Logsign Unified SecOps Platform rapidly investigates hidden threats, IoCs and suspicious attack vectors combining global threat intelligence data, it also uses internal threat source feeds to risk prioritization. Over 45 Threat Intelligence Feed Lists support Logsign Unified SecOps Platform Threat Intelligence Services.
When Logsign detects a traffic to/from TI Feed IPs, it creates an Intelligence column in that particular log.
You can reach the details of Threat Intelligence Service under List -> Name section.
Click Settings -> Enrichment -> Logsign TI tab to Enable Threat Intelligence Service.