Official website

https://community.riskiq.com/

Rule

analyzer: passivetotal
query: ...
username: ...
api_key: ...
Name Type Required? Default Desc.
query String Yes Domain, IP address, mail address or SHA1 certificate fingerprint
username String No ENV[”PASSIVETOTAL_USERNAME"] Username
api_key String No ENV[”PASSIVETOTAL_API_KEY"] API key

How it works

The analyzer uses PassvieTotal API.

An API endpoint to use is changed based on a type of a query.

Query types

Configuration

Mihari loads your PassiveTotal username and API key via environment variables PASSIVETOTAL_USERNAME and PASSIVETOTAL_API_KEY by default.