Recorded Future Intelligence Platform
Recorded FutureExternal reviews
215 reviews
from
and
External reviews are not included in the AWS star rating for the product.
The best offer and combination of research capabilities and out of box options.
What do you like best about the product?
The advances research capabilities with the corellations.
What do you dislike about the product?
The new program of CSM. It making me more difficult to get help from my consultant.
What problems is the product solving and how is that benefiting you?
it deliver alarts to the SOC while help me track APT's and investigate threats.
Time to supercharge the Threat Intel Program!
What do you like best about the product?
Recorded Future provides us with near real-time visibility into emerging threats and It allows us to continuously monitor our digital landscape to identify potential risks. The quality of the intelligence being generated is excellent and timely compared to all other providers we've tested.
What do you dislike about the product?
The UI can feel a little dated and navigating it can be confusing. The Advanced Query Builder is incredibly powerful but requires you to have prior knowledge of the various filters to make the best use of it. It's also expensive but as usual, you get what you pay for.
What problems is the product solving and how is that benefiting you?
Recorded Future's various modules address several of our critical security challenges:
The brand module monitors online conversations and identifies potential brand risks, such as reputation damage or phishing attacks.
The threat module detects emerging threats and provides insights into attack vectors and tactics specific to our industry and organization.
The attack surface module maps our complex organization's digital footprint to identify vulnerabilities and potential entry points for attackers.
The identity module protects sensitive data by monitoring for identity theft and unauthorized access attempts.
Finally, the secops module integrates with existing security tools to streamline incident response and improve overall security operations.
The brand module monitors online conversations and identifies potential brand risks, such as reputation damage or phishing attacks.
The threat module detects emerging threats and provides insights into attack vectors and tactics specific to our industry and organization.
The attack surface module maps our complex organization's digital footprint to identify vulnerabilities and potential entry points for attackers.
The identity module protects sensitive data by monitoring for identity theft and unauthorized access attempts.
Finally, the secops module integrates with existing security tools to streamline incident response and improve overall security operations.
Best in Class Threat Intelligence
What do you like best about the product?
Recorded Future platform is best in terms of gathering threat intel data related to various threat actors & malware. Intel data is almost updated & recorded future platform provides a detailed list of IOC's, mentions over the internet about that threat actor, Vulnerabilities it can exploit. This helps my security team to build monthly data for all threat actors & malware trying to target my company & its all based on watch lists which a user can create.
What do you dislike about the product?
Nothing much as of now. Only thing which can be improved is file sandbox details, It good as of today but I think more detailed explaining & results should be displayed, Otherwise I think its best in Industry
What problems is the product solving and how is that benefiting you?
It helps to prioritize the detections we need for our environment. Provides detailed analysis any Malware & threat actor which helps in creating threat actor profile. Provides quality threat intelligence which is better than OSINT platforms, provides vulnerability intelligence, which helps us to prioritize the vulnerability patching . Helps us to detect Typosquatting
Recorded Future customer review 2025
What do you like best about the product?
The pre configured alerting rules that are very often effective, as well as the support provided by the Recorded Future engeneering team which is always very helpfull, make RF one of the best platforms on the marked. The implementation process and initial configuration is smooth and guided by RF customer support team, as well as the integration with other platforms like Splunk. I use it daily and it has proven to be very helpfull for our team.
What do you dislike about the product?
Sometimes it is not eazy to quickly adjust rule configuration without extended hands on knowledge of the platform usage/configuration.
What problems is the product solving and how is that benefiting you?
Allows our team to get effective allerting with concise and valueble data without the hassle constantly mantaining and configurating large ammounts of use case attack scenarios.
Recorded Future Hits All Our Requirements
What do you like best about the product?
It gives me complete control. I have the ability to squeeze exactly what I'm looking for out of the platform, tightening or loosening my queries to make sure I can answer my hypothesis as accurately as possible. I also enjoy trying to think of new use cases. The platform's data set is so rich, it is a veritable sandbox of threat intelligence that has the potential to meet so many new and innovative use cases for my team. Thinking of new ways to slice that data is lots of fun, not to mention useful once you find that sweet use case you may not have even realised you had a need for.
What do you dislike about the product?
Sometimes I find the data categories a bit confusing. It would be good to see a slice of the data that sits within those categories before using them in a query. For an example, "Public Messaging" is not particularly self-explanatory. Is Twitter included in there or in "Social Media"? That's a simple example, but it would be good to have examples of the sorts of data in those categories at my fingertips while I'm building queries. The same goes for some of the specific sources. I know the Credential Leaks category contains a number of sources, such as the monthly combo lists. It would be good to see what sources are included while building a query.
What problems is the product solving and how is that benefiting you?
RF keeps us up to date on new credential leaks, phishing kits, threat actor activity, brand mentions in data leaks (including ransomware data leaks), and we use it daily to research specific items such as domains, IPs etc. I have a few custom alerts setup, such as notifications on any new Sigma rules which I use to form new threat hunts and custom detections. This is all keeping us "left of boom", shifting our defences away from reactive and into the proactive space.
Recorded Future review experience
What do you like best about the product?
I think, I prefere the Idenity module from the Recorded Future services.
What do you dislike about the product?
Maybe, sometimes there is to much duplicate alert from playbook alert.
What problems is the product solving and how is that benefiting you?
All the features are intuitive. They can be used to send us vulnerabilities or any type of alert with the information we need to carry out our analyses.
Invaluable tool for threat intelligence providing insights to efficiently mitigate emerging threats
What do you like best about the product?
One of the best aspects of Recorded Future is its comprehensive coverage of threat intelligence, which integrates well with existing security frameworks. The platform delivers real-time threat data, allowing for proactive detection of vulnerabilities and quick responses to incidents. It offers a wide array of intelligence types, from vulnerability to geopolitical intelligence, making it highly versatile across different use cases. Additionally, the dashboard is user-friendly, customizable, and regularly updated, making it easy to navigate for both analysts and administrators. The customer support is also excellent, offering quick and effective assistance whenever needed. Our company utilizes Recorded Future daily for threat enrichment and comprehensive analysis of alerts as part of our Managed Security Service Provider (MSSP) operations. It plays a crucial role in ensuring timely and accurate threat assessments for our customers.
What do you dislike about the product?
While the platform is powerful, it can be challenging for new users to fully utilize without extensive training. The learning curve is steep, particularly for advanced features like the query builder and integrations. Another downside is that Recorded Future can be costly, especially for smaller organizations, and the volume of email alerts can be overwhelming without proper configuration. The implementation process, while generally smooth, requires attention to detail, particularly for integrations with other cybersecurity tools
What problems is the product solving and how is that benefiting you?
Recorded Future helps address several key business problems for our organization, particularly as an MSSP. It enhances our ability to quickly assess and respond to threats by enriching raw data and contextualizing alerts, which is critical for proactive incident management. Additionally, the platform allows us to prioritize vulnerabilities and threats based on real-time intelligence, reducing false positives and enabling more effective resource allocation. This results in better threat visibility and improved overall security posture for our customers
By integrating it with other security tools, Recorded Future streamlines our workflows and accelerates decision-making processes, ultimately helping us deliver more efficient and accurate services to our clients.
By integrating it with other security tools, Recorded Future streamlines our workflows and accelerates decision-making processes, ultimately helping us deliver more efficient and accurate services to our clients.
Find the threat intelligence you need on demand
What do you like best about the product?
Allows you to search the web and dark web for the information you need that you've missed if only searching with default search engines or mainstream media. Indicators also help link pieces of information together so you get a more complete view of the situation.
What do you dislike about the product?
Some fine-tuning of queries is needed as they would pull information from everywhere, therefore you need to filter out certain sources to reduce noise.
What problems is the product solving and how is that benefiting you?
Mainstream media don't have full coverage of actions performed by threat actors like their announcement of attack targets, Recorded Future allows me to view these information so I can make informed decisions.
Deep Diving Fast
What do you like best about the product?
Recorded Future sits on a fast swath of data that is normally decenteralized and desprate. The structure and centeralized format of the tool provides a quick value.
What do you dislike about the product?
The query language and user experience is still early 2000s and could be improved. Back end json is complicated and messy.
What problems is the product solving and how is that benefiting you?
Recorded Future is bringing valuable context and timely decision support for my operation teams.
Recorded Future is good stuff
What do you like best about the product?
Sandbox enviornment and API keys make the platform great for quick lookups as well as deep dives into question cases.
What do you dislike about the product?
No major complaints abou the software for the time being.
What problems is the product solving and how is that benefiting you?
Threat intel
showing 71 - 80