Best Threat Intelligence Software - Page 11

How Many Threat Intelligence Software Products Does G2 Track?

Total Products under this Category: 211

Category Stats (Sep 2026)

  • Average Rating: 4.58/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: UpGuard Breach Risk (+0.92%) - Among all products in this category, UpGuard Breach Risk recorded the largest rating increase compared to last month

Last updated: September 01, 2026

How Does G2 Rank Threat Intelligence Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 5,600+ Authentic Reviews
  • 211+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Threat Intelligence Software

G2 Grid® for Threat Intelligence Software plotting products by satisfaction and market presence

Highlighted products: CrowdStrike Falcon Endpoint Protection Platform, Recorded Future, Ivanti Neurons for Unified Endpoint Management, Cyble, CloudSEK, ZeroFox, SOCRadar Extended Threat Intelligence, and CTM360.

Underlying data: [Grid® JSON](https://www.g2.com/categories/threat-intelligence/grids.json?focus%5B%5D=crowdstrike-falcon-endpoint-protection-platform&focus%5B%5D=recorded-future&focus%5B%5D=ivanti-neurons-for-unified-endpoint-management&focus%5B%5D=cyble&focus%5B%5D=cloudsek&focus%5B%5D=zerofox&focus%5B%5D=socradar-extended-threat-intelligence&focus%5B%5D=ctm360-ctm360)

Jizô

Jizô is a network observability platform that enables decision-makers to anticipate, identify and block cyber-attacks, thanks to unique and innovative AI. Jizô has proved to be highly effective on a number of critical networks used by major companies and public authorities. Sesame*it, the publisher of Jizô, is one of the Representative Vendors in the Gartner® Market Guide 2024 for Network Detection and Response Solutions.

Who Is the Company Behind Jizô?

Kaspersky Threat Data Feeds

Over 30 threat data feeds, tailored to diverse security needs across both IT and OT, provide information on known malware, phishing websites, the latest vulnerabilities, and exploits. Kaspersky Threat Data Feeds provide information on known malware, phishing websites, latest vulnerabilities, exploits, and more. Organizations can use this information to block malicious traffic, update their security software, and take other measures to protect themselves from cyberattacks. • Reinforces your security solutions, including SIEMs, NGFW, IPS / IDS, security proxy, etc., with continuously updated IoCs and actionable context • Improves detection quality, reduces false positives and protects the software development process thanks to actionable context • Integrates with security controls and TI platforms, including Kaspersky CyberTrace, for effective threat intelligence management and proactive cyber threat protection • Helps security teams quickly identify critical alerts from SIEM, NGFW, TI platforms, and prioritize them for incident response teams by automating the initial triage process

Who Is the Company Behind Kaspersky Threat Data Feeds?

  • Seller: Kaspersky
  • Year Founded: 1997
  • HQ Location: Moscow
  • Twitter: @kasperskylabind
    1,291 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    4,576 employees on LinkedIn®
  • Phone: 1-866-328-5700

KELA Threat Intelligence Platform

KELA’s Unified Threat Intelligence Platform is an all-in-one solution for Cyber Threat Intelligence (CTI), External Attack Surface Management (EASM), Digital Risk Protection Services (DRPS), and Third-Party Risk Management (TPRM), delivering real-time, actionable insights. The platform protects identities, brands, digital exposure, and the supply chain, seamlessly integrating into existing security controls and acting as the first line of defense against cyber threats from the cybercriminal underground. It monitors national risks, critical infrastructure, and supports dark web and cybercrime investigations, helping organizations close security gaps and stay ahead of evolving threats. KELA serves hundreds of customers, including enterprises, MSSPs, law enforcement agencies, CERTs, and government agencies worldwide

Who Is the Company Behind KELA Threat Intelligence Platform?

LeakRadar

LeakRadar is a comprehensive data breach monitoring platform designed to provide organizations with instant visibility into underground credential leaks. By indexing over 290 billion plain-text credentials from malware logs, combolists, database breaches, and dark-web dumps, LeakRadar enables users to detect and respond to compromised credentials before malicious actors can exploit them. Key Features and Functionality: - Plain-Text Credentials: Access passwords exactly as stolen, without hashes or redactions, facilitating accurate assessments of exposure. - Email and Domain Search: Quickly identify leaks associated with specific email addresses or entire company domains, streamlining the detection process. - Advanced Filters: Utilize detailed search parameters, including URL, username, and email domain, to refine results and focus on relevant data. - Extensive Database with Rapid Lookup: Query a vast repository of over 290 billion records in milliseconds, ensuring timely access to critical information. - API Integration: Seamlessly incorporate LeakRadar into Security Operations Centers (SOCs) through a straightforward REST API, enhancing existing security workflows. Primary Value and User Solutions: LeakRadar empowers security teams to proactively monitor and manage credential leaks, reducing the risk of unauthorized access and potential data breaches. By providing real-time alerts and comprehensive search capabilities, organizations can swiftly identify compromised accounts, enforce password resets, and implement multi-factor authentication, thereby strengthening their overall security posture. Additionally, LeakRadar's domain monitoring feature assists in mapping exposure across employees, third-party vendors, and customers, enabling a holistic approach to credential leak management.

Who Is the Company Behind LeakRadar?

Lupovis Prowl

Prowl analyzes and collects data on Internet-wide scans and attacks in real-time. We use this data to identify and classify malicious actors. By constantly monitoring the Internet, Prowl detects known and emerging threats and helps streamline SOC analysts' workflows to quickly identify and prioritize critical threats, while disregarding unnecessary or harmless activity.

Who Is the Company Behind Lupovis Prowl?

  • Seller: Lupovis
  • HQ Location: N/A
  • Twitter: @LupovisDefence
    550 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    10 employees on LinkedIn®

MAANG – AI-Powered Cyber Threat Management by SwiftSafe

MAANG – AI-Powered Cyber Threat Management by SwiftSafe In today’s dynamic cyber threat landscape, organizations need more than reactive defenses—they require proactive, intelligent, and automated protection. That's where MAANG comes in. Developed by SwiftSafe, MAANG is a comprehensive, AI- and ML-enhanced cybersecurity platform designed to detect, analyze, and neutralize threats in real-time, making it an essential solution for businesses committed to robust, scalable cyber defense. What Sets MAANG Apart Real-Time Threat Intelligence: MAANG delivers real-time threat insights driven by machine learning to help you stay one step ahead of cyber adversaries. Advanced Threat Detection & Prediction: By leveraging AI-powered future threat alerts and deep threat modeling, MAANG not only detects current vulnerabilities but forecasts risks before they occur.  Continuous, Agentless Monitoring: With non-intrusive monitoring, MAANG maintains visibility across your network and infrastructure without requiring endpoint agents. Customized for All Business Sizes: Whether you're a startup, SMB, or large enterprise, MAANG’s flexible architecture and tiered pricing ensure the right fit—and scale—for your organization. Core Features & Capabilities: Threat Analytics & AI-Driven Insights MAANG conducts deep threat analysis to surface vulnerabilities and abnormal behavior in real time. It learns from attack patterns to refine detection and improve accuracy. Prioritized Remediation Threat alerts are accompanied by clear, actionable guidance—highlighting what matters most and ensuring swift, effective mitigation of critical risks. Comprehensive Threat Reporting MAANG provides detailed, audit-ready threat reports that evolve with your environment, empowering both technical teams and decision-makers with meaningful insights.  24/7 Monitoring & Alerting Round-the-clock threat surveillance ensures vulnerabilities and incidents are identified and addressed swiftly, reducing the window for exploitation. Multi-Layered Security Stack Deep Infrastructure Scans: Identifies weaknesses and aligns with patch management workflows. Live Threat Probes: Constant scrutiny across servers, applications, and network layers. Intrusion Detection: Real-time traffic analysis and policy enforcement. Compliance Posturing: Expertly monitors data against standards like HIPAA, ISO 27001, and PCI DSS. Automated & Manual Reviews: Includes source code and database assessments, log tracking, and alert ownership workflows.  Pricing Tiers Mid-Scale Plan: Priced at $10/month or $100/year, this tier offers enhanced cyber-risk detection, proactive AI threat alerts, and real-time threat intelligence. Custom Plan: Tailored to complex security requirements—offering advanced integration, compliance planning, and bespoke analytics. Contact SwiftSafe for personalized pricing.  Additional Tiers: SoftwareSuggest references suggest optional tiers like Starter ($5/month), Business ($15/month), and Enterprise (custom), each offering incremental capabilities from basic threat detection to full compliance and dedicated support.  Ideal For Startups & SMBs: Scalable AI defense that begins as basic threat intelligence and grows with your business needs. Enterprises: Mature organizations benefit from MAANG’s multi-layered protection, compliance alignment, and predictive threat intelligence. Security-Conscious Teams: Ideal wherever fast, intelligent response to threats is vital—across IT service providers, financial institutions, healthcare, retail, and more. How MAANG Works (4-Step Flow) Threat Analysis Aggregates and refines global threat data to uncover real threats within your infrastructure. Remediation Guidance Delivers prioritized, context-aware recommendations to neutralize threats efficiently. Detailed Reporting Generates evolving threat summaries—technical and executive level—tailored for decision-making. Continuous Monitoring Ensures your systems stay secure over time through persistent vigilance and adaptive protection.  Benefits at a Glance: Proactive Threat Prediction Reduces risk by neutralizing threats before they occur Scalable Coverage Perfect for startups to enterprises—MAANG scales as you grow Compliance Alignment Helps meet regulations like HIPAA and ISO 27001 with ease Reduced False Positives AI augmented by strategic intelligence for precision Operational Resilience Fast detection and intuitive remediation keep downtime minimal Why MAANG is a Game-Changer MAANG transcends standard security tools by blending AI-powered intelligence, predictive analytics, and automated remediation, set within a continuous monitoring framework. It empowers organizations to move from reactive defense to proactive resilience—while staying compliant and engaged. Case testimonials reflect this impact: “MAANG excels in end-to-end protection for IT infrastructure…” — Jilani Pasha, CEO, C-Trace “AI-driven threat intelligence enhances our ability to tackle threats…” — Pablo Cabrera, CEO, Cabrera “Proactively neutralizes threats in VibesMalerafirma’s IT infrastructure…” — Kim Hagenow, CEO, Vibes “MAANG’s AI safeguards CellTracker’s cloud-based infrastructure…” — Dhamodhar P, CEO, CellTracker

Who Is the Company Behind MAANG – AI-Powered Cyber Threat Management by SwiftSafe?

  • Seller: SwiftSafe
  • Year Founded: 2015
  • HQ Location: Glenroy, AU
  • Twitter: @swiftsafe_
    59 Twitter followers
  • LinkedIn® Page: in.linkedin.com
    20 employees on LinkedIn®
  • Phone: +1 (657) 221-1565

Mainframe Security Insights Platform

Security Insights Platform helps ensure a trusted environment for your customers and employees by easily identifying and reducing risk from threats. It can quickly interpret and assess the security posture of your Mainframe. And, for risky findings, it helps develop remediation steps –all on an ongoing and ad hoc basis.

Who Is the Company Behind Mainframe Security Insights Platform?

  • Seller: Broadcom
  • Year Founded: 1991
  • HQ Location: San Jose, CA
  • Twitter: @broadcom
    63,909 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    55,094 employees on LinkedIn®
  • Ownership: NASDAQ: CA

Mandiant Digital Threat Monitoring

Digital Threat Monitoring Visibility into the open, deep and dark web to anticipate threats

Who Is the Company Behind Mandiant Digital Threat Monitoring?

  • Seller: Google
  • Year Founded: 1998
  • HQ Location: Mountain View, CA
  • Twitter: @google
    31,899,995 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    341,888 employees on LinkedIn®
  • Ownership: NASDAQ:GOOG

Mandiant Threat Detection and Intelligence

Threat Intelligence Get visibility into the latest threats with cyber threat intelligence directly from the frontlines.

Who Is the Company Behind Mandiant Threat Detection and Intelligence?

  • Seller: Google
  • Year Founded: 1998
  • HQ Location: Mountain View, CA
  • Twitter: @google
    31,899,995 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    341,888 employees on LinkedIn®
  • Ownership: NASDAQ:GOOG

MetaDefender Core

Who Is the Company Behind MetaDefender Core?

  • Seller: OPSWAT
  • Year Founded: 2002
  • HQ Location: Tampa, Florida
  • Twitter: @OPSWAT
    7,257 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1,160 employees on LinkedIn®

Mondego Labs Rhine

Mondego Labs Rhine is a threat intelligence platform built for security teams who can't afford to find out about threats after they've already hit. Rhine surfaces malicious domains, phishing pages, and emerging attack infrastructure as they appear on the open internet. It deploys alongside your current stack with no rip-and-replace and no complex onboarding, going live in hours rather than weeks.

Who Is the Company Behind Mondego Labs Rhine?

Netstate

Netstate is business intelligence software that consolidates company records from government and regulatory sources into unified profiles. The platform covers 300 million entities across 195 countries and provides detailed U.S. business data. Each profile aggregates 16 federal datasets, including Secretary of State registrations, contractor awards, licensing information, loans, patents, trademarks, imports, and employee benefit plans. The system resolves entities across federal, state, and judicial datasets to deliver a complete paper trail in a single search. The software allows browsing by jurisdiction and filtering by 24 industry sectors. For vendor due diligence, the platform displays registration status, liens, and litigation history. Business verification tools compare applications against official records. Lending and underwriting functions access UCC positions, SBA loan history, and litigation records. Every field links directly to its source document.

Who Is the Company Behind Netstate?

OceanCentinell Enterprise

OceanCentinell Enterprise is a maritime cybersecurity and technology monitoring platform designed for organizations responsible for maritime operations, vessels, ports, communications, and related infrastructure. The platform centralizes security visibility through dashboards for asset monitoring, vulnerabilities, threats, incidents, audits, networks, satellite communications, AIS/VTS, and digital radio environments. OceanCentinell Enterprise helps security and operational teams organize cybersecurity information, identify potential risks, track incidents, review security posture, and support compliance workflows from a centralized interface. Its command-center approach provides organizations with a unified view of maritime technology and cybersecurity operations. The platform is designed for maritime organizations seeking improved cybersecurity visibility, risk management, incident tracking, and operational security oversight. Demonstration environments may use synthetic and simulat

Who Is the Company Behind OceanCentinell Enterprise?

Offshark

Offshark is a premier cyber security company dedicated to safeguarding your digital assets in an ever-evolving threat landscape. We provide cutting-edge defense mechanisms and proactive monitoring to ensure your business remains resilient against cyber attacks. With a focus on speed, precision, and reliability, Offshark is the ultimate shield for your digital world.

Who Is the Company Behind Offshark?

Oktoboot

Oktoboot® is a cloud-native Cyber Threat Intelligence (CTI) platform that empowers businesses and organizations to proactively detect, analyze, and respond to cyber threats. By delivering real-time threat insights and actionable intelligence, Oktoboot helps security teams stay ahead of evolving cyber risks and protect their digital assets.

Who Is the Company Behind Oktoboot?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated October 22, 2025