Obstracts Logo

Turn any blog into structured threat intelligence

Search IoCs and TTPs across all the blogs you subscribe to.

Never miss an important intel update again

Obstracts collects complete histories of all major security blogs and keeps them updated in real time. Everything you need is consolidated into one place—easy to search, easy to monitor, impossible to miss.

Save Hours of Manual Extraction

Obstracts automatically pulls out every IoC and TTP, connecting them using the relationships described in the report. Everything is stored in clean STIX 2.1, ready to plug straight into your existing security stack.

High-fidelity ATT&CK insights, automatically

Obstracts goes beyond simple technique extraction. It builds complete Attack Flows that mirror the adversary’s behaviour, giving analysts immediate clarity on what happened and how to respond.

Start your investigation with answers, not noise

Search the entire intelligence graph — IoCs, TTPs, threat actors, malware families — and instantly surface every report that matters. No more manual cross-referencing or hunting through endless blogs.

Built for developers

Use the Obstracts REST API to create powerful integrations across your stack. Not a developer? The Obstracts TAXII 2.1 API works seamlessly with your favorite security tools -— no coding required.

See How it Works

The core Obstracts API is available on GitHub under an Apache 2.0 license. Run the code yourself and contribute to future improvements of Obstracts.

Run the code

Used by the world's leading security teams

Join 1000's of other security professionals who supercharge their research using Obstracts.