Transparency

Sources

Every intelligence feed and API that BlackShield Core aggregates. 22 sources across 6 categories. Nothing is listed here unless it is wired up in the codebase.

Threat Intel

VirusTotalFeatured

Scan files, URLs, domains, and IP addresses against 70+ antivirus engines and threat intelligence feeds. The starting point for most artifact analysis.

Visit
AbuseIPDBFeatured

Community-sourced IP abuse reports with confidence scores and category classifications. High-volume API available for SIEM integration.

Visit
URLScan.io

Sandbox any URL in a real browser. Returns screenshots, DOM snapshots, outbound network connections, and detected technologies.

Visit
AlienVault OTX

Open threat intelligence community. Submit and consume indicators, follow actor pulse feeds, and track emerging campaigns in real time.

Visit
Pulsedive

Threat intelligence platform with enriched IoC data: WHOIS, passive DNS, threat associations, and risk scoring in a clean interface.

Visit

DNS & Network

ShodanFeatured

Search engine for internet-exposed devices. Port data, service banners, CVE associations, and infrastructure mapping at global scale.

Visit
ping.eu

External ping, traceroute, DNS lookup, port check, and WHOIS from geographically distributed nodes. Useful for validating external reachability.

Visit
MXToolbox

DNS health checks, MX record lookup, blacklist monitoring, SMTP diagnostics, and SPF/DKIM/DMARC validation in one place.

Visit
DNSdumpster

Passive DNS recon tool. Discovers hosts and subdomains related to a target domain without active scanning.

Visit
Hurricane Electric BGP

ASN info, BGP routing tables, IP block ownership, and peering data for network infrastructure research and attribution.

Visit

Email & Identity

Have I Been PwnedFeatured

Check if an email address or phone number has appeared in documented data breaches. Domain-level monitoring available for security teams.

Visit
Hunter.io

Find and verify professional email addresses for any domain. Pattern inference, confidence scoring, and bulk verification API.

Visit
EmailRep.io

Email reputation scoring using breach history, spam reports, domain age, and observed behavioral signals.

Visit

Vulnerability

NVDFeatured

US National Vulnerability Database. CVE details, CVSS base scores, affected products, and remediation references. Authoritative source.

Visit
Exploit-DB

Public exploit archive maintained by Offensive Security. Searchable by CVE, vendor, platform, type, and exploit category.

Visit
CVE Details

CVE data with vendor and product drill-down, CVSS trend charts, and historical vulnerability counts per vendor over time.

Visit

Infrastructure

SecurityTrailsFeatured

Historical DNS records, subdomain enumeration, IP history, and WHOIS data. Useful for passive infrastructure tracking and attribution.

Visit
Radware Threat Intel

DDoS threat advisories, real-time attack intelligence, and botnet activity documentation from global network telemetry.

Visit
Cloudflare Radar

Internet traffic trends, BGP route changes, DNS query statistics, and attack traffic patterns from Cloudflare's global network.

Visit

Platforms

OSINT Framework

Categorized, browsable directory of OSINT tools and resources. Organised by investigation type with direct links to hundreds of tools.

Visit
IntelX

Search engine for leaked data, historical records, dark web content, and paste sites. Useful for credential exposure research.

Visit
Grep.app

Search across half a million public git repositories. Useful for finding exposed credentials, API keys, and misconfigured secrets.

Visit