THE HAGUE, Netherlands, June 14, 2026 (GLOBE NEWSWIRE) — Modat today launched native passive DNS intelligence in Magnify, its internet intelligence platform, which unifies IP, device fingerprint, certificate and passive DNS into one pivot-driven inquiry flow. Threat intelligence, threat hunting, exposure management, fraud, and security teams have long been forced to piece together evidence from multiple tools and data points. Magnify eliminates this gap, building on clustering-based device fingerprinting and geo-native scanning to the surface infrastructure that conventional internet scanners miss.
Most Internet intelligence platforms are built around a single primary signal, while other data types are used as secondary queries. Magnify is built the other way around: every signal is a first-class pivot point. Now that Passive DNS is native to the platform, a researcher can start from a domain and surface every IP address it has hosted, start with a TLS certificate and surface every domain it has secured, or start with a clustered device fingerprint and surface every host running the same software stack, all in the same search path. The result is an infrastructure graph of the attacker that is updated the way the Internet does, rather than a series of disconnected queries that analysts have to piece together by hand.
Key capabilities of the Modat Passive DNS platform include:
- Running infrastructure: Switch between IP, domain, TLS certificate, and clustered device fingerprint in a single graph, with relationships preserved rather than reconstructed across tools.
- Real-time threat correlation: Automated correlation of newly observed domains and IPs with known indicators of compromise (IOCs), threat actor TTPs, and malware families.
- Retrospective infrastructure analysis: Queryable Passive DNS alongside Magnify’s IP, device, and certificate timelines, allowing analysts to reconstruct the full infrastructure lifecycle and the full attacker lifecycle.
- API-First Integration: Seamless integration with leading SIEM, SOAR, and threat intelligence platforms via a robust REST API.
“Most internet intelligence tools have been developed signal by signal, and it shows that analysts spend more time piecing together evidence than acting on it,” says Soufian El Yadmani, CEO and founder of Modat. “Magnify was designed from the ground up so that every signal, IPs, devices, certificates and now Passive DNS is a pivot on the same graph. Passive DNS is not an add-on for us. It is the fourth pillar that completes the picture. We are proud to share this milestone with the global security community at FIRSTCON26.”
The Modat Passive DNS Intelligence Capability is immediately available to enterprise customers and MSSP partners. A live demonstration will be available during Modat’s presence at FIRSTCON26. Visitors are encouraged to visit our stand or contact Modat directly by email or to book your meeting here directly.
About Modat
Modat is the only European internet intelligence company. Headquartered in The Hague, Netherlands, and founded in 2024 by experienced cybersecurity professionals, Modat builds AI-driven intelligence on the global internet infrastructure. It shows who is behind it, what they are preparing and when they will take action. Its flagship platform, Modat Magnify, continuously scans the entire internet, profiles every connected device using deep fingerprinting, and delivers contextual intelligence in more than 50 categories. Modat serves national CERTs, critical infrastructure operators, security companies and large enterprises. The information is used daily by security operations, cyber threat intelligence, threat hunting, and exposure management teams on multiple continents.
Contact
Soufian El Yadmani, founder and CEO of Modat
[email protected]
http://www.modat.io


