PhishScout is a real-time cyber threat intelligence platform dedicated to tracking, analysing, and exposing phishing attacks โ and making that intelligence freely accessible to security professionals, businesses, and the public.
Phishing is the most prevalent cyber threat on the internet โ responsible for over 90% of data breaches, billions in financial losses, and countless compromised identities every year. Yet the intelligence needed to defend against it has historically been locked behind expensive enterprise contracts or fragmented across dozens of sources.
PhishScout was built to change that. We believe threat intelligence should be open, accessible, and community-powered. Whether you're a SOC analyst at a FTSE 100 company, an IT manager at an SME, or a member of the public trying to understand if that suspicious text is real โ PhishScout is built for you.
We aggregate live feeds from the world's leading open-source threat intelligence providers, enrich them with community-submitted reports, and publish the results as actionable advisories, IOC databases, and expert research โ free to access, always.
Everything we do falls under one of three capabilities โ intelligence, research, and community.
We aggregate real-time data from AlienVault OTX, OpenPhish, PhishTank, CVE databases, and community submissions โ processing thousands of indicators daily and surfacing the most relevant threats for defenders.
Our analyst team and community contributors publish in-depth threat research, tactical breakdowns of active campaigns, and actionable advisories with MITRE ATT&CK mappings โ giving defenders the context they need to act.
PhishScout is powered by its community. Anyone can submit a phishing report, contribute an article, or subscribe to our weekly intelligence briefing. Every submission makes the platform โ and the internet โ safer.
We publish timely advisories on active phishing campaigns โ covering lure techniques, targeted sectors, infrastructure, and detection rules. Each advisory is verified by our team before publication.
Beyond intelligence, we publish practical how-to guides โ from setting up DMARC and analysing email headers to defending against AiTM attacks โ making security knowledge accessible to teams of all sizes.
Every Monday, PhishScout subscribers receive a curated digest of the week's most significant phishing campaigns, new IOCs, published advisories, and research โ delivered directly to their inbox.
PhishScout is built on a set of principles that guide every decision we make โ from what we publish to how we operate.
Threat intelligence is most effective when it's shared. We make our feeds, IOCs, and research freely accessible โ no paywall, no enterprise contract required.
Every advisory we publish is verified before it goes live. We'd rather be second and right than first and wrong โ the security community depends on data it can trust.
The best threat intelligence comes from the people encountering threats in the real world. We build tools and processes that make it easy to contribute what you know.
Everything we publish is framed around what defenders need to know and do โ not just what attackers are doing. Actionable intelligence, not just awareness.
We follow responsible disclosure practices for all vulnerabilities and campaigns we discover. We notify affected parties before public publication where appropriate.
PhishScout editorial content is never influenced by commercial relationships. Our advisories and research reflect only our analysis โ not the interests of advertisers.
PhishScout aggregates data from the world's leading open-source threat intelligence providers, enriched with community-submitted reports and analyst verification.
We believe the security community deserves to know exactly how PhishScout works, what we do with submitted data, and what we will never do.
Whether you want to submit a phishing report, contribute research, subscribe to the weekly briefing, or simply stay informed โ there's a place for you in the PhishScout community.