" " indicates required fields
Providing Contextual Insights Tailored to Your Infrastructure
Jerusalem, Israel, April 3, 2025: C2A Security, the only context-driven product security orchestration platform that addresses the specific needs of software-defined products and cyber-physical systems, announced today a major step forward in how product security teams analyze and respond to cyber threats at scale by introducing a new Context-Based Threat Intelligence Module (product).
This new addition enhances the company’s product security platform, EVSec, by automating the process of analyzing raw threat data, giving product security teams and executives the context, clarity, and speed needed to tackle real-time risks more effectively. Unlike traditional vulnerability scanning, the Threat Intelligence Module automatically extracts threat activities – including Zero-Day vulnerabilities – to provide contextual insights tailored to your infrastructure, with AI-based enrichment adding depth to the data.
Ransomware attacks have been a well-known threat vector to medical organizations for several years, peaking during the pandemic and again in 2023 and 2024, resulting in extensive downtime for organizations. A recent study by IBM showed that organizations took an average of 194 days to identify a data breach and 292 days to contain it – with the average cost of downtime being around $1.9 million per day.
The new Threat Intelligence Module leverages multiple sources of threat data, including the Internet, dark web, ISAC reports, and social media platforms, to automatically create actionable security events. Powered by AutoSynth AI, the company’s novel AI-based infrastructure layer, the new Threat Intelligence Module accelerates vulnerability management and post-production threat analysis by seamlessly integrating with known threat intelligence sources like Health-ISAC and Auto-ISAC reporting.
“In today’s rapidly evolving threat landscape, time is of the essence. The medical sector has seen devastating impacts from cyber threats and ransomware attacks – often with downtime costs in millions of dollars. The new Threat Intelligence Module is designed to address this critical gap”, said David Mor Ofek, Head of Product, C2A Security. “With AI-driven insights, C2A Security’s contextualized approach gives teams the clarity and speed to respond effectively, reducing the average response time and potential damage. Integrating with community and industry platforms like ASRG, Health-ISAC, and Auto-ISAC ensures you’re always equipped with the most relevant threat data to protect your products.”

Key Features of the Threat Intelligence Module:
How It Works:
EVSec collects threat data from various sources, including the dark web, white-hat researchers, security blogs, GitHub, white papers, and social media. This intelligence is analyzed by the AutoSynth AI layer, which converts the data into actionable security events. The Threat Intelligence Module then evaluates these events based on their relevance to your product, context-driven, ensuring only high-impact threats are processed.
The C2A Advantage: Context-Driven Threat Intelligence
While other companies offer threat intelligence solutions primarily focusing on scanning events, C2A Security provides contextualized security insights. Linking raw data with your specific products through EVSec enables you to not only detect threats but also understand their impact on your infrastructure and how to best mitigate them.
This approach gives your team the relevant context to act quickly and efficiently, minimizing the time from threat identification to mitigation.
Schedule a demo today to experience the new Context-Based Threat Intelligence Module in person and improve your organization’s response time to emerging threats.
Dynamic threat modeling and risk assessment aligned with global regulations
LLM-agnostic generative AI layer powering automation across every module
Aggregated threat feed contextualized against your actual products
Generate, manage, and triage all BOMs and vulnerabilities across the lifecycle
Quantitative optimization of mitigation strategy and security control allocation
Configurable dashboards and reports across every EVSec data layer
Extract software composition and risk from firmware and binaries without source code
Optimized anomaly detection for Ethernet and CAN, plus ECU runtime protection
Quantify and manage cybersecurity risk for products operating in the field
Enrich SOC events with deep product and architecture context
Context-driven test and validation with intelligent fuzzing, integrated into CI/CD
AI-powered static analysis integrated into CI/CD with reduced false positives
Foundational layer: cyber model, workspaces, and integration backbone to DevOps toolchain
Out-of-the-box and customizable workflows for regulatory and security processes
Centralized compliance management with evidence generated from live data