on Monday announced the availability of a new open source threat intelligence visualization tool, Quantickle.

Created via vibe coding by Snorre Fagerland, senior technical director at RSAC, Quantickle is a browser-based network graph visualization tool that simplifies threat analysis.

It can be used by threat researchers and cybersecurity analysts to visualize relationships among domains, IP addresses, malicious files, and threat groups to identify patterns, attack paths, or hidden connections.

Users can manually add node and edge data, import it from CSV files, or use REST API integrations. They can customize icons, backgrounds, node/edge types, and layouts. The visualizations can be exported as CSV, PNG, PDF, or HTML files.

“The front-end (Cytoscape.js + custom UI) handles rendering, editing, and layout execution, while the lightweight Express server serves the UI, proxies integration calls, and optionally stores graphs in Neo4j,” Fagerland explained. “In other words, the browser owns the graph state and visualization, while the server exists to supply assets and integrations when needed.”

The expert pointed out that Quantickle is not designed for enterprise use. 

“There are already software products that cover that space, and their makers can provide much better support and maintenance than I ever could,” Fagerland said. “Quantickle is a different beast. Its purpose is to facilitate manual research, not automation; and to make detailed, customizable illustrations for visualization and publication. It aims at high-quality, curated relationships, and not massive hairball clusters.”

Advertisement. Scroll to continue reading.

Fagerland cautioned that while users can host Quantickle on a remote server, it’s not recommended because it hasn’t been analyzed for vulnerabilities; the recommendation is to run it locally. 

Quantickle is available on the RSAC-Labs GitHub organization. 

Related: New Paper and Tool Help Security Teams Move Beyond Blind Reliance on CISA’s KEV Catalog

Related: Vibe Coding Tested: AI Agents Nail SQLi but Fail Miserably on Security Controls

Related: re:Invent 2025: AWS and Security Vendors Unveil New Products and Capabilities

Related Content

Cybersecurity Funding

The IP intelligence company will use the fresh investment to accelerate and scale its operations.

Vulnerabilities

The agentic security tool identifies potentially exploitable code flaws, traces attack paths, and recommends targeted remediations.

Application Security

It will provide the tools and channels to report, patch, and disclose open source software vulnerabilities.

Application Security

Over two dozen organizations built a shared platform to triage vulnerabilities, fix them, and secure the software before patches arrive.

Vulnerabilities

Project Lightwell is designed to fix vulnerabilities without breaking what is already in production.

Artificial Intelligence

The new kit aims to address risks related to poisoned models, regulatory issues, supply chain integrity, and incident response.

Malware & Threats

Two malicious versions of the popular SDK were uploaded to the PyPI registry, targeting Windows, macOS, and Linux.

Management & Strategy

A summary of the announcements made by vendors on the third and fourth days of the RSAC 2026 Conference.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version