Making a search for an IP adress

Log in to Vote
3
3 Votes • 3 Comments
To understand whether an IP adress is vulnerable or belongs to a botnet, we use some sites, that announces the blacklists. Or run our own honeypots. http://www.reddit.com/r/netsec/comments/...

How about, we use duckduckgo to gather this information? !ip 104.192.103.9 can display me whether this ip is a botnet source, ddos attacker or whatever i can gather from other security soruces.

Since i am not asking whether the url is vulnerable or not, i opened a new idea.
Source:
http://map.honeynet.org/ displays data from hpfeeds, which belongs to some honeypots around the world. Hpfeeds data can be used.

https://zeustracker.abuse.ch/blocklist.p... says the zeus botnets
http://www.reddit.com/r/netsec/comments/... is a collection of lists

• posted 3 years and 7 months ago • type: Fathead (keyword data) Needs Source Suggestions

jkanarek
Do any of the sources above offer a JSON api?
posted by jkanarek Staff3 years and 7 months ago Link
anonymous
hpfeeds has json response. I should check for the others. If not, a middleware service can handle the json issue and standatize the reponses.
posted by <hidden> • 3 years and 7 months ago Link
anonymous
Let me update one poing, hpfeeds data is live, so it is not something that can be queried backwards.
posted by <hidden> • 3 years and 7 months ago Link