Inoitsu

logo

Inoitsu

Details

Author

Abdelkader Ben Ali

Version

1.0

License

MIT

Requires Registration

No

Requires Subscription

No

Free Subscription Available

Yes

DataType Supported

mail

Service Homepage

Inoitsu

Description

Query Inoitsu for a compromised email address.

Configuration

Name

Description

Additional details from the README file:

Inoitsu-analyzer

This analyzer helps you investigate suspicious emails received from known or unknown senders to ensure that their email addresses aren’t compromised.

No API key required.

If the email is compromised then it returns:

  • Total breaches

  • Most recent breach

  • Breached data

  • Critical data

  • Exposure rating: The comparative data exposure and risk rating assigned to this email address.

You need first to enable the analyzer.

enable analyzer

Navigate to Analyzers then run Inoitsu analyzer.

run analyzer

Test Inoitsu analyzer on a compromised email address.

report

Test Inoitsu analyzer on an uncompromised email address.

uncompromised

In the observables section add emails to test.

Then select the emails that you want to analyze, select Inoitsu and click on Run selected analyzers.

thehive iocs response

To view the report of the compromised email, click on Inoitsu:Compromised="True"

analyzer report

To view the report of the uncompromised email, click on Inoitsu:Compromised="False"

analyzer report 2