BlackShieldCore
Transparency Register

Data Sources

Every intelligence feed and API that BlackShield Core aggregates. 22 sources across 6 categories. Nothing is listed here unless it is wired up in the codebase.

Threat Intel

Source NameDescriptionLink
VirusTotalFeatured
Scan files, URLs, domains, and IP addresses against 70+ antivirus engines and threat intelligence feeds. The starting point for most artifact analysis.Visit
AbuseIPDBFeatured
Community-sourced IP abuse reports with confidence scores and category classifications. High-volume API available for SIEM integration.Visit
URLScan.io
Sandbox any URL in a real browser. Returns screenshots, DOM snapshots, outbound network connections, and detected technologies.Visit
AlienVault OTX
Open threat intelligence community. Submit and consume indicators, follow actor pulse feeds, and track emerging campaigns in real time.Visit
Pulsedive
Threat intelligence platform with enriched IoC data: WHOIS, passive DNS, threat associations, and risk scoring in a clean interface.Visit

DNS & Network

Source NameDescriptionLink
ShodanFeatured
Search engine for internet-exposed devices. Port data, service banners, CVE associations, and infrastructure mapping at global scale.Visit
ping.eu
External ping, traceroute, DNS lookup, port check, and WHOIS from geographically distributed nodes. Useful for validating external reachability.Visit
MXToolbox
DNS health checks, MX record lookup, blacklist monitoring, SMTP diagnostics, and SPF/DKIM/DMARC validation in one place.Visit
DNSdumpster
Passive DNS recon tool. Discovers hosts and subdomains related to a target domain without active scanning.Visit
Hurricane Electric BGP
ASN info, BGP routing tables, IP block ownership, and peering data for network infrastructure research and attribution.Visit

Email & Identity

Source NameDescriptionLink
Have I Been PwnedFeatured
Check if an email address or phone number has appeared in documented data breaches. Domain-level monitoring available for security teams.Visit
Hunter.io
Find and verify professional email addresses for any domain. Pattern inference, confidence scoring, and bulk verification API.Visit
EmailRep.io
Email reputation scoring using breach history, spam reports, domain age, and observed behavioral signals.Visit

Vulnerability

Source NameDescriptionLink
NVDFeatured
US National Vulnerability Database. CVE details, CVSS base scores, affected products, and remediation references. Authoritative source.Visit
Exploit-DB
Public exploit archive maintained by Offensive Security. Searchable by CVE, vendor, platform, type, and exploit category.Visit
CVE Details
CVE data with vendor and product drill-down, CVSS trend charts, and historical vulnerability counts per vendor over time.Visit

Infrastructure

Source NameDescriptionLink
SecurityTrailsFeatured
Historical DNS records, subdomain enumeration, IP history, and WHOIS data. Useful for passive infrastructure tracking and attribution.Visit
Radware Threat Intel
DDoS threat advisories, real-time attack intelligence, and botnet activity documentation from global network telemetry.Visit
Cloudflare Radar
Internet traffic trends, BGP route changes, DNS query statistics, and attack traffic patterns from Cloudflare's global network.Visit

Platforms

Source NameDescriptionLink
OSINT Framework
Categorized, browsable directory of OSINT tools and resources. Organised by investigation type with direct links to hundreds of tools.Visit
IntelX
Search engine for leaked data, historical records, dark web content, and paste sites. Useful for credential exposure research.Visit
Grep.app
Search across half a million public git repositories. Useful for finding exposed credentials, API keys, and misconfigured secrets.Visit