IntSights
IntSights was an Israeli external threat intelligence company that developed an automated threat intelligence and digital risk protection platform, enabling security teams to monitor, investigate, and remediate threats originating from the open, deep, and dark web.
Visit WebsiteCompany Overview
IntSights developed an External Threat Protection Suite that combined automated threat intelligence collection, dark web monitoring, brand protection, and threat remediation into an integrated platform. The system continuously monitored open, deep, and dark web sources for indicators of compromise, data leaks, credential theft, phishing campaigns, and brand impersonation targeting customers, and automated the remediation of identified threats through takedowns and blocking.
Commercially, IntSights competed in the threat intelligence and digital risk protection market alongside Recorded Future, Mandiant Threat Intelligence, Flashpoint, and Digital Shadows (ReliaQuest). Founded in 2015 in Tel Aviv by Guy Nizan (CEO), Gal Ben David, and Alon Arvatz—all former IDF intelligence Unit 8200 veterans—the company raised $76.5M from investors including Glilot Capital Partners, Blumberg Capital, ClearSky Security, and Blackstone. In July 2021, Rapid7 acquired IntSights for approximately $335M, integrating its external threat intelligence into the Rapid7 Insight platform.
From a defense and national security perspective, external threat intelligence and dark web monitoring are directly relevant to military intelligence operations, counter-intelligence, and force protection. The ability to automatically detect adversary planning, credential theft targeting military personnel, and infrastructure reconnaissance on dark web forums supports early warning and threat anticipation. The founders' IDF Unit 8200 background and the platform's intelligence-grade collection capabilities underscore strong dual-use potential.
Dual-Use Assessment
External threat intelligence and dark web monitoring directly apply to military intelligence, counter-intelligence, and force protection operations. Automated detection of adversary planning and credential theft targeting military personnel enables early warning and threat anticipation.
Key Technologies
- Automated open/deep/dark web threat intelligence collection
- Dark web monitoring and adversary forum surveillance
- Brand impersonation and phishing campaign detection
- Credential leak detection and compromised data identification
- Automated threat remediation (takedowns, blocking, alerting)
- Threat intelligence API and SIEM/SOAR integration
Use Cases & Applications
- Enterprise external threat monitoring and digital risk protection
- Dark web credential leak detection and compromised account identification
- Brand protection: phishing site and impersonation takedowns
- Threat intelligence enrichment for SOC operations
- Military/intelligence dark web adversary monitoring and early warning (dual-use)
- Defense force protection through external threat detection and credential monitoring (dual-use)
Strategic Value to U.S.-Israel Alliance
External threat intelligence is foundational for military intelligence operations and force protection. Dark web monitoring enables early detection of adversary planning, targeting, and capability development.
Interested in this startup?
Learn more about our investment approach or get in touch to discuss opportunities in dual-use technology.