r/threatintel

18k members
r/threatintel is a subreddit with 18k members. The most common kinds of discussions are news and advice requests, and the community frequently discusses threat intel, vulnerability, cve, training, and detection rules.
Sharing of information about threats, vulnerabilities, tools and trends across the security industry.

Popular Themes in r/threatintel

#1
News
: "🤖 🇨🇳 Chinese-Speaking Operator Uses AI Agents to Target Government and Education Systems Across Asia"
6 posts
#2
Advice Requests
: "What AI-assisted workflows, models, or agents do you genuinely find helpful?"
4 posts
#3
Solution Requests
: "Best vulnerability threat intel solution you have actually used?"
1 post
#4
Pain & Anger
: "Anyone else struggling to keep detection coverage aligned with changing threats?"
1 post
#5
Self-Promotion
: "Built a hands-on CTI training platform, looking for people to break it and tell me what's missing"
1 post

Popular Topics in r/threatintel

#1

Threat Intel

: "How do you show Threat Intel value to execs without calling it a return?"
8 posts
#2

Vulnerability

: "Share Point Vulnerability"
3 posts
#3

Cve

: "Inside Cve-2026-16232: Technical analysis of Check Point's actively exploited authentication bypass"
2 posts
#4

Training

: "Built a hands-on CTI Training platform, looking for people to break it and tell me what's missing"
2 posts
#5

Detection Rules

: "What's everyone using for turning threat intel reports into deployed Detection Rules in 2026?"
2 posts
#6

Platform

: "Built a hands-on CTI training Platform, looking for people to break it and tell me what's missing"
2 posts
#7

Botnet

: "Practical Field Analysis: Deconstructing a Known Redtail / XMRig Botnet Payload Dropped in the Wild"
2 posts
#8

Field Analysis

: "Practical Field Analysis: Deconstructing a Known Redtail / XMRig Botnet Payload Dropped in the Wild"
2 posts
#9

Apt

: "Hiring Lazarus Apt’s IT Workers in a Fake DeFi Startup"
2 posts
#10

Network

: "DoppelCart: 119,000 Domains in What May Be the Largest Documented Fake-Shop Network"
2 posts

Flair Used in r/threatintel

#1
Help/Question
: "How do you show threat intel value to execs without calling it a return?"
21 posts
#2
APT/Threat Actor
: "Got mass-BCC'd by an extortion crew trying to use me as a pressure channel against their victim"
16 posts
#3
OSINT
: "Spiderfoot Basics"
4 posts
#4
CVE Discussion
: "Langflow (CVE-2026-0768) and Rails (CVE-2026-66066) Exploitation Raises Credential Risks"
3 posts

Member Growth in r/threatintel

Yearly
+8k members(73.3%)

Similar Subreddits to r/threatintel

/r/blueteamsec

r/blueteamsec

72k members
26.0% / yr
/r/CTI

r/CTI

1k members
43.3% / yr
/r/CyberAdvice

r/CyberAdvice

21k members
32.2% / yr
/r/cybersecurity

r/cybersecurity

1.5M members
19.7% / yr
/r/cybersecurity_

r/cybersecurity_

677 members
110.2% / yr
/r/Cybersecurity101

r/Cybersecurity101

66k members
214.5% / yr
/r/purpleteamsec

r/purpleteamsec

9k members
19.5% / yr
/r/SecOpsDaily

r/SecOpsDaily

15k members
670.0% / yr
/r/SecurityBlueTeam

r/SecurityBlueTeam

21k members
16.5% / yr
/r/ThreathuntingDFIR

r/ThreathuntingDFIR

2k members
20.3% / yr

About

GummySearch helps people research Reddit communities by organizing activity, growth, themes, and post-level signals into one place.

This page gives a focused view of r/threatintel, including current member size, discussion patterns, product reviews, and related communities to explore.

This data is synced periodically so insights stay current and useful for ongoing research.

Last updated: September 7, 2026