Skip to main content
Threat Intelligence

Real-Time Threat Intelligence

Look up domains, IPs, URLs, and file hashes across configured intelligence sources. Review risk, history, and source evidence.

Configured
Threat Sources
Indexed
Threat Records
<100ms
Response Time
Live
Health endpoint
Intelligence in action

Real data, real depth. Source-attributed, dated, weighted.

Every lookup returns risk scoring, source breakdown, geolocation, MITRE mapping, and confidence metrics.

live sampleGET /api/v1/check/185.220.101.1

200 OK · 47 ms

185.220.101.1

CRITICALIPv4

Geolocation

CountryDE
ISPStiftung Erneuerbare Freiheit
ASNAS60729

Categories

abuseproxybotnetmalwarephishingattacktoranonymizer

Blocklist hits

0feeds

Confidence

75 %

Risk factors

Threat feeds+45.0
Scanner consensus+5.5
Infrastructure+8.1
Context+2.0

MITRE ATT&CK tactics

TA0042 Resource Development

TA0011 Command & Control

TA0009 Collection

Data trust

Freshnessunder 5 min
TierA · weighted
Sources35 agreeing
sample35 sources hitconf. 0.75enrichmentLevel: full
Coverage

What's in every response.

Risk score

Composite 0-100 score weighted across threat feeds, scanner consensus, infrastructure, and behavioral context.

Source coverage

configured intelligence sources aggregated by category: malware, phishing, abuse, proxy, and more — each with reliability weighting.

MITRE ATT&CK

Tactics, techniques, related threat actor groups, and recommended mitigations from the MITRE framework.

Geolocation

Country, region, city, ISP, ASN, and autonomous system ownership at global scale with lat/lon precision.

Detection timeline

First seen, last seen, and full detection history across all monitoring windows and source updates.

Confidence breakdown

Multi-factor confidence: source agreement, source quality, scanner consensus, and inter-provider alignment.

Ready to Protect Your Organization?

Start with 30 free API requests per month. No credit card required.