🤖 Analyst Copilot
8.8.8.8 evil.com Russia sources for GEOINT free apis for crypto assess ransomware threat what is ACH
Four agents, all local-first: Triage (IoC/country lookup), Collection (find the best free sources from 1,033), Analyst (assessment frames), Trainer (tradecraft). No data leaves the platform.
📡 Collection Agent — 14 sources
Tracks botnet C2 servers (Emotet, Dridex, QakBot, TrickBot); downloadable IP/port blocklists.
abuse.ch SSLBL NONE
Blacklist of SSL certificate SHA1 fingerprints and JA3 hashes tied to malware/botnet C2.
abuse.ch ThreatFox NONE
Family-labelled IoC exchange.
Arkham Intelligence NONE
Entity attribution & flow analysis.
bgp.tools / RIPEstat NONE
BGP routing & network intelligence.
Carnegie Mellon insider-threat research corpus.
CIDRAP News NONE
Univ. of Minnesota center's authoritative daily infectious-disease and biosecurity news with RSS feeds.
US-CERT indicator sharing / advisories.
Federal insider-threat guidance & indicators.
Dark Web Informer NONE
Daily dark-web and cybercrime threat-intel feed covering leaks, breaches and ransomware claims.
DarkFeed NONE
Public dashboard indexing ransomware leak-site victims and threat-actor activity (paid API tier).
Free OSINT IoC feeds (domains, IPs, URLs, hashes) in MISP, STIX and CSV.
ECDC NONE
European Centre for Disease Prevention and Control; downloadable EU/EEA surveillance datasets and threat repor
Egmont Group of FIUs NONE
Global financial intelligence unit network.
Full filters in the Source Catalog.
Tip: add an
apikey_openai or apikey_anthropic in settings (or an OPENAI_API_KEY/ANTHROPIC_API_KEY constant in config.php) to get an AI narrative on top of the local facts below.Threat Actor Intelligence — OTHER ioc
| Local status | Not currently in the indicator store |
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron