Search Intelligence — Search Built for Threat Hunting // MODULES

Search Intelligence — Search Built for Threat Hunting

A unified search engine over everything the platform has collected, covering the Credentials, Credit Cards, Persons, Business and Threat Hunting indices.

Overview

The purpose-built query language supports facets, ranges, wildcards and semantic operators. Results can be saved as recurring searches, exported, or handed off to graph investigation and reporting.

Capabilities

  • Query DSL with 30+ operators
  • Dynamic facets and drill-down
  • Export to CSV/JSON/STIX
  • Saved queries with versioning
  • Search sharing across the team

Use Cases

  • Reactive threat hunting after an incident
  • Fraud investigation with PII matching
  • Validating third-party leak claims
  • Structured OSINT research

Integrations

  • Maltego transforms
  • Splunk SPL bridge
  • Jupyter notebooks

SLA & Guarantees

Immediate queries

Next Steps