Skip to main content
Infrawatch Reports brings published threat and security research into the same investigation workflow as hosts, services, and DNS. Search the reporting collection directly or pivot to it from an IP address.

What Reports gives you

  • Published reporting - Description, source, publication date, update date, and validated report URL.
  • Indicator pivots - Find reports associated with an IP and retrieve the indicators extracted from a report.
  • Source and date filters - Narrow reporting by publisher or time window.
  • Search integration - Use the OSINT search dataset when the report itself is the result you need.

Start an investigation

The OSINT search returns reports associated with the address. The Reports API also supports report discovery, facets, and extracted indicators.

Investigate an IP

Move from host and DNS evidence to related reporting.

Browse report fields

Inspect the public OSINT search shape.