
Top picks: Webz.io, Constella Threat Intelligence Data Signals API, CYBERA Signals — plus 45 more compared.
Threat IntelligenceEvaluating ZeroFox Threat Intelligence Feeds alternatives comes down to matching Threat Intelligence capabilities to your environment, integrations, and budget rather than chasing feature parity. The options below are compared on what actually drives a switch: coverage, deployment fit, pricing, and real reviews from security teams. Independent and vendor-neutral: our scores and rankings are earned, never bought — sponsored placement is always labeled.
ZeroFox Threat Intelligence Feeds is a commercial Threat Intel Feeds tool developed by ZeroFox. Security professionals most commonly compare it with Webz.io, Constella Threat Intelligence Data Signals API, CYBERA Signals, SecurityScorecard Intelligence Feeds, and SecurityZones SURBL BV. All 48 alternatives are matched by shared capabilities, tags, and NIST CSF 2.0 coverage.
A closer look at the 8 most relevant alternatives and competitors to ZeroFox Threat Intelligence Feeds, including their key features and shared capabilities.
Web data platform providing open, deep & dark web APIs and monitoring.
Shares 4 capabilities with ZeroFox Threat Intelligence Feeds: Data Breach, Fraud Detection, Cyber Threat Intelligence, Dark Web Monitoring
API providing access to compromised identity data and threat signals
Shares 4 capabilities with ZeroFox Threat Intelligence Feeds: Data Breach, Fraud Detection, Cyber Threat Intelligence, Dark Web Monitoring
Free mule account alert feed for banks to detect scam-linked accounts.
Shares 4 capabilities with ZeroFox Threat Intelligence Feeds: Fraud Detection, Cyber Threat Intelligence, Threat Feed, Dark Web Monitoring
Cyber threat intelligence feeds for SOC and threat intelligence teams
Shares 3 capabilities with ZeroFox Threat Intelligence Feeds: Cyber Threat Intelligence, Threat Feed, Dark Web Monitoring
Domain reputation threat intelligence feeds for malicious domain detection
Shares 3 capabilities with ZeroFox Threat Intelligence Feeds: Botnet, Cyber Threat Intelligence, Threat Feed
Threat intelligence feeds covering 100+ attack types with 5-min updates
Shares 3 capabilities with ZeroFox Threat Intelligence Feeds: Fraud Detection, Cyber Threat Intelligence, Threat Feed
Daily threat intel feed identifying malicious IPs with abuse classifications
Shares 3 capabilities with ZeroFox Threat Intelligence Feeds: Fraud Detection, Cyber Threat Intelligence, Threat Feed
Netacea Threat Intel Center is a managed cyber threat intelligence (CTI) service focused on automated threats and bot attacks. It monitors criminal communities, dark web forums, marketplaces, and channels such as Telegram and Discord to gather intelligence on bot threat actors targeting a specific business. The service is delivered through a combination of managed threat research, professional services for specific intelligence-gathering or disruption tasks, and human-curated threat feeds summarizing discussions about a customer's brand or sector. It provides pre- and post-attack intelligence covering areas such as credential stuffing configurations, stolen accounts, cracked cards, fake accounts, stolen loyalty points, scalper bots and modules, scraping tools, and refund fraud schemes. Reports and alerts are intended to support SOC, legal, fraud, and executive teams by providing reconnaissance on attacker plans, defense bypass techniques, and information usable for disruption or prosecution of threat actors.</description> <parameter name="summary">Managed threat intelligence service focused on bot attacks and automated threats
Shares 4 capabilities with ZeroFox Threat Intelligence Feeds: Fraud Detection, Cyber Threat Intelligence, Threat Feed, Dark Web Monitoring
API providing access to compromised identity data and threat signals
Free mule account alert feed for banks to detect scam-linked accounts.
Cyber threat intelligence feeds for SOC and threat intelligence teams
Domain reputation threat intelligence feeds for malicious domain detection
Threat intelligence feeds covering 100+ attack types with 5-min updates
Daily threat intel feed identifying malicious IPs with abuse classifications
Enterprise threat intelligence feeds covering malware, phishing, C2, and IPs
Investigative intelligence service for law enforcement agencies
Real-time threat intel feeds sourced from honeypots & ISP abuse reports.
Digital threat intel platform with 300TB+ of malware data, AI analytics & forecasting.
Proactive C2 threat intelligence feed for detecting adversary infrastructure
Technical threat intel feed of compromised IPs/domains from cybercrime sources
Threat intelligence feeds providing malware and threat data in multiple formats
AI-powered threat intelligence feed for automated DDoS protection
Behavior-based threat intel feed delivering malware IOCs with context
Curated phishing threat intelligence feed with predictive detection
Real-time threat intel platform with IP/domain reputation scoring and low false positives.
AI-powered URL classification & IP reputation feed/API for security vendors.
Real-time CVE exploitation tracker with active IP feeds and IoC visibility.
Automotive-focused threat intelligence service producing ISO/SAE 21434 compliant
IP reputation & threat intel API backed by honeypot sensors and community reports.
Plugin that feeds curated threat intel as firewall aliases into OPNsense
Threat intelligence platform providing global threat visibility and IoCs
OT/IoT threat intelligence feed for vulnerability and malware detection
API for monitoring ransomware sites to detect org compromises & extortion
CTI services combining human expertise and AI for threat analysis
Database for detecting VPNs, proxies, Tor exits, and anonymization services
Weekly threat intelligence briefings published by VerSprite
AI-driven threat intel feeds for automated blocking on 20+ firewall vendors
Managed CTI service monitoring dark web & open sources for emerging threats.
Mobile-focused threat intel covering apps, devices, URLs, APTs, and malware.
Free daily cyber threat briefings and CVE tracking, verified against NVD and CISA KEV.
A tiered cyber threat intelligence service providing detection rules from public repositories with varying levels of analysis, processing, and guidance for security teams.
Real-time C2 infrastructure detection and disruption threat intelligence feed
IP intelligence platform for proxy/VPN detection and geolocation
AI-powered DNS domain threat intelligence service for DDR 2.0 solutions.
Passive DNS intelligence platform for threat detection and investigation.
Vulnerability intel service tracking CVEs for your specific vendor/product stack.
Tailored cyber defence, adversary hunting, and proactive AiTM threat intelligence services
Commercial threat intel service for enrichment, attribution
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
Free threat intel feed blocking malicious IPs/domains via global sensors.
Free cyber threat intelligence feeds for proactive threat detection
Common questions security professionals ask when evaluating alternatives and competitors to ZeroFox Threat Intelligence Feeds.
The most popular alternatives to ZeroFox Threat Intelligence Feeds include Webz.io, Constella Threat Intelligence Data Signals API, CYBERA Signals, SecurityScorecard Intelligence Feeds, and SecurityZones SURBL BV. These Threat Intel Feeds tools offer similar capabilities and are frequently compared by security professionals evaluating their options.
There are 48 alternatives to ZeroFox Threat Intelligence Feeds listed on CybersecTools, all within the Threat Intel Feeds category. Each alternative is matched based on shared capabilities, tags, and NIST CSF coverage areas.
ZeroFox Threat Intelligence Feeds is a commercial Threat Intel Feeds tool. It requires a paid license or subscription. Both free and commercial alternatives are available for comparison.
ZeroFox Threat Intelligence Feeds is a Threat Intel Feeds tool within the broader Threat Intelligence category. It is used by security professionals for threat intel feeds capabilities and can be compared against 48 similar tools.