Explore OpenCTI or OpenAEV platform with 30 days Free Trial!
XTM Hub by Filigran
Sign Up

Emerging Threats Blockrules Compromised IPs

Infrastructure & Attack Surface Visibility
Detection & Response Enablement

Overview

This text feed and mapper ingests recently reported compromised IPs from https://rules.emergingthreats.net/blockrules/compromised-ips.txt

This CSV feed ingester is designed to automatically fetch and process lists of compromised IP addresses from Emerging Threats. The feed contains IP addresses that have been identified as compromised or involved in malicious activities, updated regularly by the Emerging Threats team. By ingesting this data into OpenCTI, security teams can enhance their threat intelligence capabilities with up-to-date information on potentially dangerous network infrastructure. This allows for improved detection and blocking of connections to or from these compromised systems, significantly strengthening an organization's security posture and reducing the risk of network intrusions.

Basic information

Filigran
Damian Skeeles
CSV Feeds
Threat Intelligence Feed
Free
August 18, 2026
200+
100+

    We use cookies to run XTM Hub. Necessary cookies are always on, optional cookies (functionality, analytics, marketing) are used with your consent. Accept all, reject all, or manage your choices anytime in "Cookie settings".