Silent Push 6.1: Built to Get There First

industry, platform

Latest enhancements include a next-gen Brand and Infrastructure Impersonation engine, an updated platform that speeds investigations, and intelligence that meets defenders where they already work.

Version 6.1 of the Silent Push platform focuses on protecting what matters most to organizations and accelerating what analysts do next. Leading the enhancements is a next-generation Brand and Infrastructure Impersonation engine, rebuilt to start protection during the preparation phase, before attacks can be weaponized. 

Additional capabilities extend the platform with faster pivoting, more search features, controlled intelligence delivery, and a fully localized interface. Key integrations stretch our preemptive cyber defense technology into the areas analysts already work: SOAR platforms, browsers, AI agents, and threat-intel feeds, further shortening the distance between finding threats and acting on them. 

“Our next-gen brand and infrastructure impersonation engine makes the case for protection: attack infrastructure is created before campaigns launch, and customers using our engine can monitor their infrastructure and any associated threat actors we identify in time to act.”

Ken Bagnall, CEO and Co-Founder, Silent Push


Brand and Infrastructure Impersonation Detection

Brand and infrastructure impersonation is one of the most direct threats organizations face, and 6.1 rebuilds how Silent Push detects it. Point the new detection engine at the infrastructure you own, and it surfaces any look-alike domains impersonating your organization. Each one identified is scored by risk, enriched with registrar, hosting, and page-title context, and clustered by the threat actor behind them. 

The next-gen engine runs on a schedule and notifies your team as new candidates appear. Manual sweeps that once required coordination now run automatically, providing continuous reporting. You can export domains that matter as evidence for you or a takedown partner to act on.


Shortening the Distance Between Finding and Acting

Ecosystem reach is more effective when a platform doesn’t slow you down once you’re in it. With the release of 6.1, the path from spotting something to taking action is shortened. The new My Assets feature lets you build a reusable list of the infrastructure you own (domains, IP ranges, ASNs, and TLDs), tag it, and reuse it as a one-click input everywhere else in the platform instead of re-entering the data every time.

Advanced Pivot Control opens a panel on whatever you click, showing what intelligence we already have and letting you move into WHOIS or open-directory lookups without losing your place in an investigation. Insight Search now understands domains, IPs, ASNs, subnets, and HTML titles in a single query. Total View adds a PADNS timeline, IP certificates, one-click PDF export, and date filtering for screenshots.

The Silent Push Platform 6.1 launch includes a powerful next-gen brand and infrastructure impersonation engine with a new My Assets feature.
The Silent Push Platform 6.1 launch includes a powerful next-gen brand and infrastructure impersonation engine with a new My Assets feature

The Platform Extends Into Where You’re Already Working

Point Silent Push at Palo Alto Cortex XSOAR, and its intelligence becomes part of your automated playbooks and response workflows with no manual lookups required. The new Chrome Extension does the same at the browser level, enabling analysts to investigate domains or indicators without leaving the page they’re already on.

Defenders can further extend their reach by exposing Silent Push data to AI assistants and agentic workflows over the Model Context Protocol (MCP) server. As more routine SOC triage shifts to agents, this will matter even more. Since an agent is only as good as the intelligence behind it, this is where our Indicators of Future Attack® (IOFA) driven signaling becomes something an agent can act on directly, not just data it retrieves after the fact.

The updated TAXII Server rounds this out with bidirectional support, so threat-intelligence exchange over STIX/TAXII now flows both ways instead of just one.

Additional Highlights

Custom analyst reports now support TLP: AMBER+STRICT, so purchased intelligence reaches only the organizations and individuals it’s meant for. The interface is now available in Korean and Spanish alongside English, with Japanese coming soon. Navigation and guidance are fully localized per user, while the underlying data stays the same.

Screenshot of the Silent Push 6.1 Platform in the new Korean language interface.
Screenshot of the Silent Push 6.1 Platform in the Korean language interface

The 6.1 Throughline

Every component of 6.1 traces back to the idea that threats are created long before they’re used, and the earlier that infrastructure can be identified, the earlier it can be neutralized. Meeting analysts inside the tools they already use collapses the distance between finding a threat and acting on it, and increasing platform speed does the same. 


See Silent Push 6.1 in Action 

Start a conversation with one of our platform experts to walk through the new 6.1 platform and experience how preemptive cyber defense can give your team weeks, or longer, of lead time on adversary infrastructure before an attack is ever launched.

We also offer a free Community Edition so defenders can see how our platform integrates with their existing security stack.


FAQs

What does the MCP Server integration actually let me do?

  • It exposes Silent Push data to AI assistants and agentic workflows over the Model Context Protocol (MCP), an open standard. That means any MCP-compatible AI assistant your team runs can query Silent Push intelligence directly, rather than being limited to tools built specifically for Silent Push.

What does “bidirectional” mean for the updated TAXII Server?

  • Previous versions of the TAXII Server let you pull Silent Push intelligence into your own feeds. The Platform 6.1 update adds the reverse: you can now push your own STIX/TAXII intelligence into Silent Push, so threat-intelligence exchange works both ways. 

Can we request languages beyond Korean and Spanish?

  • Yes. Platform 6.1 ships with English, Korean, and Spanish, with Japanese coming soon. We can add additional languages upon request.