WhoisXML API

5K posts

WhoisXML API banner
WhoisXML API

WhoisXML API

@whoisxmlapi

WhoisXML API is a cyber intel provider that has been gathering, analyzing, and correlating domain, IP, and DNS data for a more secure and transparent Internet.

Covina CA Katılım Mart 2011
294 Takip Edilen1.4K Takipçiler
WhoisXML API
WhoisXML API@whoisxmlapi·
What #ransomware did in 2025? Extortion, leaks, business interruption, and more. We analyzed @PicusSecurity’s Top 10 Ransomware Group of 2025 list and mapped the #DNS footprint of the groups that defined 2025: #Qilin, #Akira, #Cl0p, #Play, #INCRansom, #SafePay, #Lynx, #RansomHub, #DragonForce, and #Babuk2. Building on 267 network #IoCs, we uncovered 9,537 new artifacts across domains, IPs, email‑connected infrastructure, and string‑connected assets. Download the full report → main.whoisxmlapi.com/threat-reports… #ThreatIntel #Cybersecurity #DNSintel #InfoSec
GIF
English
0
0
0
75
WhoisXML API
WhoisXML API@whoisxmlapi·
Investigate suspicious IPs, domains, URLs, CIDRs, and hashes faster with Threat Intelligence Lookup! Get actionable threat context in seconds for faster alert validation and investigations. Try it here: threat-intelligence.whoisxmlapi.com/lookup 📌 Available via Web Tool, API, and Database Download.
English
0
0
0
59
WhoisXML API
WhoisXML API@whoisxmlapi·
What starts as a few malicious #GitHub repos can quickly unravel into a much larger threat ecosystem. Starting with just 20 #IoCs, our latest #ForceMemo investigation uncovered 650+ possible connected artifacts tied to the campaign—revealing how #DNS intelligence can expose the infrastructure behind evolving #malware operations. 🔎 Dive into the analysis: circleid.com/posts/forcemem… #ThreatIntelligence #CyberSecurity #GitHubSecurity #DNS #ThreatResearch #PythonSecurity
WhoisXML API tweet media
English
0
0
1
56
WhoisXML API
WhoisXML API@whoisxmlapi·
What if a GitHub account takeover campaign kept spreading through Python repos? Thanks to @step_security for the #ForceMemo initial 20 #IoCs, investigating which we uncovered 652 new possible artifacts → 1 bulk-registered domain with 11 look-alikes, 1 domain likely malicious, 86 email-connected domains, 9 IPs (4 malicious), and 557 string-connected domains. Download the full ForceMemo report→ main.whoisxmlapi.com/threat-reports… #ThreatIntel #Cybersecurity #GitHubSecurity #PythonSecurity
GIF
English
0
0
0
49
WhoisXML API
WhoisXML API@whoisxmlapi·
Iran-affiliated #APTs blending into your enterprise traffic? Credit @S2W_Official for the 191 #IoCs, which we investigated and uncovered 3,565 new artifacts → 9,849 client IPs, 73 likely malicious domains, 1,841 potential victim IPs, 731 email-connected domains, 10 malicious IPs, and 2,824 connected domains. Download the full report → main.whoisxmlapi.com/threat-reports… #ThreatIntelligence #Cybersecurity #DNSintel #APT42 #APT34 #MuddyWater #PioneerKitten
GIF
English
0
0
1
81
WhoisXML API
WhoisXML API@whoisxmlapi·
From process injection to credential theft, the Red Report 2026 highlights how adversaries exploit trusted processes, credentials, and infrastructure to stay hidden longer. We revisited 11 featured threats and uncovered 147 network-based IoCs to better understand how these campaigns operate—and how early signals can expose them. 👉 Take a closer look: circleid.com/posts/a-look-b… #ThreatIntelligence #MITREATTACK #DNSintel #CyberSecurity #Infosec #CTI #ThreatHunting #SOC #RedReport2026
GIF
English
0
0
0
37