Monday, September 7, 2026

Torq and Criminal IP Partner to Deliver Decision-Ready Threat Intelligence for Autonomous SOC Operations

Torrance, California, USA, July 13th, 2026, CyberNewswire

Criminal IP, the cyber threat intelligence search engine and attack surface management platform, today announced a new partnership and integration with Torq, the established agentic security operations leader.

The partnership integrates Criminal IP’s decision-ready threat intelligence with the Torq AI SOC Platform that helps security teams triage, investigate, and respond to threats faster.

Modern SOCs face an overwhelming volume of alerts, often requiring analysts to manually pivot across multiple threat intelligence platforms to determine whether an IP address, domain, or internet-facing asset poses a genuine risk.

By integrating Criminal IP with the Torq AI SOC Platform, organizations can automatically enrich indicators with comprehensive threat intelligence and accelerate security operations without leaving their existing workflows.

“Our platform was built to make internet-scale threat intelligence searchable and actionable in real time,” said Byungtak Kang, CEO at Criminal IP.

“Partnering with Torq means that intelligence doesn’t just inform a decision, but it executes one. Every IP, domain, and exposed asset Criminal IP analyzes can now drive automated responses the moment it’s identified.”

“Torq partners include some of the most prestigious cybersecurity companies in the world and we are excited to welcome Criminal IP to the fold,” said Eldad Livni, CINO and Co-Founder, Torq.

“Criminal IP is an example of an innovative vendor that delivers solutions with maximum impact as we realize the potential of the AI SOC, together.

And that means joint offerings that combine cutting edge threat intelligence drawing from the deepest data pools with blazing fast AI-driven response, remediation, and mitigation. Together, Torq and Criminal IP will protect organizations from the ever-expanding spectrum of threats they’re confronted with every second of every day.”

How It Works

When an indicator is delivered, the Torq AI SOC Platform automatically routes the indicator to the appropriate Criminal IP intelligence service and receives a decision-ready verdict and supporting context in real time, whether an IP is malicious, suspicious, or anonymized; whether a domain resolves to a malicious or phishing site; what’s exposed on a scanned asset; and any associated exploits.

The Torq AI SOC Platform reasons over that enriched intelligence to determine severity and the appropriate response path.

Key Capabilities

The integration gives the Torq AI SOC Platform direct access to Criminal IP’s full intelligence surface, including:

  • IP reputation, malicious activity, and suspicious activity lookups
  • VPN, hosting, and privacy threat detection for any IP address
  • DNS server safety assessments
  • Domain scanning, scan status checks, and full domain intelligence reports
  • Asset search across internet-exposed infrastructure
  • Service banner search across internet-facing assets
  • Exploit search tied to exposed services and known vulnerabilities
  • Full and summarized IP and domain reports for deep investigation

Use Cases

  • Automated indicator enrichment: Every incoming IP, domain, or asset is scored and contextualized with Criminal IP intelligence before it ever reaches an analyst.
  • Threat-informed response: Confirmed-malicious indicators trigger automated blocking and containment across the security stack.
  • Attack surface investigation: Analysts open cases pre-populated with exposure, banner, and exploit context for every asset in scope.

Availability

The Criminal IP and Torq integration is available for the Torq AI SOC Platform.

About Criminal IP

Criminal IP is a cyber threat intelligence solution operated by AI SPERA that provides decision-ready threat intelligence, and attack surface management solutions to security teams worldwide.

By continuously scanning the global internet, Criminal IP aggregates and contextualizes threat signals across IPs, domains, URLs, and attack infrastructure, covering malicious indicators, known vulnerabilities, exposed assets, and attacker behavior.

Criminal IP’s mission is to give organizations real visibility into their cyber landscape and accelerate threat detection and response by delivering the intelligence needed to outsmart attackers. For more information, users can visit www.criminalip.io.

About Torq

Torq is transforming cybersecurity with the Torq AI SOC Platform. Torq empowers enterprises to instantly and precisely triage, investigate, and respond to security events at scale.

Torq’s customer base includes major multinational enterprise customers, including Check Point Security, Chipotle Mexican Grill, Inditex (Zara, Bershka, and Pull & Bear), Informatica, Kyocera, Procter & Gamble, Prudential, Siemens, Telefónica, Valvoline, Virgin Atlantic, and Wiz.

Contact

Michael Sena

AI SPERA

[email protected]

CyberNewswire
CyberNewswire
A PR Newswire Syndication Platform for Cybersecurity Companies

Hot this week

How To Access Dark Web Anonymously and know its Secretive and Mysterious Activities

What is Deep Web The deep web, invisible web, or...

How to Build and Run a Security Operations Center (SOC Guide) – 2023

Today’s Cyber security operations center (CSOC) should have everything...

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer's popularity and remote access capabilities make it an...

Web Server Penetration Testing Checklist – 2026

Web server pentesting is performed under three significant categories: identity,...

ATM Penetration Testing – Advanced Testing Methods to Find The Vulnerabilities

ATM Penetration testing, Hackers have found different approaches to...

CrowdStrike Launches SafeMind Agentic AI Cybersecurity System Built With NVIDIA Nemotron

CrowdStrike has launched SafeMind, an AI-driven cybersecurity system developed...

Chainguard Hits 1 Billion Build Manifests With AI-Powered Software Supply Chain Security

Chainguard has surpassed 1 billion container build manifests, doubling...

Russian Hackers Deploy New HOOKEDGE Backdoor in Espionage Attacks Across Europe

Russian state-sponsored threat actor BlueDelta, also tracked as APT28,...

New Panzer Ransomware Hits 16 Victims Across 11 Countries With Data Theft and Encryption

Panzer ransomware has emerged as a new Ransomware-as-a-Service (RaaS)...

12-Year-Old PostgreSQL Flaw Lets Attackers Execute Code and Take Over Database Servers

A critical PostgreSQL vulnerability dubbed PostGREShell could allow low-privileged...

Hackers Use Frontier AI Agents to Breach Enterprise Network in Under 10 Hours

A threat actor used frontier artificial-intelligence models and attack-specific...

CARS24 Data Breach Exposes 3,100 Customer Records, Leads Allegedly Sold for ₹1,000 Each

Used-car platform CARS24 has alleged that confidential information belonging...

Related Articles

Recent News