ELLIO: IP Threat Intel delivers real-time threat intelligence that helps security teams reduce alert fatigue and speed up triage in TIPs, SIEM & SOAR platforms.
This powerful feed provides an exhaustive list of all IPs detected by ELLIO's advanced deception network over the past 30 days, delivered in a clear and accessible JSON format. Updated every 5 minutes, this feed ensures you stay ahead of emerging threats with most up-to-date data available.
Designed to meet the needs of customers managing large volumes of events, this feed is perfect for environments requiring data enrichment, air-gapped systems, and custom workflows. The demand for this high-frequency format has been driven by the critical requirements of government Security Operations Centers and the sensitive workloads of the financial industry.
With detailed information on IPs, contacted ports, targeted regions, and event volume, our IP Threat Intel feed empowers you to automate your workflow with precision.
List of observed IPs in the last 30 days.
Ports targeted by each IP address.
Targeted continents and (optionally) countries.
Volume of connections observed from an IP address.
Last time each IP was observed.
Data included in JSON feed.
Optional addon that includes fingerprints for all observed IPs during last 30 days.
Discover limited-time prices for Summer 2024.
Discover limited-time
prices for July 2024.