Overview
Cybersixgill continuously collects and exposes the earliest possible indications of risk, moments after they surface on the clear, deep and dark web.
Our proprietary algorithms extract data from a wide range of sources, including content from limited-access deep and dark web forums, underground markets, invite-only messaging groups, code repositories, paste sites and clear web platforms, as well as an unparalleled archive of indexed, searchable historical data from as early as the 1990's.
This data is processed, correlated and enriched with machine learning techniques to create profiles and patterns of malicious threat actors and their peer networks, delivering critical insight into the nature, source and context of each threat.
Our extensive body of threat intelligence data can be consumed through various solution offerings and integrations, each addressing critical customer pain points and use cases.
These solutions are scalable, searchable and seamlessly integrated into existing security stacks, quickly arming enterprises, government and MSSP's alike with accurate, relevant and actionable insights to proactively block threats before they materialize into attacks.
Highlights
- Cybersixgill automates data collection from the widest range of sources, delivering operational threat intelligence quickly.
- The platform offers secure access to threat intelligence through SaaS, APIs, and seamless integration with existing security operations.
- With AI-driven analysis, Cybersixgill reduces response time, offering real-time alerts and insights from the dark web.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
Cyber Threat Intelligence Cybersixgill | Cyber Threat Intelligence Base Package | $155,000.00 |
Vendor refund policy
All fees are non-cancellable and non-refundable except as required by law.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Resources
Vendor resources
Support
Vendor support
For support contact info@cybersixgill.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
Centralized threat insights have enabled comprehensive dark web exposure reporting
What is our primary use case?
Our main use case for Cybersixgill during our proof of concept was to find a tool as a single pane of glass that would provide us actionable threat intelligence along with adversary reporting. We were also looking for a tool that could perform multiple functions, including dark web scanning and dark web intelligence specifically.
When I need to prepare a report for one of my customers, I can search for that particular organization's exposure over the darknet to find what has been there, what emails have been leaked, and other relevant information by checking different dark web forums, market forums, leak sites, and any ransomware groups claiming or naming that particular organization on their leak sites.
What is most valuable?
The best feature that Cybersixgill offers with respect to dark web intelligence is that they provide very good screenshots of where the particular data has been taken, which allows for better visualization and understanding of the scenario, with the source being indicated through onion links that can be reverse-engineered for further investigation.
We were really impressed by some of the features of the platform, and we were planning to integrate it into our day-to-day work, but I'm not certain whether that happened because I was serving a notice period at that time.
What needs improvement?
I used Cybersixgill for only three months as a proof of concept, so I do not feel I am in a position to provide meaningful suggestions for improvements.
For how long have I used the solution?
I used Cybersixgill for a very limited period of time, which was approximately two to three months, and this was during a product review session for our team's proof of concept.
What other advice do I have?
If you are looking for threat intelligence that can cater to various needs from IOC to threat advisories and along with dark web intelligence, then you should try Cybersixgill. I gave this product a rating of 8.
High Cost, Low Signal: More Noise Than Intelligence
Unfortunately, that promise rarely translates into day-to-day value.
Performance is another major drawback. Searches and dashboards are often slow, which is frustrating for a tool that claims near real-time intelligence. The UI feels dated and clunky, and workflows are not intuitive.
Support and documentation also fall short of expectations for a product at this price point. Documentation is thin, and support responses are not too helpful.
Instead of accelerating response, it often adds operational overhead. The tool identifies “things that exist on the internet,” but stops short of consistently answering the more important question: what requires action right now?