SecurityBrief US - Technology news for CISOs & cybersecurity decision-makers
United States
Intel 471 launches AI tools for Verity471 platform

Intel 471 launches AI tools for Verity471 platform

Wed, 29th Jul 2026 (Today)
Sean Mitchell
SEAN MITCHELL Publisher

Intel 471 has launched two artificial intelligence tools for its Verity471 cyber threat intelligence platform: MCP471 and Agent471.

The products are aimed at security analysts who need to combine external threat intelligence with internal security data when assessing risks and investigating incidents.

MCP471 is a connector built on the Model Context Protocol, a standard intended to let AI systems draw on outside data sources. Intel 471 said it brings Verity471 intelligence into AI applications and automated workflows organisations already use, including Claude, ChatGPT and custom-built systems.

The aim is to make threat intelligence available within existing defensive processes, rather than forcing analysts to work across separate tools. Teams can also combine Verity471 data with their own internal telemetry as part of automated workflows.

Agent471, by contrast, sits inside the Verity471 platform. Intel 471 said it can work across an organisation's subscribed intelligence, resolve aliases used by threat actors and connect material held across separate reports.

Agent471 is designed to help analysts find relevant intelligence more quickly, particularly when information is fragmented across sources or indexed under different actor names. Responses produced by the tool also include citations.

Analyst workflows

The launch reflects a broader shift in cybersecurity as vendors use generative AI and agent-based systems to reduce manual work for security teams. A central challenge for analysts is not only collecting threat information, but making it usable in day-to-day investigations and risk decisions.

Intel 471 positions Verity471 as a platform focused on what it calls pre-attack intelligence and threat hunting. In practice, that means gathering information on adversary behaviour before attacks are carried out and helping customers search for signs of related activity in their own environments.

Intel 471 argued that attackers are also using AI to increase the scale and speed of their operations, putting more pressure on defenders to adopt similar tools. That has pushed cybersecurity providers to embed AI in products that can filter, correlate and present intelligence in a form security teams can act on more quickly.

A Gartner view cited by Intel 471 points in the same direction. "Preemptive cybersecurity will soon be the new gold standard for every entity operating on, in, or through the various interconnected layers of the global attack surface grid (GASG)," said Carl Manion, Managing Vice President at Gartner. "Detection and response-based cybersecurity will no longer be enough to keep assets safe from AI-enabled attackers. Organisations will need to deploy additional countermeasures that act preemptively and independently of humans to neutralize potential attackers before they strike."

Competitive pressure

The comments underline how the market is moving beyond detection and response as the sole focus of cyber defence. Security teams still need to respond to incidents, but vendors increasingly argue that organisations also need tools that can identify exposure earlier and connect disparate signals before an attack unfolds.

For companies selling threat intelligence, the issue is not simply the quality of the data they collect. They also need to show that analysts can access and use that intelligence inside existing workflows, whether through assistants inside a platform or connectors into other AI systems.

Intel 471's latest launch addresses both routes. One tool feeds intelligence into external AI environments, while the other works inside the company's own platform to navigate and interpret data already held there.

Michael DeBolt, President and Chief Intelligence Officer at Intel 471, said the additions are part of a wider effort to make the platform more useful in day-to-day security operations. "MCP471 and Agent471 are critical milestones pointing to the innovation we are building into Verity471 as they not only help analysts do their jobs more efficiently, but they act as that extra set of hands many people in the security industry wish they had," he said.

He also outlined the kinds of tasks the company expects customers to use the tools for. "We see our new AI capabilities helping customers achieve new heights across numerous use cases - unearthing deeper, faster context to enrich investigations, creating regular briefings for senior leaders to inform risk decisions, and many more. The sky is truly the limit," DeBolt said.

The launch comes as security teams face a growing volume of alerts, intelligence feeds and internal data sources, often with limited staff to interpret them. Products that promise to cut across those silos have become a significant area of competition in cybersecurity, especially as buyers look for ways to integrate AI into practical operational work rather than treat it as a standalone feature.

Agent471 is intended to address one of the more persistent problems in intelligence analysis: the need to know the right threat actor name, alias or reference point before relevant information can be found. Intel 471 said it can reason across sources in a way that mirrors how a human analyst would pivot from one data point to another.

MCP471, meanwhile, addresses another pressure point by allowing threat intelligence to be consumed in systems customers already run. That may appeal to organisations building their own internal security assistants or automated workflows around large language models and agent frameworks.

The combination suggests Intel 471 is trying to make Verity471 both a destination for analysis and a data source for wider AI-driven security operations. In a market where buyers increasingly ask how intelligence can be embedded into everyday decision-making, that distinction may matter as much as the intelligence itself.