Configuring JagAI Threat Intelligence Feeds

4,970 views Updated Jun 4, 2026 88% found this helpful

Configuring JagAI Threat Intelligence Feeds

True Protection by Jag can subscribe to additional threat intelligence feeds through the JagAI cloud platform. These feeds provide enhanced detection capabilities for specific threat categories and industries.

Available Threat Feeds

  • Core Feed (included): Standard threat definitions covering all major malware families, updated multiple times daily.
  • Advanced Persistent Threat (APT) Feed: Intelligence on nation-state and advanced threat actor groups targeting enterprise environments.
  • Financial Threat Feed: Focused on banking trojans, cryptocurrency miners, and financial fraud malware.
  • Ransomware Intelligence Feed: Early indicators and behavioral signatures for emerging ransomware campaigns.
  • IoT Threat Feed: Covers threats targeting smart home devices, routers, and network-connected appliances.

Enabling Additional Feeds

  • Step 1: Navigate to Settings > JagAI Cloud > Threat Feeds.
  • Step 2: Browse available feeds and read their descriptions.
  • Step 3: Toggle on the feeds relevant to your environment.
  • Step 4: Configure the update frequency (default is every 4 hours).

Custom Indicator Import

For enterprise users, True Protection supports importing custom Indicators of Compromise (IoCs) in STIX/TAXII format:

  • Navigate to Settings > JagAI Cloud > Custom Indicators.
  • Click Import IoCs and select your STIX file.
  • The imported indicators are merged with the JagAI detection engine and applied to real-time scanning immediately.

Custom indicators are stored locally on your device and are never shared with the JagAI cloud unless you explicitly opt in.

Was this article helpful?