Sharing Threat Intelligence Using MISP
New video!
Hello there 👋
A new video just dropped 🎁
Be the first to explore it and make the most of the unique insights!
🚨 New video!
Most people use MISP like a personal threat intel notebook.
It was built to be a community.
If you’ve never configured sync between two MISP instances, you’re using only 10% of what’s in front of you, and if you’re part of an ISAC, that gap matters!
In part 3 of our MISP from scratch series, we close that gap by focusing on:
🔵 Distribution levels as concentric circles — five of them, from “your org only” all the way to “all communities.”
⬆️⬇️ Push vs Pull — Pull brings events in, Push sends them out. These are your go-to tools for sharing threat data.
🎛️ Filters that give you precision — use JSON to get granular on what is shared.
🔗 Sharing groups to expand your reach — this is how ISACs run paid tiers, IR working groups, and bilateral trust circles.
Learn how to start sharing threat data with MISP in this full walkthrough!
Want to elevate your CTI skills?
Try our tailored one-to-one sessions. These will empower you to develop in-demand skills, achieve your goals, and advance your career!




