
Threat Intelligence Collection
Threat Intelligence (or cyber intelligence) is the process of collecting, analyzing, and applying data on current cyber threats.
The goal is to understand the goals, tactics, and tools of attackers, and then build an effective defense strategy against attacks.
Threat Intelligence helps:

Detect threats before they lead to an incident: for example, information about malicious IP addresses, domains, downloaders, and exploits that can be used to block threats at the perimeter;

Assist in incident investigations: Threat Intelligence data helps understand attack vectors, the tools and methods used, and potential attackers;

Predict threats: By analyzing trends and the activity of hacker groups, Threat Intelligence specialists can predict potential threats to a specific organization or industry.