AI & TechArtificial IntelligenceCybersecurityNewswireStartups

Joinable Labs launches AI threat intelligence security suite

Originally published on: August 5, 2026
▼ Summary

– Joinable Labs launched Joinable Security, its first domain, featuring Joinable Threat Map, a free tool for mapping and analyzing adversary behavior, and Joinable Runbooks, an enterprise platform that converts security response documentation into governed knowledge and agents.
– Both products are built on Propagator, Joinable’s Trusted Knowledge Foundry, addressing the dual problem of evolving adversary techniques and inconsistent, outdated internal response playbooks.
– Joinable Threat Map maps published threat reports from government and security organizations into the MITRE ATT&CK framework, allowing analysts to explore, verify, and compare adversary operations for free.
– Joinable Runbooks transforms an organization’s response playbooks and procedures into permission-governed, continuously synced knowledge, enabling teams to build Agentic Security Remediation Agents that are human-in-the-loop and organization-owned.
– Developed with a major cybersecurity company, Runbooks integrates with existing SIEM, SOAR, and case-management systems, turning unstructured documentation into trusted knowledge and reliable agents.

Joinable Labs has unveiled Joinable Security, the first dedicated domain on its platform, introducing two complementary offerings: Joinable Threat Map, a free tool designed for the security community to map, analyze, and share evolving adversary behavior, and Joinable Runbooks, an enterprise solution that transforms an organization’s response documentation into governed knowledge and actionable agents.

Both products are powered by Propagator, Joinable’s Trusted Knowledge Foundry. The launch addresses a fundamental challenge facing security teams: adversary tactics shift constantly, while internal response playbooks are often created by different analysts in inconsistent formats, making them difficult to update or apply uniformly. Joinable Security tackles both sides of this equation by helping teams understand the threat and respond effectively.

Joinable Threat Map ingests published threat reports from government agencies and security organizations, then maps them into the MITRE ATT&CK framework. This allows analysts to explore, verify, and compare real-world adversary operations. The tool is free and accessible to the entire security community.

Joinable Runbooks converts an organization’s existing playbooks, standard operating procedures, and incident-response workflows into structured, permission-governed knowledge that stays synchronized with its source. Using the Joinable Agentic Framework, security teams can build and own Agentic Security Remediation Agents. These agents operate with human oversight by default and respond according to the organization’s actual procedures, informed by real-time intelligence on how adversary techniques are evolving. The agents belong to the organization itself, not to a black-box vendor.

“Security teams already have what they need to defend themselves: deep knowledge of their own procedures, and a community that studies the adversary,” said Brian Shin, Co-Founder of Joinable Labs. “Joinable Security turns both into trusted, governed knowledge, and lets teams build agents they own and can rely on.”

Joinable Runbooks was developed in collaboration with one of the world’s largest cybersecurity companies, demonstrating how organizations can convert unstructured documentation into reliable knowledge and agents grounded in it. The platform integrates with existing SIEM, SOAR, and case-management systems, allowing teams to deploy it within their current security infrastructure.

(Source: Help Net Security)

Topics

threat intelligence 95% security automation 92% incident response 90% knowledge management 88% Agentic AI 86% mitre att&ck 84% security platforms 82% adversary behavior 80% playbook management 78% enterprise security 75%