← Back to connectors

AlienVault OTX connector for Okou

Connect LevelBlue Labs Open Threat Exchange (AlienVault OTX) to investigate indicators, synchronize pulses, and manage community threat intelligence.

Data & infrastructure · OTX API Key

Use AlienVault OTX in Okou

LevelBlue Labs Open Threat Exchange (OTX), also known as AlienVault OTX, for indicator research, pulse synchronization and search, malware or URL analysis status, and explicitly approved threat-intelligence management.

Once connected, supported AlienVault OTX actions can become steps in a reusable workflow alongside the other services your team uses. Run the workflow once, on a schedule, or when an event starts it.

What you can do with AlienVault OTX

  • Read OTX intelligence for documented IP, domain, hostname, file, URL, CVE, NIDS, and correlation-rule indicators, plus indicator type metadata.
  • Read the status and history of files and URLs previously submitted by the authenticated account.
  • Read pulse details, indicators, related pulses, private subscription feeds, activity, events, and authenticated or public contributor feeds.
  • Follow, unfollow, subscribe to, or unsubscribe from an OTX contributor, changing activity or synchronized pulse feeds.
  • Read the basic OTX account identity associated with the configured API key.
  • Validate an indicator and type pair without creating or changing OTX state.
  • Submit files or URLs for OTX analysis. A request can trigger sandbox processing or an external URL visit, and submissions default to provider-visible TLP WHITE unless changed.
  • Create pulses or edit pulse metadata and indicators owned by the authenticated account.

How the AlienVault OTX connector works

A connected service becomes one permissioned step in the work you hand off.

  1. 1

    Connect AlienVault OTX

    Choose OTX API Key.

  2. 2

    Choose the work

    Use only the supported actions your workflow needs.

  3. 3

    Run it your way

    Start it once, schedule it, or attach an event trigger.

Connect AlienVault OTX securely

Use the connection method that fits your account and grant only the access the workflow needs.

  • OTX API Key

Connector access is controlled per service and per action, so a workflow does not need broader access than the work you ask it to do.

AlienVault OTX connector questions

What can Okou do with AlienVault OTX?
Connect LevelBlue Labs Open Threat Exchange (AlienVault OTX) to investigate indicators, synchronize pulses, and manage community threat intelligence. Documented actions include: Read OTX intelligence for documented IP, domain, hostname, file, URL, CVE, NIDS, and correlation-rule indicators, plus indicator type metadata. Read the status and history of files and URLs previously submitted by the authenticated account.
How do I connect AlienVault OTX to Okou?
Connect AlienVault OTX using OTX API Key. The connection controls which supported actions a workflow can use.
Can AlienVault OTX run in an automated workflow?
Yes. After it is connected, supported AlienVault OTX actions can run in reusable Okou workflows on demand, on a schedule, or from an event trigger.

More data & infrastructure connectors

Explore other connectors in the same product category.