abuse.ch AG operates community‑driven cyber threat intelligence platforms that provide actionable data such as indicators of compromise (IOCs), malware samples, malicious URLs and SSL certificate blocklists. The services (including URLhaus, ThreatFox, SSLBL, Bazaar, YARAify and Hunting) are aimed at security researchers, network operators and law enforcement for sharing and consuming threat intelligence; abuse.ch cooperates with partners such as Spamhaus.
AI-generated
Offering
Products & services
Industry:IT Infrastructure & CloudIT Security
Outbound Leads by COHAGA
Looking for direct email addresses and phone numbers?
Leadhub delivers verified contact details and decision-makers from over 750,000 Swiss companies — management, procurement, marketing, HR.
Public platforms for collecting, searching and distributing malware, botnet and IOC data for security researchers, network operators, AV vendors and threat-intelligence providers.
MalwareBazaar
Platform for sharing and searching malware samples, with uploads, database access, API, exports and statistics for malware detection and analysis.
URLhaus
Platform for reporting, sharing and searching malicious URLs for malware distribution, with database access, API, bulk API, feeds and statistics.
ThreatFox
Platform for sharing and searching Indicators of Compromise for malware, with upload, database access, IOC requests, API, exports and statistics.
YARAify
Platform for scanning suspicious files against YARA rules, with database search, YARAhub, API, alerts and support for malware detection.
Feodo Tracker
Platform for sharing and tracking botnet C&C servers, with browsing, a blocklist and statistical evaluations for network protection.
SSL Blacklist (SSLBL)
Platform for detecting malicious SSL connections, with lists of harmful SSL certificates, JA3 fingerprints, blacklist and statistics.
Hunting platform
Central search platform across all abuse.ch platforms, with a query for IPv4 addresses, domains, URLs and file hashes, as well as login and API access.