URLhaus API

Anti-Malware · Development Tools · Security

ch that provides access to a community-curated database of malicious URLs used for distributing malware, phishing, and exploit kits. The URLhaus API allows developers and security researchers to query URLs, payloads, and tags — checking whether a URL is flagged as malicious before allowing users to visit or download from it.

free

None (public API) / Auth-Key for submission endpoints

Reasonable use expected; no strict published rate limit for the free public API.

✗ Not Available

Best For

Security tools and threat intelligence platforms checking URLs against known malware sources

Pricing

Abuse.ch is a well-established non-profit threat intelligence provider; URLhaus is one of several free feeds they publish.

Key Highlights

  • Free, community-curated threat data
  • No authentication for lookups
  • Run by Abuse.ch (Swiss non-profit)
  • Covers malware, phishing, and exploit kit URLs

Required Access Documents

  • NoneOptional
    No signup required for read access; an Auth-Key is needed only to submit new malicious URLs.

Use Cases

  • URL Reputation Checking:Check whether a user-submitted or crawled URL is known-malicious before allowing it.
  • Threat Research:Pull recent malicious URL feeds for security research or blocklists.

Discover similar API's

View All Alternatives →