Frequently Asked Questions

HACKEDIP.COM FAQs 

Where does HackedIP's threat data come from?
We aggregate and validate public threat intelligence feeds, including Emerging Threats, Binary Defense, AlienVault, PSBL, FireHOL, blocklist.de, Feodo Tracker, IPsum, GreenSnow, ThreatView, Phishing.Database, and Spamhaus DROP.
Spamhaus DROP network data is provided by The Spamhaus Project under its DROP Fair Use Policy. Phishing indicators are provided by Phishing.Database. ThreatView indicators are provided through its Community feed.


How often is HackedIP's threat data updated?
Data feeds are updated daily.

What is a threat list?
A threat list records an IP address or network associated with a particular kind of risk, such as observed attacks, botnet command-and-control, spam, active phishing infrastructure, or a do-not-route network. A match is evidence to investigate; it does not by itself prove that the exact host or its current owner is compromised.

If my IP address appears on 0 threat lists, can I be sure my network/computer is not compromised?
No. It is possible for your computer/network to be compromised/hacked and not appear on a public threat list.

How does HackedIP work?
Hacked IP gathers public threat intelligence from a variety of sources. Downloads are validated and rebuilt daily. When you search for an IPv4 address, we report exact-address matches and any matching network ranges, together with the source-specific description.

How does HackedIP know my IP address?
Internet communications require IP addresses. When you visit a website, your IP address is presented to the website you visit so that your comptuer can establish a connection with the website and to exchange data. HackedIP reads your IP address and pre-populates the lookup field.

I have a threatfeed I’d like to give to HackedIP, how do I get this set up?
Great! Please email contact@hackedip.com and we'll set up an import!

Do you have an API?
Yes

CONTACT
contact@hackedip.com


© 2026 Hacked IP