Cyber Threat Intelligence Answer Engine

ICRM Intelligence Collection Resource Management

Intelligence ManagementSimplified

AI-enabled intelligence management platform built on prioritised intelligence requirements. Automated collection, analysis, and dissemination — so you always have the answers that matter.

Breaking News — Latest Open Source Threat Intelligence

SANS Internet Storm Center 2026-09-11

ISC Stormcast For Friday, September 11th, 2026 https://isc.sans.edu/podcastdetail/10090, (Fri, Sep 11th)

Read original →

Cisco Talos Intelligence 2026-09-10

We've got one word for it, and it's usually the wrong one

Read original →

Microsoft Security Blog 2026-09-10

Protecting organizations from AI-assisted executive impersonation and invoice fraud

Read original →

Microsoft Security Blog 2026-09-10

Detect and disrupt AI-themed attacks with Microsoft Defender

Read original →

Malwarebytes Labs 2026-09-10

BlueMoon exploit kit turns Chrome and Windows flaws into attacks

Read original →

Graham Cluley 2026-09-10

‘Anne Hathaway’ admits leading $245 million crypto theft gang that spent a fortune on nightclubs, watches, and luxury c…

Read original →

SANS Internet Storm Center 2026-09-10

Redtail Payload Analysis [Guest Diary], (Wed, Sep 9th)

Read original →

Malwarebytes Labs 2026-09-10

Will AI kill us all within the next decade?

Read original →

NVD Recent CVEs 2026-09-10

NVD: 1866 New Vulnerabilities (150 critical, 825 high, 629 medium, 38 low) incl. CVE-2026-34265, CVE-2026-44758, CVE-20…

Read original →

Malwarebytes Labs 2026-09-10

Update Chrome now to protect against an actively exploited vulnerability

Read original →

Schneier on Security 2026-09-10

AIs Compress Exploit Timeline

Read original →

SANS Internet Storm Center 2026-09-10

ISC Stormcast For Thursday, September 10th, 2026 https://isc.sans.edu/podcastdetail/10088, (Thu, Sep 10th)

Read original →

Unit 42 2026-09-10

The Machine With Many Faces: Post-Exploitation Identity Misuse in SPIFFE/SPIRE

Read original →

Malwarebytes Labs 2026-09-10

Copyright scammers get Instagram accounts suspended and demand payment

Read original →

NVD Recent CVEs 2026-09-10

NVD: 1927 New Vulnerabilities (157 critical, 851 high, 650 medium, 40 low) incl. CVE-2026-34265, CVE-2026-44758, CVE-20…

Read original →

Headlines sourced from third parties. Click any item to read the original article on the publisher's site.

Conundrum intelligence dashboard AI-generated CTI report

Do you know your business's threats?

Conundrum helps you target the threats that impact your business

Do you know your threat landscape?

The landscape is constantly evolving and growing, and you cannot keep up

How do you prioritise?

Conundrum provides the Prioritised Intelligence Requirements for your business, and the answers

Right Answer. Right Person. Right Time.

Conundrum delivers answers about the threats that matter to your organisation. We provide a customisable intelligence collection solution tailored to your industry and priorities.

Off-network and privacy-preserving — you gain complete threat visibility while your sensitive systems remain untouched.

Request a Demo

75%

Time Saved

on threat intelligence gathering and analysis*

24/7

Automated Collection

from 50+ OSINT sources with zero manual effort*

90%

Cost Reduction

compared to traditional CTI platforms and services*

* Estimated results based on automated OSINT collection, AI-powered analysis, and elimination of manual threat intelligence workflows.

What you can do with Conundrum

A full intelligence cycle in one platform — from setting your requirements to getting finished intelligence into the hands of the people, and systems, that need it.

Direction

Set your intelligence requirements

Define what your team needs to know as Priority Intelligence Requirements, across organisation, sector and global tiers. Collection and reporting are scored against them — in your own wording.

Direction

Curate your collection

Choose the sources you trust, boost what matters with priority keywords, and filter out what doesn't. Tag as you go so nothing becomes unfindable later.

Collection

Collection that runs without you

Round-the-clock gathering across 50+ OSINT sources and six intelligence lanes. Sources that break are detected and disabled, and no single source is allowed to flood your feed.

Collection

Leak sites and watchlists

Track ransomware leak-site postings as they appear. Watch threat actors, malware, vendors or CVE IDs, and get alerted the moment they surface in new intelligence.

Analysis

Triage and investigate

Work your queue item by item or in bulk — investigate, escalate, bookmark, dismiss. Search everything your organisation holds and act on the results without leaving the page.

Analysis

Ask your intelligence questions

Chat with your own reports and feeds. Every answer cites the sources behind it, and when your intelligence can't answer the question, it says so rather than inventing one.

Analysis

See the shape of your landscape

Charts of the actors, malware and vulnerabilities actually showing up in your intelligence — with vulnerabilities prioritised by CISA SSVC, and threats mapped to MITRE ATT&CK®.

Analysis

Profile actors, map connections

Build and track threat actor profiles, cross-referenced against MITRE ATT&CK® and MISP Galaxy. Map the relationships between entities on a link-analysis canvas.

Production

Author your own intelligence

Write, publish and share original reports with full version history, analyst notes and locking. Record kill chains, build tabletop scenarios, and have AI structure external PDFs into your format.

Production

Aggregates that include you

Weekly, monthly, quarterly and annual summaries, generated automatically — each carrying a section built from your own team's activity, watchlist hits and published intelligence.

Dissemination

Reaches the right people

Daily and weekly digests, watchlist and escalation alerts, and dissemination groups that route finished intelligence to internal teams and external stakeholders — on each person's own terms.

Dissemination

And the right machines

Connect your own AI agents over MCP, or receive signed webhooks as events happen. Read-only, scoped to your tenant, and metered — your platform as a single source of truth.

How it's built

The questions a security reviewer asks before the features matter.

Tenant isolation

Schema-level separation between organisations. Every retrieval path re-checks visibility and clearance, so your intelligence stays yours.

Off-network operation

Operates independently of your systems. No network access into your infrastructure, and no agents to deploy on it.

Measured, not asserted

Entity extraction, requirement routing, retrieval, groundedness and answer quality are scored against golden datasets, with regression floors enforced on every change.

Anchored to public registries

Threat actors and malware are cross-referenced against MITRE ATT&CK® and MISP Galaxy, with the source of each verification recorded.

MITRE ATT&CK® is a registered trademark of The MITRE Corporation.

Pricing built for businesses of all sizes

From growing teams to large-scale enterprise deployments.

  • Automated Reports
  • 24/7 Email Support
  • PIR Customization
  • ICP Fine Tuning
  • Aggregate Reports
Pricing
contact sales
Contact Sales View team pricing

Frequently asked questions

Conundrum is primarily designed with mature enterprise organizations in mind. As an example, our platforms and solutions are mostly used by organizations with at least one or two cyber security analysts.

However, organizations of any size and at any security maturity level would benefit from our robust yet easy to access, manage, and use Threat Intelligence Solutions.

Get started with Conundrum today

Connecting with intelligence management experts has never been easier. Email or call for a free consultation or demo request today.