Loader Insight Agency

The LIA Threat Feed provides a continuously updated stream of critical threat intelligence, including indicators of compromise (IOCs) linked to malicious activities observed. Unlike traditional feeds that rely on sandbox detonations or honeypots, our IOCs are the result of proactive intelligence operations.

By directly engaging with malware botnets and tracking their activities in real-time, we ensure highly accurate and actionable data.

A subscription not only grants access to real-time IOCs but also allows full search capabilities across our entire historical dataset with unlimited lookback through our web interface and REST API. This enables security teams to perform deep-dive investigations and track long-term threat trends to stay ahead.

For more information, subscribe or create your own plan, contact us at [email protected] .

Verified Researcher

  • 30 day lookback window
  • 250 API requests
  • 25 sample downloads
Free

Intelligence Analyst

  • Unlimited lookback window
  • 2,000 API requests
  • 500 sample downloads
  • Active C2 Servers

SOC / Business

  • Unlimited lookback window
  • IOC Feed
    • • SHA256
    • • URL
    • • Hosts (IP & domain)
    • • Active C2 servers
  • Custom API request rate
  • Custom sample download rate

File Feed

The real-time rolling feed provides a continuous stream of all downloaded payloads, each tagged with source family, botnet, payload URL, and any associated detections.

Do you have an OpenCTI instance? Use our custom connector to ingest the File Feed.