FS TI — a software product that contains a list of IP addresses for monitoring incoming or outgoing traffic on the network

It consists of separate streams of IP data:

  • Anonymous IP addresses (data collected from VPNs, Proxy servers and TORs)
  • Data from frequently used hosting ASNs

FS TI is used to detect and prevent intrusions. The product allows you to identify anomalies in network traffic and application traffic. It can be used as a stand-alone solution or be integrated into SIEM / SOAR and other integrated information security solutions


In an attempt to circumvent network traffic monitoring systems, cybercriminals often hide their IP addresses when committing fraudulent and hacking activities, using virtual private networks (VPNs) and Internet proxies. Attackers use both public VPN and proxy services, and restricted services in the so-called DarkNet. Traffic analysis of TOR and other services will help identify criminals

FS TI contains information about VPN, proxy services, shock-resistant hosting, IP-addresses that are used for:

  • anonymization in fraudulent financial transactions with accounts
  • APT attacks on corporate networks
  • fraudulent login attempts on compromised accounts
  • other cyberattacks that bypass the intrusion detection system

The implementation of FS TI in SIEM / Firewall enables corporate networks to monitor traffic and decide whether to block or mark incoming and outgoing connections to IP addresses. This makes it possible to avoid and assess the risk of transactions made by customers who connect from these IP addresses




More than 30 million IP addresses are monitored, daily issuance of more than 300,000 active IPs with a high probability of attacks. Information is updated daily, while in the cyber community it appears in 2-6 weeks



An additional proactive tool for in-depth traffic analysis, data based decision making and incident prevention



FS TI data is available via feed in TXT, STIX, JSON formats, which can be downloaded via the API. Assistance in integration into SIEM, SOAR, Firewall systems, as well as other security systems

