🕸️ Threat Intelligence · Live Malware & Botnet Feeds

SENTINEL MESH
Live Threat Intelligence
From Real Global Sources

Aggregates real malicious IPs, malware hashes, and malware URLs from globally trusted threat research sources — updated every 30 minutes. Check any IP or domain against live threat data instantly via API.

View Live Feed →
3Live Sources
30mUpdate Interval
APIQuery Anytime
RealVerified Data
What SENTINEL MESH Actually Does Right Now

Honest Breakdown — Real Data,
Real Sources

✅ Working Right Now
  • Pulls live botnet command-and-control IP addresses from Feodo Tracker (abuse.ch) — updated every 30 minutes
  • Pulls live malware file hashes from MalwareBazaar (abuse.ch) — real malware samples submitted by researchers worldwide
  • Pulls live malware distribution URLs from URLhaus (abuse.ch) — real active malware hosting URLs
  • API endpoint to check any IP address against all three live feeds instantly
  • All data visible in real time on the operations dashboard
  • Returns malware family, country, status, and first-seen date for matched IPs
◦ Being Built — Not Yet Available
  • Network packet capture and deep inspection across your infrastructure
  • OT/ICS signal ingestion
  • Neural correlation engine across multiple data layers
  • Custom private threat feed ingestion
🌐
Feodo Tracker — Botnet IPs
Real botnet command-and-control server IPs tracked by abuse.ch researchers. Updated every 30 minutes. Includes malware family, country, and active/inactive status.
✓ Live Now
🦠
MalwareBazaar — File Hashes
SHA256 hashes of real malware samples submitted by security researchers worldwide. Tag data, file type, and first-seen date included.
✓ Live Now
🔗
URLhaus — Malware URLs
Real URLs actively distributing malware right now. Includes threat type, host domain, and date added by researchers.
✓ Live Now
🔍
IP Lookup API
Query any IP address against all three live feeds via REST API. Returns match status, feed data, and threat history from your own VPS logs.
✓ Live Now
📡
Network Layer Inspection
Deep packet inspection and flow analysis across your full network infrastructure — correlating signals from all layers.
◦ Coming Soon
⚙️
OT / ICS Integration
Signal ingestion from SCADA, PLCs, and industrial control systems for critical infrastructure protection.
◦ Coming Soon
Data Sources

Trusted by Security Researchers Worldwide

All three data sources are maintained by abuse.ch — a non-profit Swiss cybersecurity research organisation. The same feeds used by enterprise security teams globally.

🔬
Feodo Tracker
Tracks banking trojans and botnets. IPs confirmed as active C&C servers by researchers.
🦠
MalwareBazaar
Community malware repository. Thousands of samples submitted daily by security professionals.
🔗
URLhaus
Tracks malware distribution sites. URLs submitted and verified by researchers before listing.
🔄
30-Minute Updates
SENTINEL MESH fetches fresh data from all three sources every 30 minutes automatically.
Pricing

Access Real Threat Intelligence
at an Honest Price.

All prices AUD excl. GST. Based on what is working today.

Basic
Dashboard access only
A$29/mo
excl. GST · cancel anytime
  • Live dashboard access
  • All three threat feeds
  • IP lookup via dashboard
  • 30-minute feed updates
  • Email support
Enterprise
Private instance + custom feeds
A$199/mo
excl. GST · 12-month term
  • Everything in API Access
  • Dedicated instance
  • Custom feed sources
  • Higher rate limits
  • Onboarding support
  • All future features included