Panther has partnered with GreyNoise Intelligence to provide integrated threat intelligence to Panther customers and to enrich alerts with GreyNoise IP data. All Panther customers are given access to the Basic GreyNoise package at no additional cost, or customers can upgrade to the Advanced GreyNoise package for more filtering tools and threat hunting.
GreyNoise data sets are available for use as Panther-managed Lookup Tables, so there is no need to make API calls to leverage this enrichment in your detection logic or alerts. Alert events are automatically enriched with GreyNoise data under the p_enrichment field. GreyNoise data can be used in detections with pre-built Python helpers (similar to Python libraries) to access enrichment information.
Panther’s GreyNoise threat intelligence integration helps users to:
All Panther customers are given access to threat intelligence from the Basic GreyNoise package at no additional cost. For more advanced filtering and threat hunting, customers can upgrade to an Advanced GreyNoise package.
You can read more about Panther’s partnership with GreyNoise here, or check out our product documentation for more information.