Integrations
A Note From GreyNoise on Integrations
GreyNoise wants to make it as easy as possible to integrate into your favorite security tools. Below is a list of tools with integrations today, but we are always looking to expand. If you work with a tool that GreyNoise should be integrated with, please contact us at [email protected].
Current Integrations
Below are some of our most popular integrations.
SIEM
Company | Product | Link | Enterprise API | Feed | Community API |
---|---|---|---|---|---|
Elastic | Logstash | Logstash GitHub | ✅ | ❌ | ❌ |
Graylog | Graylog | Graylog Docs | ✅ | ❌ | ❌ |
IBM | QRadar | IBM App Exchange | ✅ | ❌ | ❌ |
Microsoft | Azure Sentinel | Sentinel GitHub - Enterprise ----- Sentinel GitHub - Community ----- Blog Post | ✅ | ❌ | ✅ |
Panther | Panther | Panther Enrichment | ✅ | ❌ | ❌ |
Splunk | Splunk | SplunkBase | ✅ | ✅ | ❌ |
SumoLogic | Cloud SIEM | SumoLogic Docs | ✅ | ❌ | ❌ |
XDR
Company | Product | Link | Enterprise API | Feed | Community |
---|---|---|---|---|---|
Hunters | Hunters XDR | Hunters Integrations | ✅ | ❌ | ✅ |
SOAR
Company | Product | Link | Enterprise API | Feed | Community API |
---|---|---|---|---|---|
Chronicle (Siemplify) | Chronicle SOAR (Siemplify) | Chronicle SOAR Marketplace | ✅ | ❌ | ✅ |
Cisco | SecureX | Cisco Github | ❌ | ❌ | ✅ |
DFLabs | IncMan | IncMan Integrations List | ✅ | ❌ | ❌ |
Fortinet | FortiSOAR | FortiSOAR Connector | ✅ | ❌ | ✅ |
IBM | Resilient | IBM App Exchange | ✅ | ❌ | ❌ |
LogicHub | SOAR+ | LogicHub Integrations | ✅ | ❌ | ✅ |
Palo Alto | XSOAR (formerly Demisto) | Cortex XSOAR Marketplace | ✅ | ❌ | ✅ |
Rapid7 | Insight Connect | Extension Library | ✅ | ❌ | ✅ |
Splunk | SOAR (formerly Phantom) | SplunkBase Playbook Downloads | ✅ | ❌ | ✅ |
StackStorm | StackStorm | StackStorm Exchange | ✅ | ❌ | ❌ |
Swimlane | Swimlane | Swimlane Apphub | ✅ | ❌ | ✅ |
Tines | SOAR Platform | Tines Story Library | ✅ | ❌ | ✅ |
Torq | Torq | Torq Integrations Docs | ✅ | ❌ | ❌ |
Shuffle | Shuffle SOAR | Shuffle Greynoise API | ✅ | ❌ | ✅ |
TIP
Company | Product | Link | Enterprise API | Feed | Community API |
---|---|---|---|---|---|
Analyst1 | Analyst1 Platform | Analyst1 Integrations | ✅ | ❌ | ✅ |
Anomali | ThreatStream Enrichment | Anomali Marketplace | ✅ | ✅ | ✅ |
Cyware | CTIX | Cyware | ✅ | ❌ | |
EclecticIQ | EclecticIQ Intelligence Center | EclecticIQ Integration | ✅ | ✅ | ❌ |
MISP | MISP | MISP Github | ✅ | ✅ | ✅ |
OpenCTI | Connector | OpenCTI Github | ✅ | ❌ | ❌ |
Recorded Future | SIP | Recorded Future Integrations | ✅ | ❌ | ❌ |
ThreatConnect | TIP | ThreatConnect Marketplace | ✅ | ❌ | ❌ |
ThreatQ | TIP | ThreatQ MarketPlace | ✅ | ✅ | ✅ Enrichment Only |
Vertex | Synapse | Synapse Power-Ups ---- GreyNoise Power Up | ✅ | ❌ | ✅ |
Other
Company | Product | Link | Enterprise API | Community API |
---|---|---|---|---|
Axonius | Cybersecurity Asset Management | Axonius Docs | ✅ | ❌ |
Cribl | Stream | Cribl Packs | ✅ | ❌ |
ZScaler | Deception | ZScaler Deception Docs | ✅ | ❌ |
Analyst Tools / OSINT
Company | Product | Link | Enterprise API | Community API |
---|---|---|---|---|
Gigasheet | Gigasheet | Gigasheet | ✅ | ❌ |
Harpoon | CLI Tool | Harpoon Github | ✅ | ✅ |
The Hive | Cortex Analyzer | TheHive Github | ✅ | ❌ |
Maltego | Maltego | Transform Hub | ✅ | ✅ |
Outcome Security | Kaleidoscope | Kaleidoscope | ✅ | ✅ |
Polarity | Polarity | Polarity GitHub | ✅ | ✅ |
pOSINT | pOSINT | pOSINT Github | ✅ | ❌ |
Spiderfoot | Spiderfoot | Spiderfoot GH | ✅ | ✅ |
Sputnik | Browser Extension | Sputnik GitHub | Uses GreyNoise Visualizer Only | Uses GreyNoise Visualizer Only |
Other Community Contributed Integrations
Author | Product | Link | Enterprise API | Community API |
---|---|---|---|---|
Cowrie | Cowrie | Cowrie GitHub | ❌ | ✅ |
CyberGordon | CyberGordon | CyberGordon | ❌ | ✅ |
AndrewPla | GreyNoisePS | GreyNoisePS GitHub | ✅ | ✅ |
hrbrmstr | GreyWatch | GreyWatch GitHub | ❌ | ✅ |
IntelOwl | IntelOwl | IntelOwl GitHub | ✅ | ✅ |
matamorphosis | Scrummage | Scrummage GitHub | ❌ | ✅ |
HurricaneLabs | Machinae | HL Github | ❌ | ✅ |
Sage | Canary-GreyNoise-Community-Threat-Intel-Report via Thinkst | Thinkst Canary GH | ❌ | ✅ |
Sage | Canary-GreyNoise-Enterprise-Threat-Intel-Report via Thinkst | Thinkst Canary GH | ✅ | ❌ |
Ninoseki | Mihari | Ninoseki Github | ✅ | ❌ |
Ninoseki | Mitaka | Ninoseki Github | ✅ | ✅ |
ThreatDudes | GreyNoise Discord Alerts | ThreatDudes Github | ✅ | ❌ |
Backchannel Inc. | GreyNoise Cloudflare Worker | Backchannelinc Github | ❌ | ✅ |
Brex HQ | Substation | Substation Docs | ✅ | ✅ |
Updated about 9 hours ago