Skip to main content
T

TLPBLACK

TLPBLACK offers a cybersecurity platform that aggregates curated threat intelligence focused on malicious domains, network IOCs, and command‑and‑control infrastructure, delivering high‑confidence data for SIEM and SOAR integration. It also provides a sandboxed YARA Quality Lab for testing rules against a wide range of malware samples, enabling security teams to accelerate detection and response.

Founded 20243300+ followers
Updated 3 months ago

Funding

Funding not disclosed

Funding rounds are not available yet.

Founders

Founder details are not available yet.

Product

Problem

Security teams often lack timely, high-quality threat intelligence that focuses on malicious domains, network indicators, and active command‑and‑control infrastructure, making it difficult to detect and respond to emerging attacks.

Solution

TLPBLACK provides a cybersecurity platform that aggregates curated threat intelligence feeds, including a passive DNS database enriched for malicious domains, a repository of network indicators of compromise, and a command‑and‑control monitoring service. The data is tagged and filtered to prioritize actionable, malicious‑focused information, enabling seamless integration with SIEM and SOAR solutions for automated detection and response. Users can also test and refine YARA rules in a secure virtual lab that supplies a wide variety of malware samples. By delivering up‑to‑date, high‑confidence intelligence, TLPBLACK helps organizations anticipate threats, accelerate incident response, and improve proactive threat hunting.

Target Audience

Primary customers are security operations centers, threat intelligence teams, and incident‑response groups within enterprises and managed security service providers that require high‑fidelity threat data and testing tools.

Features

  • Passive DNS database with historical records specifically filtered for malicious domains and networks
  • Comprehensive indicator‑of‑compromise (IOC) feeds designed for direct ingestion into SIEM and SOAR platforms
  • C2 monitoring service that tracks command‑and‑control servers using indirect fingerprinting techniques to stay below detection thresholds
  • Secure YARA Quality Lab offering a sandboxed environment with diverse malware samples for rule development and testing
  • API and export options that support automated integration with existing security tooling and workflows
This profile is AI-generated and may contain inaccuracies.