Feed Status

External threat intelligence sources that Picket polls for IOCs.

Last updated just now

Abuse.ch ThreatFox

Active·16,993 IOCs

Community-driven IOC sharing platform. Collects malware-related IOCs including IPs, domains, URLs, and file hashes.

IOC types:IPv4DomainURLMD5SHA256

Abuse.ch Feodo Tracker

Active·5 IOCs

Tracks botnet C2 infrastructure. Focuses on Dridex, Emotet, TrickBot, QakBot, and BazarLoader.

IOC types:IPv4

AlienVault OTX

Active·11,672 IOCs

Open threat intelligence community. Aggregates pulses from security researchers worldwide.

IOC types:IPv4IPv6CIDRDomainURLMD5SHA1SHA256

Mallory

Active·18,989 IOCs

AI-native threat intelligence platform. Aggregates observables from thousands of sources with verdict scoring and contextual enrichment.

IOC types:IPv4IPv6DomainURLMD5SHA1SHA256

IOC Routing

Picket routes IOCs to different AWS security services based on type.

IOC TypeGuardDutyWAFNetwork FirewallSecurity Hub
IPv4 / CIDRThreat listIP setPlanned
IPv6 / CIDRThreat listIP setPlanned
DomainThreat listPlanned
URLPlannedPlanned
MD5 / SHA1 / SHA256Planned