Look up domains, IPs, URLs, and file hashes across configured intelligence sources. Review risk, history, and source evidence.
Every lookup returns a source-attributed intelligence package — risk scoring, source breakdown, geolocation, MITRE mapping, and confidence metrics.
Risk Score
Categories
Geolocation
Blocklist Hits
Confidence
75%Risk Factors
MITRE ATT&CK Tactics
Composite 0-100 score weighted across threat feeds, scanner consensus, infrastructure, and behavioral context.
configured intelligence sources aggregated by category: malware, phishing, abuse, proxy, and more — each with reliability weighting.
Tactics, techniques, related threat actor groups, and recommended mitigations from the MITRE framework.
Country, region, city, ISP, ASN, and autonomous system ownership at global scale with lat/lon precision.
First seen, last seen, and full detection history across all monitoring windows and source updates.
Multi-factor confidence: source agreement, source quality, VirusTotal consensus, and inter-provider alignment.
Comprehensive threat analysis for every attack surface
Start with 30 free API requests per month. No credit card required.
ShinyHunters-style SSO vishing shows how fake login domains, MFA enrollment abuse, and SaaS access can become data theft. Domain monitoring gives defenders early warning.
Mobile phishing keeps gaining operational relevance. Security teams need URL scanning, domain reputation checks, DNS pivots, and employee reporting workflows built for SMS and chat.
Dutch intelligence warnings about Chinese cyber capability reinforce a practical defense priority: monitor edge devices, VPNs, routers, DNS history, and certificate reuse.