BlackShieldCore
Analyst Threat Console · Unified OSINT

Every threat lookup.
One unified console.

Query IP addresses, domain names, file hashes, and CVE identifiers across 20+ intelligence feeds in a real-time workspace built for high-speed practitioner investigation.

Quick lookup samples:
BlackShield Core Console v9.1
GLOBAL THREAT STREAM
Time
Type
Observable
Source
Severity
12s ago
>IP
185.220.101.5
Feodo Tracker
CRITICAL
34s ago
>DOMAIN
api.cyber-vault.net
Global DNS
HIGH
1m ago
>HASH
47b8593d142111c...
VirusTotal
HIGH
2m ago
>CVE
CVE-2024-3400
NVD
CRITICAL
3m ago
>IP
194.26.29.112
Censys
MEDIUM

Recent Activity Feed

Loading recent activity...
Platform Architecture

Core Threat Investigation Modules

Built for speed, high information density, and zero context switching across every threat investigation workflow.

Unified Threat Intelligence

Query 20+ Threat Feeds in Parallel

Instant unified lookup across VirusTotal, Shodan InternetDB, AbuseIPDB, AlienVault OTX, NVD CVEs, and WHOIS without tab switching.

20 Parallel APIs
Feeds Searched
140ms Response
Avg Latency
IPs, Domains, Hashes, CVEs
Supported Observables
osint.ts
TypeScript SDK
// Single Unified OSINT Lookup API
const res = await fetch("/api/osint/lookup?q=8.8.8.8");
const data = await res.json();
console.log(data.summary.overallReputation); // "VERIFIED_CLEAN"
Relationship topology engine

Interactive Fusion Graph

Instantly correlate threat indicators, Autonomous System Numbers, payload hashes, and adversary infrastructure in a single dynamic vector canvas.

Correlation Topology: LockBit 3.0 Cluster
185.220.101.5api.cyber-vault.net47b8593d...c181c42LockBit SuppCVE-2024-3400194.26.29.112auth-verify.org
HIGH SEVERITYTYPE: ip

185.220.101.5

Feodo C2 Botnet Node

Connected Edges:2 direct links
Correlation Engine:VERIFIED IoC
Platform scale and reliability

Built for high information density

Every architectural decision optimised for the speed, accuracy, and data richness that security practitioners need.

20+
Integrated Intelligence Feeds
VirusTotal, Shodan, AbuseIPDB, AlienVault OTX, NVD CVE
40+
Analyst Toolbox Operations
Base64, Hex, SHA-256, JWT, CIDR, Log parsing
100%
API Source Transparency
Direct upstream citations on every result with full provenance
<250ms
Average Lookup Latency
Optimised parallel request ingestion across all feed APIs

Start your first threat investigation

Enter any IP address, domain, file hash, or CVE identifier. No account required; all results cite their upstream source.