/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Google Cloud unveils Google Threat Intelligence, which uses Gemini and combines insights from Mandiant, VirusTotal, and Google to provide faster protection

Launched at RSAC 2024, the new Google Threat Intelligence offering provides faster protection against threats by combining insights from Mandiant

CRN Kyle Alspach

Context & Ripple Effects

Google Cloud had already expanded Chronicle with threat detection and alerting; Google Threat Intelligence adds a shared intelligence layer built from Mandiant, VirusTotal and Google data, with Gemini as the interface for faster analysis. It also arrives shortly after Google described ways to ground Gemini responses in reliable enterprise sources, a relevant capability when analysts need answers tied to evidence.

The launch is an early step in Google Cloud’s effort to turn distinct security assets into a more unified operating surface—a direction later made explicit in Unified Security’s consolidation of operations, cloud security and threat intelligence.

First-order effects

  • Security teams using Google Cloud gain a single offering intended to correlate threat signals from Mandiant, VirusTotal and Google, with Gemini helping accelerate investigation and protection workflows.
  • Google Cloud makes its proprietary and acquired threat-intelligence assets more directly productizable, rather than leaving customers to assemble them across separate tools and feeds.

Second-order effects

  • The combined offering raises the bar for security vendors that compete on individual data feeds or standalone analyst tools: they must show comparable intelligence breadth, workflow integration or AI-assisted triage.
  • Customers may consolidate portions of their threat-intelligence and security-operations stack around Google Cloud if the shared data and Gemini workflow reduce manual correlation work.

Third-order effects

  • If integrated intelligence proves more useful than disconnected tools, cloud-security competition will increasingly hinge on ownership of telemetry, research networks and AI interfaces—not only detection features.
  • The later progression toward AI agents for threat hunting and detection engineering suggests this can evolve from analyst assistance toward more automated security operations, increasing the importance of trustworthy evidence and human oversight.

The trend: Cybersecurity platforms are converging threat telemetry, expert research and generative AI into integrated systems that aim to compress the time from signal to response.

Discussion

  • @mandiant @mandiant on x
    Google Threat Intelligence highlights the threats that matter to your organization right now. Tap into investigative learnings from Mandiant frontline experts, the VirusTotal intel community, and Google threat insight. Read the blog: https://cloud.google.com/... [image]
  • @googlecloud @googlecloud on x
    Announcing Google Threat Intelligence—a new offering that combines Mandiant, VirusTotal, and Google tech and resources with Gemini to deliver unparalleled visibility into the global threat landscape! Learn more from #RSAC ↓ https://cloud.google.com/...
  • @sundarpichai Sundar Pichai on x
    Today we're launching Google Threat Intelligence from @googlecloud to help cybersecurity professionals get better visibility of global threats. It uses Gemini's advanced AI capabilities, plus expertise and insights from @Mandiant + @virustotal. https://cloud.google.com/...
  • @virustotal @virustotal on x
    VirusTotal's role within Google Threat Intelligence and its continued dedication to the security community. Insights from founder @bquintero: https://blog.virustotal.com/ ... [image]