shouldiuse.io

Categories

VERDICT

Should I use BrightCloud?

Page shows OpenText home page; BrightCloud is now OpenText's threat intelligence brand (ex-Webroot). - brightcloud.com

Depends. Buy only if you are a security vendor or MSSP embedding threat intel via API or OEM deals. Regular businesses already get BrightCloud inside Webroot or Palo Alto products and should not buy it directly.

Confidence

Medium. Based on ~20 public sources; brightcloud.com now redirects to OpenText's homepage, and direct pricing/review volume is thin.

Ratings

  • Value for moneyNo public pricing evidence
  • Ease of useNo usability evidence found
  • Feature depth
  • Support quality
  • Security posture

Pricing

Reseller-quoted

Via Palo Alto (PA-220 URL Filtering subscription)

ModelOEM/API
Monthly feesNot disclosed
HardwareNot disclosed

Best for

  • Security vendors embedding intel via API
  • Firewall/endpoint OEMs needing URL feeds
  • MSSPs building detection services

Not for

  • Small businesses — it already ships inside tools you own
  • Buyers wanting self-serve dashboards and published pricing
  • One-off URL reputation lookups — use free tools
  • Teams without security engineering to consume raw feeds

Gotchas - check before you buy

high

Pricing is opaque and bundled; negotiate via OpenText or resellers like CDW

high

Hard to buy standalone; it usually arrives inside Webroot or Palo Alto subscriptions

medium

Confirm 2018 CVE-affected components are patched; flaws involved certificate validation

Pros and cons

Pros

  • Wide intel portfolio: IP reputation, URL classification, mobile app reputation, phishing, SDK
  • Embedded in Palo Alto Networks firewalls — proven at enterprise scale
  • Actively maintained under OpenText; annual threat reports since 2021
  • Case-study customers praise support: 'treated us like a 10+ year customer'

Cons

  • No public pricing; sales-led OEM and partner purchases only
  • Two 2018 CVEs, one CVSS 8.1, involving certificate validation
  • Firewall admins report URL categorization quality problems
  • is now just an OpenText redirect — thin standalone product info

Sources & method

Analyzed 10/03/2026 - 12 sources - Two 2018 high-severity CVEs (CVSS 8.1) in certificate validation and buffer overflow; no newer findings in reviewed sources.

official x2review x2security x4news x4
  • CVE-2018-4015 — Improper Certificate Validation (CVSS 8.1), BrightCloud certificate validation flaw rated high severity by multiple trackers.
  • CVE-2018-4012 — Exploitable buffer overflow, Talos disclosed an exploitable buffer overflow in a BrightCloud component.

Key stats

  • Feature depth: 4/5

    Rating

  • Reseller-quoted

    Starting price

  • 12

    Sources

  • Analyzed

  • Value for money. No public pricing evidence
  • Ease of use. No usability evidence found
  • Feature depth: 4/5. Broad multi-vector intel portfolio
  • Support quality: 4/5. Case studies praise responsive support
  • Security posture: 2/5. 2018 CVSS 8.1 cert-validation CVEs
  • 8.1 CVSS of known CVE CVE-2018-4015, certificate validation
  • 94/100 Site trust score GridinSoft scan of brightcloud.com
  • OEM/API Buyer model Sold to technology partners, not end users

Pricing

Via Palo Alto (PA-220 URL Filtering subscription)

Reseller-quoted

  • Sold as a firewall subscription, not directly from OpenText
  • No list price confirmed in sources

Security

Two 2018 high-severity CVEs (CVSS 8.1) in certificate validation and buffer overflow; no newer findings in reviewed sources.

  • CVE-2018-4015 — Improper Certificate Validation (CVSS 8.1)BrightCloud certificate validation flaw rated high severity by multiple trackers.⁵
  • CVE-2018-4012 — Exploitable buffer overflowTalos disclosed an exploitable buffer overflow in a BrightCloud component.⁶

Companies that use it

  • Palo Alto Networks²
  • Digital Boardwalk
Full analysis

Based on ~20 public sources; brightcloud.com now redirects to OpenText's homepage, and direct pricing/review volume is thin.

Threat-intel data feeds for security vendors — not a tool you buy directly; most orgs already get it via Webroot or Palo Alto.

Methodology

Based on ~20 public sources; brightcloud.com now redirects to OpenText's homepage, and direct pricing/review volume is thin.

Sources

  1. official
  2. news
  3. news
  4. security
  5. security
  6. security
  7. review
  8. review
  9. official
  10. security
  11. news
  12. news

Rate this review

Anonymous. You can change your vote.

Loading votes…

Comments

One queue. No nested comments. Give a display name first. Limit: 200 words per comment and 7 comments per day. You can edit or delete yours.

Save a name to write a comment.

0 / 200 words

No comments yet.