Industry Leading
Threat Research
Bambenek Labs
Bambenek Labs provides reliable, relevant intelligence feeds that keep you current on attacker infrastructure.
Client Centric Approach
At Bambenek Labs we use a client centric approach to provide intelligence products that are timely, actionable, and reliable. We have not had a high-confidence false positive in several years.
Transparency
At Bambenek Labs we believe in transparency. We provide data to academic researchers and industry partners to study attacker strategies and enhance the cybersecurity data science field.
Collaboration
At Bambenek Labs we work with our partners to improve their security products. We assist researchers and law enforcement not only to track malicious actors, but to help bring them to justice.
Our Success in Numbers
False Positives
Satisfaction Rate
Satisfied Users
Years of Experience
Where can
We Help You?

Data You Can Trust
Since their public release in 2013, over 2,000 organizations spanning 140+ countries have come to rely on these feeds in their security protocols and products. Both feeds are integrated with most threat intelligence platforms.

DGA Feed
This self-curating feed monitors malicious networks to observe current criminal activity. All domains are actionable. Live data of between 750 and 1,500 domains. which are used by 57 malware families and over 800,000 domains. Limited to current relevance. High-confidence data, extremely low false-positives.

Sinkhole IP Feed
This is a manually-curated list of over 1,350 known sinkholes. The feed is used to capture traffic headed toward criminal destinations. Catch traffic headed toward them, and you know you have an infected machine.
The best solutions for developing your business
Join the 700+ users
Since their public release in 2013, users spanning 140+ countries have come to rely on these feeds in their security protocols and products. You can be the part of the growing number of users. Join organizations worldwide who rely on Bambenek Labs intelligence feeds.
