Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

Criminal IP and Palo Alto Networks Cortex XSOAR integrate to bring AI-driven exposure intelligence to automated incident response

Torrance, United States / California, Fri, Dec 19, 2025

Torrance, United States / California, Fri, Dec 19, 2025

Criminal IP , developed by AI SPERA, has been integrated into Palo Alto Networks’ Cortex XSOAR. This integration enhances incident response through real-time threat context and automated scanning capabilities.

The integration allows for the incorporation of external threat context, exposure intelligence, and automated scanning within Cortex XSOAR’s orchestration engine. This provides security teams with improved incident accuracy and response times compared to traditional methods.

Palo Alto Networks’ Cortex XSOAR serves as a hub for SOC automation. With the Criminal IP integration, users can evaluate IPs and domains using behavioral signals, exposure history, and AI-driven threat scoring, without needing additional systems.

Torrance, United States / California, Fri, Dec 19, 2025 Criminal IP , developed by AI SPERA, has been integrated into Palo Alto Networks’ Cortex XSOAR.
Ryan Ellis · Thehackingpost

The integration addresses traditional limitations by providing enriched intelligence through Criminal IP’s analysis of internet-facing assets. It includes IP behavior, domain activity, SSL/TLS data, and more, enabling better incident assessment within Cortex XSOAR.

Cortex XSOAR can initiate Criminal IP’s three-stage scanning workflow, which includes Quick Lookup, Lite Scan, and Full Scan for comprehensive analysis. This workflow continues seamlessly, delivering structured reports and linking internal telemetry with external intelligence.

The integration of Palo Alto Networks and Criminal IP supports the shift towards autonomous security operations. By combining Cortex XSOAR’s capabilities with Criminal IP’s analysis, SOC teams can automate decisions, reducing response times and improving incident classification accuracy.

Advertisement

Criminal IP offers comprehensive threat visibility and is integrated with over 40 security vendors. It is available on marketplaces like Azure, AWS, and Snowflake, enhancing global access to high-quality threat intelligence.

Based on reporting by Cyber Security News.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories