{"id":9909,"date":"2025-12-19T16:13:10","date_gmt":"2025-12-19T16:13:10","guid":{"rendered":"https:\/\/techtrendfeed.com\/?p=9909"},"modified":"2025-12-19T16:13:10","modified_gmt":"2025-12-19T16:13:10","slug":"legal-ip-and-palo-alto-networks-cortex-xsoar-combine-to-carry-ai-driven-publicity-intelligence-to-automated-incident-response","status":"publish","type":"post","link":"https:\/\/techtrendfeed.com\/?p=9909","title":{"rendered":"Legal IP and Palo Alto Networks Cortex XSOAR combine to carry AI-driven publicity intelligence to automated incident response"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p class=\"sc-iYsSXP hbVeNb\"><span><strong>Torrance, United States \/ California, December nineteenth, 2025, CyberNewsWire<\/strong><\/span><\/p>\n<p><a rel=\"nofollow\" target=\"_blank\" target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.criminalip.io\/ko?mtm_campaign=PaloAlto%20Integration&amp;mtm_kwd=PaloAlto&amp;mtm_source=bleepingcomputer%20%2F%20cybernewswire&amp;mtm_medium=press\">Legal IP<\/a>\u00a0(criminalip.io), the AI-powered menace intelligence and assault floor monitoring platform developed by AI SPERA, is now formally built-in into Palo Alto Networks\u2019 Cortex XSOAR. The mixing embeds real-time exterior menace context, publicity intelligence, and automatic multi-stage scanning immediately into Cortex XSOAR\u2019s orchestration engine, giving safety groups greater incident accuracy and sooner response than typical log-centric approaches.<\/p>\n<p>For Palo Alto Networks, broadly considered the worldwide chief in cybersecurity, Cortex XSOAR is a central hub for SOC automation. With Legal IP added as an integration via the <a rel=\"nofollow\" target=\"_blank\" target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/cortex.marketplace.pan.dev\/marketplace\/details\/CriminalIP\/\">Cortex Market<\/a>, Cortex XSOAR can now supply customers the power to guage suspicious IPs and domains not solely via static popularity information but additionally via behavioral indicators, publicity historical past, infrastructure correlations, and AI-driven menace scoring, with out requiring extra programs or analyst-driven lookups.<\/p>\n<p><strong>AI Context to Tackle the Limits of Log-Solely Incident Response<\/strong><\/p>\n<p><img decoding=\"async\" src=\"https:\/\/hackread.com\/wp-content\/uploads\/2025\/12\/R3B1tnj_1765876498uFaNqqqQ7I.jpeg\"\/><\/p>\n<p>Automated playbook instance \u2014 detecting malicious domains utilizing the three-step scan within the built-in API of Legal IP and Palo Alto Networks Cortex XSOAR\u200b\u200b&gt;<\/p>\n<p>Trendy SOC groups face overwhelming alert volumes, but conventional enrichment nonetheless relies on static popularity feeds with restricted context, usually lacking port publicity, CVE ties, certificates reuse, DNS modifications, or anonymization habits. Legal IP fills this hole by constantly analyzing international internet-facing belongings and correlating IP habits, area exercise, SSL\/TLS information, port states, CVE publicity, IDS hits, and masking indicators. When an alert consists of an IP or area, Cortex XSOAR can robotically pull this enriched intelligence into the energetic incident through a playbook, permitting analysts to evaluate intent and severity with out leaving Cortex SOAR.<\/p>\n<p><strong>Multi-Stage Scanning and Exterior Publicity Linking<\/strong><\/p>\n<p>Cortex XSOAR playbooks can set off Legal IP\u2019s automated three-stage scanning workflow: starting with a Fast Lookup, escalating to a Lite Scan, after which performing a Full Scan for full assault floor evaluation. Full Scan outcomes are delivered as structured experiences inside Cortex XSOAR, with generic polling guaranteeing the workflow continues with out handbook effort. Past alert-driven enrichment, the mixing additionally hyperlinks inner telemetry with open-internet intelligence offering historic habits, C2 relationships, anonymization indicators, abuse data, and SSL correlations for every indicator. Cortex XSOAR can even schedule Micro Assault Floor Administration scans to evaluate uncovered ports, certificates validity, weak providers, and outdated software program, providing light-weight, steady ASM capabilities that assist organizations establish weaknesses earlier than they&#8217;re exploited.<\/p>\n<p><strong>Accelerating the Shift Towards Intelligence-Pushed Autonomous Safety<\/strong><\/p>\n<p><img decoding=\"async\" src=\"https:\/\/hackread.com\/wp-content\/uploads\/2025\/12\/qDYhjEG_1765876498zmMazH6byr.jpeg\"\/><\/p>\n<p>Screenshot of the Legal IP pack on the Cortex Market<\/p>\n<p>The mixing between Palo Alto Networks and Legal IP displays a broader development towards autonomous safety operations. By combining Cortex XSOAR\u2019s automation and orchestration capabilities with Legal IP\u2019s real-time exterior evaluation, SOC groups can automate selections that beforehand required handbook analysis throughout a number of intelligence sources. This reduces response instances, improves the accuracy of incident classification, and minimizes analyst fatigue\u2014points which have grown extra extreme as alert volumes and AI-generated threats proceed to rise.<\/p>\n<p><a rel=\"nofollow\" target=\"_blank\" target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.criminalip.io\/ko?mtm_campaign=PaloAlto%20Integration&amp;mtm_kwd=PaloAlto&amp;mtm_source=bleepingcomputer%20%2F%20cybernewswire&amp;mtm_medium=press\">Legal IP<\/a> is already current on Azure, AWS, and Snowflake marketplaces and maintains integrations with greater than 40 safety distributors, together with Cisco, Fortinet, and Tenable. Its growth into the Palo Alto Networks ecosystem units the muse for additional integrations throughout XDR and cloud safety options.<\/p>\n<p>AI SPERA CEO Byungtak Kang acknowledged that the mixing \u201cdemonstrates the rising significance of AI-driven menace intelligence and publicity analytics in enterprise safety operations,\u201d including that Legal IP goals to play a central function in serving to organizations transition towards totally autonomous protection architectures.<\/p>\n<p><strong>About Legal IP<\/strong><\/p>\n<p><a rel=\"nofollow\" target=\"_blank\" target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/www.criminalip.io\/ko?mtm_campaign=PaloAlto%20Integration&amp;mtm_kwd=PaloAlto&amp;mtm_source=bleepingcomputer%20%2F%20cybernewswire&amp;mtm_medium=press\">Legal IP<\/a> is the flagship cyber menace intelligence platform developed by AI SPERA. The platform is utilized in greater than 150 international locations and offers complete menace visibility via enterprise safety options resembling Legal IP ASM and Legal IP FDS.<\/p>\n<p>Legal IP continues to strengthen its international ecosystem via strategic partnerships with Cisco, VirusTotal and Quad9. The platform\u2019s menace information can be obtainable via main US information warehouse marketplaces together with Amazon Internet Companies (AWS), Microsoft Azure and Snowflake. This growth improves international entry to prime quality menace intelligence from Legal IP.<\/p>\n<p>Customers can study extra: <a rel=\"nofollow\" target=\"_blank\" target=\"_blank\" rel=\"nofollow noopener\" href=\"https:\/\/cortex.marketplace.pan.dev\/marketplace\/details\/CriminalIP\/\">https:\/\/cortex.market.pan.dev\/market\/particulars\/CriminalIP\/<\/a><\/p>\n<h5 id=\"contact\">Contact<\/h5>\n<p><span><strong>Michael Sena<\/strong><br \/><\/span><span><strong>AI SPERA<\/strong><br \/><\/span><span><strong><a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/hackread.com\/cdn-cgi\/l\/email-protection\" class=\"__cf_email__\" data-cfemail=\"0b787e7b7b64797f4b6a62787b6e796a25686466\">[email\u00a0protected]<\/a><\/strong><br \/><\/span><\/p>\n<p>\n\t\t\t<\/div>\n<p><template id="LbEEctlcYVHMuILgUa8w"></template><\/script><br \/>\n<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Torrance, United States \/ California, December nineteenth, 2025, CyberNewsWire Legal IP\u00a0(criminalip.io), the AI-powered menace intelligence and assault floor monitoring platform developed by AI SPERA, is now formally built-in into Palo Alto Networks\u2019 Cortex XSOAR. The mixing embeds real-time exterior menace context, publicity intelligence, and automatic multi-stage scanning immediately into Cortex XSOAR\u2019s orchestration engine, giving safety [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":9911,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[58],"tags":[992,2951,4042,1518,7013,1942,6258,3205,2065,312,667,2950,2018,7014],"class_list":["post-9909","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-aidriven","tag-alto","tag-automated","tag-bring","tag-cortex","tag-criminal","tag-exposure","tag-incident","tag-integrate","tag-intelligence","tag-networks","tag-palo","tag-response","tag-xsoar"],"_links":{"self":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/9909","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=9909"}],"version-history":[{"count":1,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/9909\/revisions"}],"predecessor-version":[{"id":9910,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/posts\/9909\/revisions\/9910"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=\/wp\/v2\/media\/9911"}],"wp:attachment":[{"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=9909"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=9909"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techtrendfeed.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=9909"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}<!-- This website is optimized by Airlift. Learn more: https://airlift.net. Template:. Learn more: https://airlift.net. Template: 69d9690a190636c2e0989534. Config Timestamp: 2026-04-10 21:18:02 UTC, Cached Timestamp: 2026-06-13 11:46:22 UTC -->