Much like the mythical six degrees of separation of another famous Bacon, it seems that you can’t get farther than three clicks on a security provider’s website without running into some mention of threat intelligence. While my hazy, hairspray-induced fondness for “Footloose” is dampened somewhat by the existence of “Wild Things” in the ’90s, I can safely say that X-Force Threat Intelligence is one my favorite security seasonings.

Cur(at)ing Threat Intelligence

While you may not want to see how sausage is made, there is a lot of interest in how threat intelligence is created. Although I’ve had a rather unfortunate exposure to pig farming thanks to a classmate’s technical process presentation in a college Public Speaking class, I’ll spare you the details. Suffice to say it was quite unsuitable for an 8 a.m. lecture.

It’s not idle curiosity to question the sources of threat intelligence. Essential to threat intelligence being useful is that it is accurate and trusted.

X-Force sources threat intelligence using a variety of data capture methods. The infrastructure that X-Force uses for collecting data includes a Web crawler, similar in technology to what an Internet search engine would use. It is focused on identifying threats, malicious Web domains, honeypots and darknets that capture network communication indicative of malware, and spam traps for obtaining as much spam as possible.

These data collection methods are complemented by further data from 15 billion monitored events from our Security Services clients and 270 million monitored endpoints to collect malware samples. Capturing this data is important; equally important is turning the information collected into insights that can integrate with products and help protect an enterprise.

And when in doubt, just add bacon.

More from Cloud Security

Autonomous security for cloud in AWS: Harnessing the power of AI for a secure future

3 min read - As the digital world evolves, businesses increasingly rely on cloud solutions to store data, run operations and manage applications. However, with this growth comes the challenge of ensuring that cloud environments remain secure and compliant with ever-changing regulations. This is where the idea of autonomous security for cloud (ASC) comes into play.Security and compliance aren't just technical buzzwords; they are crucial for businesses of all sizes. With data breaches and cyber threats on the rise, having systems that ensure your…

Risk, reward and reality: Has enterprise perception of the public cloud changed?

4 min read - Public clouds now form the bulk of enterprise IT environments. According to 2024 Statista data, 73% of enterprises use a hybrid cloud model, 14% use multiple public clouds and 10% use a single public cloud solution. Multiple and single private clouds make up the remaining 3%.With enterprises historically reticent to adopt public clouds, adoption data seems to indicate a shift in perception. Perhaps enterprise efforts have finally moved away from reducing risk to prioritizing the potential rewards of public cloud…

AI-driven compliance: The key to cloud security

3 min read - The growth of cloud computing continues unabated, but it has also created security challenges. The acceleration of cloud adoption has created greater complexity, with limited cloud technical expertise available in the market, an explosion in connected and Internet of Things (IoT) devices and a growing need for multi-cloud environments. When organizations migrate to the cloud, there is a likelihood of data security problems given that many applications are not secure by design. When these applications migrate to cloud-native systems, mistakes in configuration…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today