Search Intelligence — Search Built for Threat Hunting
A unified search engine over everything the platform has collected, covering the Credentials, Credit Cards, Persons, Business and Threat Hunting indices.
Overview
The purpose-built query language supports facets, ranges, wildcards and semantic operators. Results can be saved as recurring searches, exported, or handed off to graph investigation and reporting.
Capabilities
- Query DSL with 30+ operators
- Dynamic facets and drill-down
- Export to CSV/JSON/STIX
- Saved queries with versioning
- Search sharing across the team
Use Cases
- Reactive threat hunting after an incident
- Fraud investigation with PII matching
- Validating third-party leak claims
- Structured OSINT research
Integrations
- Maltego transforms
- Splunk SPL bridge
- Jupyter notebooks
SLA & Guarantees
Immediate queries