EN
Request a demo
EN
See all integrations

Proofpoint

Proofpoint is an enterprise email security and threat protection platform that provides advanced threat detection, URL defense, and forensic analysis capabilities
Email Security
1 Analyzer
2 Functions
2 Use cases
www.proofpoint.com GitHub

Use Cases (2)

Real-world integrations with TheHive

Ingest Proofpoint MessagesDelivered Events into TheHive Using an Alert Feeder

Ingest Proofpoint TAP messagesDelivered events as TheHive alerts to track and respond to threats that have reached user mailboxes and may require investigation.

Ingest Proofpoint ClicksPermitted Events into TheHive Using an Alert Feeder

Ingest Proofpoint TAP clicksPermitted events as TheHive alerts to track and respond to users who clicked on malicious links that were not blocked by Proofpoint and may require investigation.


Analyzers (1)

Enrich observables with intelligence

Proofpoint Lookup v1.0

Check URL, file, SHA256 against Proofpoint forensics

  • Author: Emmanuel Torquato
  • License: AGPL-V3
  • Data Types: url, file, hash

Functions (2)

Automate TheHive actions or ingest alerts

alertFeeder ProofPoint clicksPermitted v1.0.0

Ingests ProofPoint clicksPermitted alerts in TheHive

  • Author: Fabien Bloume, StrangeBee

alertFeeder ProofPoint messageDelivered v1.0.0

Ingests ProofPoint messageDelivered alerts in TheHive

  • Author: Fabien Bloume, StrangeBee
CrowdStrike Falcon
Splunk
VirusTotal
Microsoft Defender for Endpoint
Microsoft Entra ID
MISP
Google Threat Intelligence
Recorded Future
Microsoft Defender for Office 365
Shodan
Slack
AbuseIPDB
Cloudflare
URLScan.io
URLhaus
ONYPHE
YARA
CAPA
Telegram
Apache Kafka
Mattermost
Microsoft Teams
Redis
Airtable
AnyRun
Autofocus
AWS Lambda
AWX
Axur
BackscatterIO
BinalyzeAIR
Censys
ChainAbuse
CheckPhish
CheckPoint
Check Point HEC
Cisco Duo
CiscoUmbrella
CISMCAP
ClamAV
Cluster25
ClusterHawk
Crtsh
Cuckoo Sandbox
CyberChef
Cyberprotect
Cylance
DNS-RPZ
DNSDB
DNSdumpster
DNSLookingglass
DNSSinkhole
DomainTools
DShield
EchoTrail
EclecticIQ
EmergingThreats
EmlParser
FileInfo
FireHOLBlocklists
FoxIO
Gatewatcher CTI
Gmail
GoogleDNS
GRR Rapid Response
HarfangLab
Hashdd
Inoitsu
IntezerCommunity
Investigate
IP-API
IPVoid
isMalicious
IVRE
JAMFProtect
JIRA
Jupyter
KnowBe4
LdapQuery
Lookyloo
LupovisProwl
Mailer
MailIncidentStatus
Malpedia
MalwareClustering
Malwares
MetaDefender
MsgParser
NERD
Nessus
Netcraft
NSRL
Okta
ONYPHEActiveScan
OpenCTI
OrionMalware
OVHcloud
PassiveTotal
Patrowl
PhishingInitiative
Pulsedive
QrDecode
Redmine
Robtex
RT4
SecurityTrails
SendGrid
SentinelOne
SinkDB
SophosIntelix
SpamAssassin
SpamhausDBL
StamusNetworks
StopForumSpam
ThreatGrid
ThreatMiner
ThreatResponse
Thunderstorm
TorBlutmagie
TorProject
Triage
UnshortenLink
urlDNA.io
Valhalla
ValidateObservable
Verifalia
VMRay
Vulners
Watcher
Wazuh
WOT
Yeti
ZEROFOX
Zscaler
Abuse Finder
AIL Onion-Lookup
AlienVault OTX
CERT.AT pDNS
CIRCL Hash Lookup
CIRCL Passive DNS
CIRCL Passive SSL
CIRCL Vulnerability-Lookup
Cisco Secure Endpoint (Formerly AMP for Endpoints)
CrowdSec
Domain Mail SPF DMARC
DomainTools Iris
Elasticsearch
EmailRep
FireEye iSIGHT
Forcepoint WebsensePing
Google Safe Browsing
Google Vision API
GreyNoise
Have I Been Pwned
Hunter.io
Hybrid Analysis
IBM QRadar
IBM X-Force
IPinfo
Joe Sandbox
Kaspersky TIP
Maltiverse
MalwareBazaar
Malware Hash Registry (MHR)
MaxMind
MISP Warning Lists
Mnemonic Passive DNS
n8n
PAN Cortex XDR
PAN Cortex XSOAR
PAN Next Generation Firewall
PAN WildFire
PhishTank
Rapid7 InsightConnect
SEKOIA Intelligence Center
Shuffle
ThreatConnect
Tines
Velociraptor
VirusShare
See how TheHive can help your team
Thousands of analysts worldwide rely on our platform to manage security incidents more efficiently than ever.
See what the buzz is about: