No more typing reviews! Try our Samantha, our new voice AI agent.

SOCRadar Extended Threat Intelligence vs ZeroFOX comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SOCRadar Extended Threat In...
Ranking in Threat Intelligence Platforms (TIP)
3rd
Ranking in Digital Risk Protection
4th
Average Rating
8.6
Reviews Sentiment
6.2
Number of Reviews
21
Ranking in other categories
Attack Surface Management (ASM) (6th)
ZeroFOX
Ranking in Threat Intelligence Platforms (TIP)
8th
Ranking in Digital Risk Protection
2nd
Average Rating
8.6
Reviews Sentiment
6.5
Number of Reviews
3
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Digital Risk Protection category, the mindshare of SOCRadar Extended Threat Intelligence is 5.2%, up from 5.2% compared to the previous year. The mindshare of ZeroFOX is 9.4%, down from 17.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Digital Risk Protection Mindshare Distribution
ProductMindshare (%)
ZeroFOX9.4%
SOCRadar Extended Threat Intelligence5.2%
Other85.4%
Digital Risk Protection
 

Featured Reviews

yozkul - PeerSpot reviewer
Cyber Security Consultant at Cevizsoft Teknoloji AŞ
Centralized threat intelligence has improved our visibility and accelerated incident response
You can find out new threats and security incidents with SOCRadar Extended Threat Intelligence. You can see the new vulnerabilities when you are using your products. This is very useful. SOCRadar Extended Threat Intelligence has improved security in my organization, but there are some problems. Sometimes there are too many alarms, which can become quite tiring. We have a lot of information infrastructures, and SOCRadar Extended Threat Intelligence has improved our security, but we do experience some alert fatigue. There are a lot of web servers. We also integrated SOCRadar Extended Threat Intelligence with the SIEM. We can see together, and we can see all of the threats and new threats, especially. If you integrate all internal sources, IP addresses, and services to SOCRadar Extended Threat Intelligence, you can view all of the sources together in a single monitor and area. You can also view all the tickets and vulnerabilities and threats. This is very useful.
AS
Senior Consultant at LTI - Larsen & Toubro Infotech
Efficiently identify and address online threats with timely alerts and thorough takedown capabilities
The most valuable features are its threat intel platform, which provides the latest trends and indicators of compromise (IOCs) that I can act on. I quickly obtain data, such as leaked email IDs and passwords, from the ZeroFOX portal or the threat intel portal when required. The platform's GUI-based features stand out and provide thorough takedown capabilities for domains, social media accounts, and phishing numbers.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The best feature that SOCRadar Extended Threat Intelligence offers is definitely the detection of leaks in the dark web."
"I am using the freemium tier of SOCRadar Extended Threat Intelligence, and it is a very good one."
"We proactively blocked the IOCs provided by SOCRadar Extended Threat Intelligence before breaches occurred in other banks and financial industries."
"SOCRadar Extended Threat Intelligence has impacted my organization positively by enabling us to monitor and see exactly what our external threat exposures are, a capability we lacked before using SOCRadar Extended Threat Intelligence."
"SOCRadar Extended Threat Intelligence's governance and security through its AI capabilities are impressive, as they aid greatly in CVE understanding and allow for network comprehension of threats, proving to be a formidable tool for open-source intelligence."
"Basically, the results that it gives me as an outcome after I integrate with my domain are impressive."
"SOCRadar Extended Threat Intelligence has improved our organization's visibility into external cyber threats and helped us identify potential risks early."
"SOCRadar Extended Threat Intelligence has positively impacted my organization by enabling me to feed higher severity IOCs to other tools, automatically blocking malicious threat actors roaming in the market, while generating reports related to CVEs that we share with our vendors and respective teams for vulnerability validation and remediation."
"ZeroFOX is valuable because it enables the detection of chatter on social media without depending on keywords and has no language limitations, as it can detect many languages."
"ZeroFOX has no language limitations. It can detect many languages."
"I rate ZeroFOX a ten overall."
"The best thing about the tool is that its backend team is pretty good and has a strong engineering team."
 

Cons

"However, pricing, interface, customization, AI, and integration could be improved."
"I have noticed exposures of credentials that do not show the correct password, as I receive alerts repeatedly for my credentials."
"Overall, SOCRadar Extended Threat Intelligence is a strong platform, but there are a few areas where it could be enhanced."
"In terms of improvement for SOCRadar Extended Threat Intelligence, I think the asset identification procedures could be better, as we receive a lot of false positives related to the specific flags we set."
"I think SOCRadar Extended Threat Intelligence can be improved by adding good keywords, as keywords are critical."
"Sometimes the output of SOCRadar Extended Threat Intelligence is very accurate, but sometimes you need to check whether it is real or not."
"I think the feature about the data source, such as the Telegram channel or breach forums, should be more clear, containing the Telegram channel name or the breach forum name instead of just the link."
"The support quality is inconsistent."
"Social media takedowns are a major issue. The takedowns should not take more than two to three hours, but they take more than that."
"ZeroFOX is not configured to grab the information automatically, including the news."
"ZeroFOX needs improvement in handling duplicate alerts. If an alert on a domain, such as abcd.com, has not been addressed or is still in progress, similar new alerts are not combined into a single incident."
report
Use our free recommendation engine to learn which Digital Risk Protection solutions are best for your needs.
913,806 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
14%
Financial Services Firm
13%
Comms Service Provider
10%
Manufacturing Company
7%
Financial Services Firm
13%
Outsourcing Company
10%
Manufacturing Company
9%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business17
Midsize Enterprise3
Large Enterprise7
No data available
 

Questions from the Community

What needs improvement with SOCRadar Extended Threat Intelligence?
SOCRadar Extended Threat Intelligence could be improved by implementing an autonomous threat hunting option. I am not certain if this is currently implemented, but I would appreciate seeing that fe...
What is your primary use case for SOCRadar Extended Threat Intelligence?
My main use case for SOCRadar Extended Threat Intelligence is Digital Risk Protection, brand risk monitoring, threat intelligence, supply chain attacks, supply chain monitoring, VIP monitoring, ide...
What advice do you have for others considering SOCRadar Extended Threat Intelligence?
SOCRadar Extended Threat Intelligence earns a rating of ten on a scale of one to ten. I rate it a ten because of the quality of information that is always delivered when needed, and the support fro...
What is your experience regarding pricing and costs for ZeroFOX?
Based on my observations, ZeroFOX is moderately priced. It's neither highly expensive nor very cheap. The pricing depends on the licensed services, such as takedowns or dark data services, chosen.
What needs improvement with ZeroFOX?
ZeroFOX needs improvement in handling duplicate alerts. If an alert on a domain, such as abcd.com, has not been addressed or is still in progress, similar new alerts are not combined into a single ...
What is your primary use case for ZeroFOX?
I am working as a consultant for a manufacturing company, where I use ZeroFOX ( /products/zerofox-reviews ) to monitor social media accounts, brand domains, dark web data, and other online assets. ...
 

Also Known As

No data available
LookingGlass Manage Intelligence, VigilanteATI
 

Overview

 

Sample Customers

Information Not Available
Royal Farms, Hootsuite, BAE Systems, True Citrus
Find out what your peers are saying about SOCRadar Extended Threat Intelligence vs. ZeroFOX and other solutions. Updated: September 2026.
913,806 professionals have used our research since 2012.