Logo

The LIA Threat Feed provides a continuously updated stream of critical threat intelligence, including indicators of compromise (IOCs) linked to malicious activities observed in the last 24 hours. Unlike traditional feeds that rely on sandbox detonations or honeypots, our IOCs are the result of proactive intelligence operations. By directly engaging with malware botnets and tracking their activities in real-time, we ensure highly accurate and actionable data.

A subscription not only grants access to real-time IOCs but also allows full search capabilities across our entire historical dataset with unlimited lookback through our web interface and REST API. This enables security teams to perform deep-dive investigations and track long-term threat trends to stay ahead.

For more information, subscribe or create your own plan, contact us at [email protected].


Verified Researcher
  • 30 day lookback window
  • 250 API requests
  • 25 sample downloads
Free
Intelligence Analyst
  • Unlimited lookback window
  • 2,000 API requests
  • 500 sample downloads
  • Active C2 Servers
Contact us
SOC / Business
  • Unlimited lookback window
  • IOC Feed
    • SHA256
    • URL
    • Hosts (IP & domain)
    • Active C2 servers
  • Custom API request rate
  • Custom sample download rate
Contact us
File Feed

The real-time rolling feed provides a continuous stream of all downloaded payloads, each tagged with source family, botnet, payload URL, and any associated detections.

Contact us
Custom Requests

Looking for custom integration for your TIP? Or perhaps a custom feed? Let us know and we will look into the possibilities, we are nothing but flexible and always up for a challenge!

Contact us