Download now! eBook Now Available: Using Farsight Passive DNS for Incident Response

Threat Intelligence

Threat intelligence teams need to detect and stop threats before they impact business operations. Teams who manually collect data about emerging threats can’t react in time to mitigate the next attack. They need actionable real-time data from across the Internet focused on specific types of DNS-based threats.

Block Bad Actors…and Their Networks…Before They Attack

Know Your Adversary (Connect the Dots)

Discover associations among threat actors to track and block their activity. Uncover an entire ‘neighborhood’ of bad actors including their motives, timeline, and lateral movement.

Detect Cyberattacks Faster and More Accurately

Automate threat investigation processes to quickly navigate the high volume of threat data and perform fact-based risk assessments.

Stop Phishing, Malware, and Ransomware Earlier

Proactively defend your organization from sophisticated cybersecurity threats.

Our Product Suite for Threat Intelligence

DNSDB

DNSDB

Farsight Security’s DNSDB® is a Passive DNS historical database that provides a unique, fact-based, multifaceted view of the configuration of the global Internet infrastructure.

DNS Changes

DNS Changes

DNS Changes channel provides real-time visibility into changes made to DNS.

DNS Errors

DNS Errors

The DNS Errors channel is a real-time feed of DNS query responses which have a valid or completely absent checksum and a non-zero response code.

Additional Resources

Video

DNSDB Pivots Overview

Video

Basic DNSDB Pivots

Video

Diving into DNSDB Pivots

Video

DNS As a Defense Tool

Case Study

How ThreatConnect® leverages DNSDB to Track Down the Grizzly (Steppe)

Case Study

Avalon and DNSDB to expose the Emotet Malware