URLhaus connector for Okou
Connect URLhaus to look up malicious URLs, hosts, payload hashes, tags, and malware signatures, retrieve recent indicators, and download collected malware samples.
Data & infrastructure · Auth-Key
Use URLhaus in Okou
Use the official URLhaus API to look up malicious URLs, URL IDs, hosts, domains, IP addresses, MD5 or SHA256 payload hashes, malware tags, and malware signatures, retrieve recent malicious URLs or payloads, or download collected malware samples.
Once connected, supported URLhaus actions can become steps in a reusable workflow alongside the other services your team uses. Run the workflow once, on a schedule, or when an event starts it.
What you can do with URLhaus
- Retrieve recent malware URLs and look up one URL or URL ID in the URLhaus database.
- Retrieve recent payloads and look up one payload by MD5 or SHA256 hash.
- Look up a host (domain, hostname, or IPv4 address) for associated malware URLs.
- Look up a malware tag and the URLs associated with that tag.
- Look up a malware signature (family) and the URLs and payloads associated with it.
- Download a collected malware sample (ZIP) by its SHA256 hash. The archive contains live malware and must only be handled in an isolated environment.
How the URLhaus connector works
A connected service becomes one permissioned step in the work you hand off.
- 1
Connect URLhaus
Choose Auth-Key.
- 2
Choose the work
Use only the supported actions your workflow needs.
- 3
Run it your way
Start it once, schedule it, or attach an event trigger.
Connect URLhaus securely
Use the connection method that fits your account and grant only the access the workflow needs.
- Auth-Key
Connector access is controlled per service and per action, so a workflow does not need broader access than the work you ask it to do.
URLhaus connector questions
- What can Okou do with URLhaus?
- Connect URLhaus to look up malicious URLs, hosts, payload hashes, tags, and malware signatures, retrieve recent indicators, and download collected malware samples. Documented actions include: Retrieve recent malware URLs and look up one URL or URL ID in the URLhaus database. Retrieve recent payloads and look up one payload by MD5 or SHA256 hash.
- How do I connect URLhaus to Okou?
- Connect URLhaus using Auth-Key. The connection controls which supported actions a workflow can use.
- Can URLhaus run in an automated workflow?
- Yes. After it is connected, supported URLhaus actions can run in reusable Okou workflows on demand, on a schedule, or from an event trigger.
More data & infrastructure connectors
Explore other connectors in the same product category.
urlscan.io
Connect urlscan.io to submit URLs for scanning, retrieve scan results, search historical scans, and inspect DOM, screenshot, and response artifacts.
Urlbox
Connect Urlbox to capture websites, render HTML, and generate screenshots, PDFs, videos, and Markdown extracts.
urlscan.io
Connect urlscan.io to submit URLs for scanning, retrieve scan results, search historical scans, and inspect DOM, screenshot, and response artifacts.

