ThreatFox connector for Okou
Connect ThreatFox to search and retrieve indicators of compromise, malware families, and threat intelligence from the abuse.ch community platform.
Data & infrastructure · Auth Key
Use ThreatFox in Okou
ThreatFox API for querying and searching indicators of compromise (IOCs), malware families, tags, and threat types from the abuse.ch community platform.
Once connected, supported ThreatFox actions can become steps in a reusable workflow alongside the other services your team uses. Run the workflow once, on a schedule, or when an event starts it.
What you can do with ThreatFox
- Request shape
- Read-only queries
- Query recent IOCs
- Query an IOC by ID
- Search an IOC
- Search IOCs by file hash
- Query a tag
- Query a malware family
How the ThreatFox connector works
A connected service becomes one permissioned step in the work you hand off.
- 1
Connect ThreatFox
Choose Auth Key.
- 2
Choose the work
Use only the supported actions your workflow needs.
- 3
Run it your way
Start it once, schedule it, or attach an event trigger.
Connect ThreatFox securely
Use the connection method that fits your account and grant only the access the workflow needs.
- Auth Key
Connector access is controlled per service and per action, so a workflow does not need broader access than the work you ask it to do.
ThreatFox connector questions
- What can Okou do with ThreatFox?
- Connect ThreatFox to search and retrieve indicators of compromise, malware families, and threat intelligence from the abuse.ch community platform. Documented actions include: Request shape. Read-only queries.
- How do I connect ThreatFox to Okou?
- Connect ThreatFox using Auth Key. The connection controls which supported actions a workflow can use.
- Can ThreatFox run in an automated workflow?
- Yes. After it is connected, supported ThreatFox actions can run in reusable Okou workflows on demand, on a schedule, or from an event trigger.
More data & infrastructure connectors
Explore other connectors in the same product category.
Thunder Compute
Connect Thunder Compute to inspect GPU cloud availability, instances, SSH keys, snapshots, pricing, and compute templates through the official API.
ThoughtSpot
Connect ThoughtSpot to inspect analytics metadata, query data, retrieve session context, and export Liveboards or Answers.
Ticketmaster
Connect Ticketmaster to search events, attractions, venues, and classifications with the Discovery API.

