All Posts
ThreatStream
1
min read

Shadowserver Intelligence Reports Are Now Available For Free in ThreatStream

Published on
February 24, 2025
Table of Contents

Daily intelligence reports from Shadowserver are now available as a free threat intelligence feed in the Anomali Preferred Partner store – enabling customers to create free daily potential attack surface reports and identify potential malware and other malicious activities relevant to their network or constituency.

About Shadowserver Network Reporting

The Shadowserver Foundation is a nonprofit security organization dedicated to bringing malicious activities and abusable vulnerabilities to light, expediting their remediation, and helping to better secure the Internet. The organization sends custom remediation reports to more than 9,000 vetted subscribers, including national governments, network providers, enterprises, financial and academic institutions, law enforcement agencies, and more.

Shadowserver’s Network Reports are detailed, targeted, relevant, free, and actionable. The report data is sourced from daily Internet-wide scans, honeypot sensors, sinkholes, sandboxes, blocklists, and many other sources.

Activating Shadowserver Reports in ThreatStream

Activating Shadowserver reporting in ThreatStream is free and easy. ThreatStream users can simply:

  1. Sign up for Shadowserver reporting here
  2. Obtain your Secret Key and API Token
  3. Active the Shadowserver APP Store Tile within Threatstream and submit your credentials to start receiving alerts

Shadowserver delivers new reports every day, which ThreatStream correlates with other intelligence sources, deduplicates, and contextualizes.

You can visit the Shadowserver website to learn more about their network reporting, or schedule a demo with Anomali to see how ThreatStream provides curated access to the industry's largest global repository of threat intelligence – which now includes Shadowserver reporting.

‍

FEATURED RESOURCES

September 29, 2026
Anomali Cyber Watch

Anomali Cyber Watch: Windows, Salesforce & Citrix Threats

Latest cyber threats: Windows Defender & CLOSEDQUORUM implants, Salesforce SalesBleed data leaks, Oracle WAF bypasses, Citrix zero-days, and more.
Read More
September 28, 2026
AI
Operationalized Threat Intelligence

From Feeds to Agents: What the AI Shift Asks of Your Data Foundation

New Gartner® research examines AI in cyberthreat intelligence operations. Our view on why the data foundation decides what your agents can safely do.
Read More
September 30, 2026
Operationalized Threat Intelligence

Malware Gets a Brain: How AI Decision-Making Is Replacing Hard-Coded C2 Logic

Read More
Explore All