Official threat intelligence analyzer for Cortex SOAR
Included in the official Cortex-Analyzers repository. Analyze IPs, domains, and FQDNs with real-time threat intelligence from 500+ sources.
Comprehensive threat intelligence analysis for your security workflows
Analyze IPv4 and IPv6 addresses for malicious activity and threat indicators.
Check domains and fully qualified domain names against threat intelligence feeds.
Get a 0-100 risk score based on multi-source threat analysis with confidence weighting.
Automatic threat classification: Status, Risk Score, Category, and Source count.
Seamlessly enrich cases and alerts in TheHive incident response platform.
Included in official Cortex-Analyzers repository with ongoing maintenance.
Simple setup with just two parameters
Your isMalicious API key. Get one for free at ismalicious.com
API endpoint URL. Defaults to https://ismalicious.com
Structured threat intelligence data for your workflows
StatusMalicious/Clean status based on threat analysis
Risk ScoreNumeric risk score (0-100) with confidence weighting
CategoryPrimary threat category (phishing, malware, C2, etc.)
SourcesNumber of detection sources that flagged the indicator
Get your free API key and start analyzing threats with the official Cortex analyzer.