Security Tools
Advanced cybersecurity and threat intelligence tools
Comprehensive security and DNS analysis tools for domains, IPs, and network infrastructure. Every tool runs live against real data sources — RDAP, authoritative DNS, and live TLS handshakes — for threat hunting, incident response, and email deliverability checks.
Domain Security
Domain Age Calculator
AvailableCalculate exact domain age and flag newly registered domains (< 30 days)
Typosquatting Detection
AvailableGenerate and check variations of popular domains (character substitution, insertion, omission)
Homograph Attack Detection
AvailableIdentify domains using similar-looking Unicode characters
Domain Reputation Scoring
AvailableAggregate score based on age, registrar, hosting provider, and historical data
Suspicious TLD Flagging
AvailableFlag domains using commonly abused TLDs (.tk, .ml, .ga, etc.)
Fast Flux Detection
AvailableMonitor rapid IP address changes indicating malicious infrastructure
Domain Parking Analysis
AvailableDetect parked domains that could be weaponized
Threat Intelligence
Malware C2 Detection
AvailableCheck against known Command & Control infrastructure databases
Phishing Database Lookup
AvailableCross-reference with PhishTank, OpenPhish, and other feeds
Certificate & SSL
SSL Configuration Assessment
AvailableAnalyze cipher suites, protocol versions, and security issues
Email Security
Advanced SPF Analysis
AvailableParse SPF records and identify misconfigurations
DMARC Policy Assessment
AvailableAnalyze DMARC policies and provide security recommendations
DKIM Record Lookup
AvailableLook up and inspect DKIM public-key records for a selector
DNS & Email Diagnostics
DNS Records Lookup
AvailableView all DNS records (A, AAAA, MX, NS, TXT, CNAME, SOA) for a domain
MX Lookup
AvailableInspect mail exchangers, their priorities, resolution, and email readiness
Reverse DNS (PTR)
AvailableResolve an IPv4 address to its PTR hostname(s)
How these tools work
Each tool queries live, open data sources server-side — no fabricated results. Where a capability genuinely needs a commercial feed or API key (e.g. Google Safe Browsing, PhishTank, ThreatFox), the tool says so instead of guessing. Results reflect the state at query time.
Want to contribute?
Help us build these security tools faster by contributing to the open source project.
View on GitHub