EASM
External attack surface management
Discover every exposed asset before attackers do — domains, IPs, cloud services, and shadow IT.
Loading
OSINTSense · Threat intelligence
OSINTSense is immunisense's threat-intelligence platform. It unifies external attack surface management, open-source intelligence, and cyber threat intelligence. Unified alerts, asset discovery, mimic takedowns, ransomware intel, file analysis, and visual SOC automation.
Unified engine
OSINTSense converges external attack surface management, open-source intelligence, and cyber threat intelligence into a single engine, so the SOC stops context-switching and starts acting.
External attack surface management
Discover every exposed asset before attackers do — domains, IPs, cloud services, and shadow IT.
Open-source intelligence
Aggregate signals from 50+ public sources and 1,000+ dark web channels into actionable intelligence.
Cyber threat intelligence
Track ransomware groups, leaked credentials, IOCs, and TTPs with real-time threat actor profiling.
Live engine
Modules
Mapped from the current OSINTSense application — not a roadmap slide.
Automation
A drag-and-drop canvas for building SOC automation rules. Connect 55 typed nodes into directed graphs, simulate with dry-run, and activate with governed approval workflows.
Use cases
Real incidents OSINTSense has detected and helped clients neutralize - not hypotheticals.
Not sure which use case fits your needs?
Talk to an expertQuestions
OSINTSense is immunisense's threat-intelligence platform. It unifies external attack surface management, open-source intelligence, and cyber threat intelligence in one cloud workspace, with no agents to install.
OSINTSense is immunisense's threat-intelligence platform. It unifies external attack surface management, open-source intelligence, and cyber threat intelligence: unified alerts, asset discovery, mimic takedowns, ransomware intel, file analysis, and visual SOC automation.
No. OSINTSense is a cloud platform with no agents to install. Analysts work in the workspace; there is nothing to deploy on endpoints.
OSINTSense aggregates signals from 50+ public sources and 1,000+ dark web channels, including social media, paste sites, public records, GitHub, and Telegram, to surface credential leaks, brand abuse, attack-surface drift, and other threats.
OSINTSense is built for security operations teams and MSSPs. Multi-tenant SOC views let operators run many estates from one pane, with role approvals and SOC-client separation.