Configuring JagAI Threat Intelligence Feeds
4,970 views
Updated Jun 4, 2026
88% found this helpful
Configuring JagAI Threat Intelligence Feeds
True Protection by Jag can subscribe to additional threat intelligence feeds through the JagAI cloud platform. These feeds provide enhanced detection capabilities for specific threat categories and industries.
Available Threat Feeds
- Core Feed (included): Standard threat definitions covering all major malware families, updated multiple times daily.
- Advanced Persistent Threat (APT) Feed: Intelligence on nation-state and advanced threat actor groups targeting enterprise environments.
- Financial Threat Feed: Focused on banking trojans, cryptocurrency miners, and financial fraud malware.
- Ransomware Intelligence Feed: Early indicators and behavioral signatures for emerging ransomware campaigns.
- IoT Threat Feed: Covers threats targeting smart home devices, routers, and network-connected appliances.
Enabling Additional Feeds
- Step 1: Navigate to Settings > JagAI Cloud > Threat Feeds.
- Step 2: Browse available feeds and read their descriptions.
- Step 3: Toggle on the feeds relevant to your environment.
- Step 4: Configure the update frequency (default is every 4 hours).
Custom Indicator Import
For enterprise users, True Protection supports importing custom Indicators of Compromise (IoCs) in STIX/TAXII format:
- Navigate to Settings > JagAI Cloud > Custom Indicators.
- Click Import IoCs and select your STIX file.
- The imported indicators are merged with the JagAI detection engine and applied to real-time scanning immediately.
Custom indicators are stored locally on your device and are never shared with the JagAI cloud unless you explicitly opt in.
Was this article helpful?
Thank you for your feedback!