OpenCTI is an open-source platform for managing, visualizing, and sharing threat intelligence. It allows users to ingest multiple threat feeds and normalize data into structured entities such as threat actors, indicators, and campaigns. OpenCTI provides visualizations that help analysts understand relationships between different threat elements. It integrates with MITRE ATT&CK and other frameworks to map observed behaviors to known adversary techniques. Security teams use OpenCTI for operational threat intelligence, collaboration, and automating responses to emerging threats.
Details
Deployment mode
Cloud, SaaS, web-based
Desktop Linux
Training and support
Free trial available:
No
Available trainings
No