INNER CODE UNIT · Python

execute_after_reverse_dns

stanfrbd/cyberbro · engines/abuseipdb.py:23

    def execute_after_reverse_dns(self):
        # AbuseIPDB only supports IPs, so we want it to run AFTER any potential DNS resolution
        return True

    def analyze(self, observable: Observable) -> dict | None:
        api_key: str = self.secrets.abuseipdb

        if not api_key:
            logger.warning("AbuseIPDB API key not set")
            return None

        url = "https://api.abuseipdb.com/api/v2/check"
        headers = {"Key": api_key, "Accept": "application/json"}
        params = {"ipAddress": observable.value}

        try:
            response = requests.get(
                url,

View source record →

📰 Research Paper
Loading…
⏳ Fetching content…