Threat Intelligence Feed

Blacklist Malware Threats

OPSWAT's threat intelligence feed enables developers to leverage data collected from thousands of MetaDefender Cloud community users and customers. Developers, IT administrators, and organizations can easily integrate our up-to-date malware threat intelligence data into their existing tools or solutions to effectively protect their organization against threats.

Getting Started

The data feed contains the top new malware hash signatures, including MD5, SHA1, and SHA256. New malicious hashes have been identified on the networks of our community users within the last 24 hours. Our feed is updated daily with newly detected and reported malware to provide actionable and timely threat intelligence. It can be delivered in four different formats: JSON, CSV, RSS, and Bro.

Integration example – consume our threat intelligence feed with cURL:

Threat Intelligence Feed with cURL

Command-line Parameters:

  • API key – Your MetaDefender Cloud API key
  • Type - Data format type
  • Page (optional) – The page of the feed to be retrieved. You can get 1,000 items per page. If omitted, the first page will be retrieved

Our threat intelligence feed is available for all new and existing OPSWAT users and customers. Register for a new OPSWAT Portal account or log in with an existing account to obtain your MetaDefender Cloud API key, which is required to access and download the feeds. We encourage you to become a contributor to our open source community. See how other developers are consuming our Threat Intelligence Feed on github at hslatman's threat resources and  rshipp's threat resources pages. 

Additionally, our feed can be consumed by using the CSIRT Gadgets Foundation's Collective Intelligence Framework (CIF), a cyber security threat intelligence management system.

SAMPLE FILE

Expanded Commercial Version

For access to hundreds of thousands of unique threats every day, we also offer a commercial version of our threat intelligence feed. It can easily integrate into your existing Security Information and Event Management (SIEM) system.

Leverage millions of data points from thousands of in-the-wild devices, and start consuming our threat intelligence feed to efficiently identify and block the latest malware threats.

CONTACT US