When hosts on your network are accessing newly-registered domains, there’s a good chance bad things are heading your way. So, you’ll want to know as soon as possible if this is happening.
New from Stamus Labs - a collection of newly-registered domains that could be used for phishing or to host and control malware.
Every day, the Stamus Labs team collects all newly-registered domains and identifies those which appear to be algorithmically-generated (high-entropy) and those which use typosquatting and homoglyph techniques to mimic popular legitimate domains (phishing).
We package these into six feeds optimized for SELKS and Suricata 7 users and make them available for FREE.
Want to learn more? Our team has created several additional resources on this topic:
These lists contain all domains registered in the last 14 or 30 days (2 separate lists).
These lists contain the high-entropy domains registered in the last 14 or 30 days (2 separate lists).
These lists contain the suspected phishing domains registered in the last 14 or 30 days (2 separate lists).
To access README documentation, issues tracker and the threat intelligence wiki, please visit our GitHub page here >>
To ask questions, answer questions, or simply listen in, join our Discord community here >>
Below are a few of the many open-source tools developed and maintained by Stamus Labs.
ABOUT STAMUS NETWORKS ™
Stamus Networks believes in a world where defenders are heroes, and a future where those they protect remain safe. As organizations face threats from well-funded adversaries, we relentlessly pursue solutions that make the defender’s job easier and more impactful. The global leader in Suricata-based network security solutions, Stamus Networks helps enterprise security teams know more, respond sooner and mitigate their risk with insights gathered from cloud and on-premise network activity. Our Stamus Security Platform combines the best of intrusion detection (IDS), network security monitoring (NSM), and network detection and response (NDR) systems into a single solution that exposes serious and imminent threats to critical assets and empowers rapid response.
© 2014-2024 Stamus Networks, Inc. All rights Reserved.