We are thrilled to announce that our official Threat Landscape OpenCTI Connector has been successfully merged into the OpenCTI Platform.
OpenCTI is a cornerstone of modern cyber threat intelligence, and we know how important seamless integration is for security teams. With this official connector, you can now automate the ingestion of our high-fidelity threat intelligence directly into your OpenCTI instance — no custom code, no middleware, no hand-rolled parsing.
What This Means for Your SOC and CTI Teams
- Automated Ingestion: Streamline your workflows without writing a single line of custom code. The connector consumes STIX 2.1 bundles and imports reports, indicators, threat actors, malware, campaigns, vulnerabilities, attack patterns, identities, locations and their relationships straight into OpenCTI.
- Enriched Context: Bring Threat Landscape's actionable insights directly into your existing investigations, so analysts work against a ready-made knowledge graph instead of raw feeds.
- Faster Response: Spend less time wrestling with APIs and more time neutralizing threats. Incremental polling keeps OpenCTI fresh without a full re-sync on every run.
We built the connector as a first-class citizen of the OpenCTI ecosystem, and we're proud to have it alongside the platform's existing collection of community and vendor connectors.
Get Started
The connector is now available through the OpenCTI connectors repository and as a ready-to-run image on Docker Hub:
A huge shoutout to the OpenCTI / Filigran team for their collaboration and for building such an incredible platform.
Want to see the full picture of what Threat Landscape brings to your stack? Explore our integrations and documentation to learn how we help protect your organization.