Posted inSecurity

Rapid7 wants to democratise threat intelligence with IntSights acquisition

IntSights monitors the deep and dark webs to identify threats specifically targeting an organisation’s digital footprint

Rapid7 wants to democratise threat intelligence with IntSights acquisition
Rapid7 wants to democratise threat intelligence with IntSights acquisition

American cybersecurity firm Rapid7 has acquired IntSights Cyber Intelligence in a deal worth USD335 million.

The Boston-based cybersecurity company said its acquisition of the threat intelligence startup – founded in Israel in 2015 by former Militray Intelligence Directorate officers – will enhance Rapid7’s extended detection and response (XDR) offering with alerts that ensure efficient security operations, earlier threat detection, and accelerated response times.

The IntSights cash and stock deal is the largest acquisition in Rapid7’s 22-year history, surpassing its April 2020 purchase of DivvyCloud.

IntSights provides clients with intelligence on external cyber threats by monitoring the dark web, among other measures. The firm takes complex external data, turns it into contextualised intelligence and provides automated steps to counter the threat. Its technology allows for scalable real-time threat intelligence that can be integrated with customers’ existing security programs, according to a statement announcing the deal.

“With digital transformation the attack surface has increased exponentially and customers are recognising that improved visibility to their internal risk profile is just one part of the security equation. With today’s threat landscape, it’s imperative for security teams to have early, contextualised threat detection across their internal and external environment,” said Rapid7 Chairman and CEO Corey Thomas.

“Yet most security teams are already under-resourced and overburdened, struggling to identify and address what needs immediate action.

“IntSights offers a leading, cloud-native, external threat intelligence and remediation solution that helps customers solve this emerging challenge. Sophisticated threat intelligence capabilities are typically only realistic for the most mature, well-resourced organisations. But IntSights is disrupting that and democratising threat intelligence so that every organisation can protect itself, regardless of size or capabilities.”

IntSights monitors the clear, deep, and dark webs to identify threats specifically targeting an organisation’s digital footprint, including things like data and credential leakage, malicious activity tied to their brand, and fraud. It also goes beyond monitoring and takes action by proactively remediating with automated takedowns of threats.

“Coupling IntSights’ tailored, external threat-intelligence capabilities with Rapid7’s community-infused threat intelligence and deep understanding of customer environments will enable customers with a unified view into threats, attack-surface monitoring, greater signal-to-noise ratio, relevant insights, and proactive threat mitigation,” Thomas added.

Guy Nizan, co-founder and CEO of IntSights, added: “We founded IntSights to make threat intelligence instantly accessible and actionable for organisations of any type or size. We are excited to join Rapid7 to continue this mission and to bring our threat intelligence capabilities to even more customers.”

This is Rapid7’s fourth acquisition since the start of 2020, coming less than three months after the company bought open-source technology Velociraptor to gain more expertise around endpoint monitoring, digital forensics, and incident response. In January 2021, it purchased early-stage Kubernetes security vendor Alcide for $50 million. In April 2020, it had bought DivvyCloud for $145 million to help customers protect cloud and container environments.