Daily Guardian
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
What's On

Linux 6.19 arrives with a teaser for Linux 7.0

February 9, 2026

Monarch Private Capital and FilmUSA Recap “Lights. Camera. America!” Panel at the 2026 Sundance Film Festival on the Future of U.S. Film Production

February 9, 2026

Indonesia Data Center Industry Report 2026: Market Share Analysis, Industry Trends & Statistics, Growth Forecasts 2025-2031

February 9, 2026

Lil Wayne Performs Halftime Show in Hit Mobile Game Clash Royale

February 9, 2026

SVCV Launches NextRock Investment Group as the Flagship Financial Firm and Global Asset Manager for the Group

February 9, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian
Subscribe
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
Daily Guardian
Home » Criminal IP Integrates with IBM QRadar to Deliver Real-Time Threat Intelligence Across SIEM and SOAR
Press Release

Criminal IP Integrates with IBM QRadar to Deliver Real-Time Threat Intelligence Across SIEM and SOAR

By News RoomFebruary 9, 20264 Mins Read
Criminal IP Integrates with IBM QRadar to Deliver Real-Time Threat Intelligence Across SIEM and SOAR
Share
Facebook Twitter LinkedIn Pinterest Email
Criminal IP Integrates with IBM QRadar to Deliver Real-Time Threat Intelligence Across SIEM and SOAR

TORRANCE, Calif., Feb. 09, 2026 (GLOBE NEWSWIRE) — Criminal IP (criminalip.io), the AI-powered threat intelligence and attack surface intelligence platform, is now integrated with IBM QRadar SIEM and QRadar SOAR.

The integration brings external, IP-based threat intelligence directly into IBM QRadar’s detection, investigation, and response workflows, enabling security teams to identify malicious activity faster and prioritize response actions more effectively across SOC operations.

IBM QRadar is widely adopted by enterprises and public-sector organizations as a central platform for security monitoring, automation, and incident response. By embedding Criminal IP intelligence into QRadar SIEM and extending it into SOAR workflows, organizations can apply external threat context across the incident lifecycle without leaving the QRadar environment.

Real-Time Threat Visibility from Firewall Traffic Logs

With the Criminal IP QRadar SIEM integration, security teams can analyze firewall traffic logs and automatically assess the risk associated with communicating IP addresses. Traffic data forwarded into IBM QRadar SIEM is analyzed through the Criminal IP API and reflected directly inside the SIEM interface.

Observed IP addresses are automatically classified into High, Medium, or Low risk levels from a threat intelligence perspective. This allows SOC teams to quickly identify high-risk IPs, monitor inbound and outbound traffic, and prioritize response actions such as access blocking or escalation within the familiar QRadar SIEM workflow.

Interactive Investigation Without Leaving QRadar

Criminal IP

Integrated Criminal IP lookup within IBM QRadar SIEM enables analysts to investigate suspicious IPs directly from traffic logs.

Beyond high-level visibility, the integration supports fast, in-context investigation. Analysts can right-click on IP addresses displayed in QRadar Log Activity to open a detailed Criminal IP report.

These reports provide additional context, including threat indicators, historical behavior, and external exposure signals, enabling analysts to validate risk and intent without switching tools. This streamlined workflow supports faster decision-making during time-sensitive investigations.

Extending Intelligence into QRadar SOAR Workflows

Criminal IP is also integrated with IBM QRadar SOAR to support automated threat enrichment during incident response. Using pre-built playbooks, Criminal IP intelligence can be applied to IP addresses and URL artifacts, with enrichment results returned directly into SOAR cases as artifact hits or incident notes.

This integration includes two playbooks:

  • Criminal IP: IP Threat Service – Enriches IP address artifacts with Criminal IP threat context.
  • Criminal IP: URL Threat Service – Performs lite or full URL scans and returns results as artifact hits or incident notes.

By embedding Criminal IP threat intelligence directly into SOAR workflows, analysts can reduce manual lookups and respond to incidents more efficiently.

Advancing Intelligence-Driven Detection and Response

By integrating Criminal IP with IBM QRadar SIEM and SOAR, organizations can combine QRadar’s correlation, investigation, and response capabilities with context-rich external threat intelligence derived from real-world internet exposure. This approach improves detection accuracy, shortens investigation cycles, and enhances response prioritization across SOC operations.

As alert volumes continue to grow, Criminal IP helps QRadar users make faster, more informed decisions by bringing external threat context directly into SIEM and SOAR workflows without adding operational complexity.

AI SPERA CEO Byungtak Kang commented that the integration highlights the growing importance of real-time, exposure-based intelligence in modern SOC environments and underscores Criminal IP’s focus on improving detection confidence and operational efficiency through practical, intelligence-driven integrations.

About Criminal IP

Criminal IP is the flagship cyber threat intelligence platform developed by AI SPERA and is used in more than 150 countries worldwide. It equips security teams with the actionable Threat Intelligence needed to proactively identify, analyze, and respond to emerging threats.

Powered by AI and OSINT, it delivers threat scoring, reputation data, and real-time detection of a wide array of malicious indicators, ranging from C2 servers and IOCs to masking services like VPNs, proxies, and anonymous VPNs, across IPs, domains, and URLs. Its API-first architecture ensures seamless integration into security workflows to boost visibility, automation, and response.

Contact

Michael Sena
AI SPERA
[email protected]

Photos accompanying this announcement are available at

https://www.globenewswire.com/NewsRoom/AttachmentNg/ee901ea7-1e08-438b-a452-86721affac9c

https://www.globenewswire.com/NewsRoom/AttachmentNg/8e031070-261c-475d-b797-c2fabea4bb5a

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

Monarch Private Capital and FilmUSA Recap “Lights. Camera. America!” Panel at the 2026 Sundance Film Festival on the Future of U.S. Film Production

Indonesia Data Center Industry Report 2026: Market Share Analysis, Industry Trends & Statistics, Growth Forecasts 2025-2031

Lil Wayne Performs Halftime Show in Hit Mobile Game Clash Royale

SVCV Launches NextRock Investment Group as the Flagship Financial Firm and Global Asset Manager for the Group

Cygnet.One Approved as an AWS Amazon ECS Service Delivery Partner

Logistics Automation Research Report 2026 – Rapid E-Commerce Parcel Volumes Drive Infrastructure Modernization – Market Share Analysis, Industry Trends & Statistics, Growth Forecasts 2025-2031

Verisk Names Steven Kauderer President of Claims Solutions

Zack Kowalski of Inseego Honored as a 2026 CRN® Channel Chief

Last Call Alert: Only 130M BlockDAG (BDAG) Remain at $0.00025! DOGE & XRP Show Rally Ahead

Editors Picks

Monarch Private Capital and FilmUSA Recap “Lights. Camera. America!” Panel at the 2026 Sundance Film Festival on the Future of U.S. Film Production

February 9, 2026

Indonesia Data Center Industry Report 2026: Market Share Analysis, Industry Trends & Statistics, Growth Forecasts 2025-2031

February 9, 2026

Lil Wayne Performs Halftime Show in Hit Mobile Game Clash Royale

February 9, 2026

SVCV Launches NextRock Investment Group as the Flagship Financial Firm and Global Asset Manager for the Group

February 9, 2026

Subscribe to News

Get the latest Canada news and updates directly to your inbox.

Latest News

Cygnet.One Approved as an AWS Amazon ECS Service Delivery Partner

February 9, 2026

Logistics Automation Research Report 2026 – Rapid E-Commerce Parcel Volumes Drive Infrastructure Modernization – Market Share Analysis, Industry Trends & Statistics, Growth Forecasts 2025-2031

February 9, 2026

Now is the ‘best time’ to rent in Canada as asking price hits 31-month low: report

February 9, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian Canada. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version