Company
Date Published
Author
Gedalyah Reback
Word count
854
Language
English
Hacker News points
None

Summary

Threat intelligence feeds play a vital role in modern cybersecurity by tracking IP addresses and URLs linked to various online threats such as phishing, malware, and ransomware. Despite the abundance of open source threat intelligence feeds, their reliability and detail vary, with some of the best not being frequently updated. The article highlights several noteworthy feeds, including Emerging Threats by Proofpoint, which provides categorized and confidence-scored data on malicious activities, and FBI InfraGard, a collaboration between the FBI and the private sector focusing on critical infrastructure threats. Other notable feeds include Dan.me.uk's tools for IP and domain information, the CINS Score by Sentinel, which rates IP addresses' trustworthiness, and Blocklist.de, which tracks server attacks. It also mentions hpHosts, a community-managed database of malicious IPs, and AlienVault OTX, which uses community-generated and automated pulses to rank IPs by reputation. Additionally, abuse.ch offers specialized feeds like Feodo Tracker for botnets and URLhaus for malicious domain data, both providing comprehensive and regularly updated datasets accessible via APIs.