Get Instant Context on Any Domain or IP With D3 Integration

As leaders in preemptive cyber defense, our mission is to provide security teams with the data and insights needed to map malicious infrastructure and stay ahead of adversaries. We’re excited to announce our integration with D3, a leading AI-powered Security Operations Center (SOC) product.
The connection between our proactive analysis of malicious infrastructure and the automation capabilities of the D3 platform helps security teams enrich incident data and streamline response workflows.
Automated Enrichment for Incident Response
By using the Silent Push integration for D3 (version 17.4+), security teams can automate the process of enriching observables like domains and IP addresses. When an alert is received, a D3 playbook can query the Silent Push API to gather additional context, reducing the need for manual investigation.
This integration allows a Security Operations Center (SOC) to:
- Assess Risk: Retrieve Silent Push risk scores for domains and IP addresses to help prioritize alerts.
- Enrich Alerts with Context: Fetch detailed domain and IP information, including WHOIS data and reputation history.
- Support Proactive Defense: Use Silent Push data within D3 playbooks to investigate related infrastructure.
Available Commands
The integration makes the following Silent Push API commands available for use within D3 playbooks:
- Domain Data Commands:
- Get Domain Enrichment
- Get Domain Info
- Get Domain Risk Score
- Get Domain Whois Live Info
- IP Address Data Commands:
- Get IP Enrichment
- Get IP Info
- Get IP Risk Score
- Get IPv4 Reputation & Get IPv4 Reputation History
For example, when an alert for a phishing attempt is processed, a D3 playbook can use these commands to extract the domain, retrieve its risk score from Silent Push, and initiate a blocking action if the domain is identified as malicious.
Configuration
To set up the integration, log into the Silent Push portal and generate a new API key from your organization’s settings. In the D3 platform, add the Silent Push integration and create a new connection using your API key and the Silent Push API URL. (https://api.silentpush.com).
See D3’s documentation here for additional installation instructions.
Book a demo
Our product experts are available to walk you through how D3 can be integrated with the Silent Push API, allowing your team to develop more efficient, automated security workflows and gain stronger visibility into emerging threat infrastructure. Contact us today for a platform demonstration.