We're excited to announce a comprehensive platform update featuring powerful new intelligence capabilities, enhanced usability, and expanded enterprise integrations.
Platform Enhancement
We’ve restructured the entire platform around real security workflows with new top-level modules:
Insight — Rich context views, email & phone number search, Live Scan, and Bulk Enrichment
Defend — SIEM/SOAR feeds, proactive integrations, Threat Check, TLP Amber Reports, IOFA Feeds, Feed Library, Feed Search, Feed Comparison, and Data Export
Reconnaissance — Threat hunting and advanced workflows including Context Graph Search (formerly Web Search), DNS, WHOIS, Monitors, and Impersonation
Advanced Attribution — New module featuring Traffic Origin and deep attribution tools
Additional platform-wide improvements include a retooled, cleaner main navigation, full Dark/Light Mode support, and a streamlined search experience now consolidated within the Advanced Query Builder.
New Features Available to All Users
Email & phone number search now available directly in the Insight Search bar on the landing page
PADNS Datasource
New Passive Active DNS data has been added to Context Graph Search. This allows you to view DDNS data for domains to detect service abuse and better understand obfuscated domain-to-IP relationships.
Traffic Origin (New in Advanced Attribution)
MCP Server (Beta)
The new Silent Push MCP Server (Model Context Protocol) is a SaaS-hosted endpoint that delivers our intelligence directly to MCP-compatible AI platforms such as Claude and Cursor.
Perform threat investigations, enrich indicators, query infrastructure, and validate IOCs using natural language; no complex syntax required.
Chrome Extension v1.8
Major update including Webpack security fixes, state persistence for page-wide DNS scans, clearer loading indicators for bulk threat checks, and full API alignment.
Improved categorization and visibility for Data Exports
Indicator pivots are now enabled within TLP Amber Reports for faster investigation workflows
Bulk Enrichment
Process up to 100 domains and IPv4 addresses at once in a single operation.
Automatically returns comprehensive, multi-layered enrichment across 100+ categories, including Risk Scoring, WHOIS, Passive DNS, certificates, web content, geographic data, behavioral fingerprints, and more.
Features tabbed results with a dedicated PADNS view. Perfect for high-volume investigations, incident response, phishing campaign analysis, and automated workflows.
TLP Amber Reports via API
Retrieve full TLP Amber Report metadata (titles, descriptions, tags) through the API for seamless integration into TIPs, SIEMs, and internal workflows.
Next Steps
All users: Log in now to explore the new module-based navigation, Traffic Origin, PADNS datasource, and enhanced search experience.
Community Users: Book a Demo to see the MCP Server, Bulk Enrichment, and full API capabilities in action.