Threat Intelligence
A bad-actor registry that grows itself.
Omega Threat ID is a community IP-reputation list built from many independent eyes, OSINT, dark-web signals, and member sensors, fused with cross-source corroboration. Join free for the feed, or run a sensor for a dollar and make the whole network, and your own protection, sharper.
More sensors → better list → better protection
Every sensor reports what it sees. Threat ID fuses those observations with OSINT and dark-web signals, and a bad actor confirmed by more than one independent source is scored higher. That sharper list flows straight into the products that check IPs, Omega Guard, FraudTrax, Hatchet Trace, and SVT, plus the ODIN engine, so each new sensor protects every member.
Sensors & sources
Member sensors, our own honeypots, HT OSINT sweeps, and Tor collection surface hostile IPs in the wild.
Fuse & score
Observations are de-duplicated and cross-checked. A distinct corroborating source raises confidence; known-good hosts are never falsely escalated.
Feed & verdicts
The scored registry powers the member feed and enriches every Omega Guard, FraudTrax, and Hatchet Trace verdict, catching threats a single source would miss.
From noise to a verified, reportable threat
The registry turns scattered signals into intelligence you can act on, and hand to the right authorities.
Surface
Hostile IPs and infrastructure from many independent eyes: sensors, OSINT, and dark-web collection.
Corroborate
Cross-source confirmation: acted on when more than one independent source agrees, not a single unproven hit.
Warn
The flywheel flags emerging threats before any one feed would, feeding Omega Guard, FraudTrax, Hatchet Trace and SVT in real time.
Report
Attributable, timestamped intelligence, ready to support an abuse, IC3, CISA, or law-enforcement report so verified threats reach the right desk faster.
IP reputation is corroborating evidence, not proof; findings support human review and lawful escalation.
Free to join. A dollar to contribute.
Community membership is free and gets you the feed. Sensors are a $1 one-time provision each, and they earn their keep by making your own verdicts and the shared list better.
Free
Sign up and pull the community feed, an aged, corroborated subset of the registry, as a blocklist for your own tooling. Request sensors any time.
$1 / sensor
Provision a lightweight sensor tied to your account. It reports telemetry back into Threat ID, boosting your own Omega Guard / FraudTrax enrichment and the shared registry. Revocable any time.
Thin sensor, fat server
A sensor runs on your machine, so we assume it can be opened up and inspected, and we designed it to hold nothing worth stealing. All correlation, scoring, and list logic stays server-side on sovereign infrastructure. Each sensor carries only a unique, rotating, revocable credential and can do exactly one thing: submit observations to a hardened, rate-limited, anomaly-checked endpoint. It cannot read the feed, reach other sensors, or breach anything, even fully cracked open.
A line of purpose-built sensors
Omega Threat ID ships not one sensor but a line of them, each a thin agent hardened for one job and named for an American patriot or warrior. Same safe design, same server-side brain, purpose-built fronts. Pick the sensor that matches the surface you need to defend; the flagship is Swamp Fox (Brig. Gen. Francis Marion, namesake of Marion County, IL).
Network-device
Reports hostile IPs from a watched host or device. A thin agent tails one log with a chosen profile. Deployable today.
Web-cloud
Reports attacker IPs from web, edge, and WAF logs. Self-host is live; a Cloudflare pull is wired in.
Brand-domain
Reports hostile domains, typosquats, phishing, and dark-web infrastructure via Hatchet Trace. ht-tor already feeds the registry.
Identity-social
Reports hostile accounts and impersonators, powered by Omega Lens and FraudTrax. Lands with the multi-entity registry.
One thin agent, many jobs
A single hardened agent runs every network-device sensor. A profile selects the log source and detection pattern, so the same code guards very different surfaces. Every sighting is tagged with its callsign, unit, and host for provenance.
SSH watch
Brute-force and invalid-user attempts against a decoy or a real production host. ssh-bruteforce
Web probes
Traversal, SQLi, .env/.git grabs, and CMS scanners in web access logs. web-probe
Port scans
Port scanners and DROP/REJECT hits from ufw / iptables kernel logs. port-scan
Mail gate
SMTP / IMAP authentication abuse against postfix and dovecot. smtp-abuse
Gateway
Home-LAN / OpenWrt router and gateway probes. router-scan
Device
IoT and device brute-force, telnet/http, Mirai-style. iot-bruteforce
Two named series
Every sensor carries a callsign. Series I honors legendary American commanders by their battlefield nicknames. Series II is named in tribute to Medal of Honor recipients of Iraq and Afghanistan.
Warriors
Legendary American commanders, by the nicknames their troops gave them.
- Swamp FoxFlagship
- Stonewall
- Old Blood and Guts
- Old Hickory
- Bull
- Stormin' Norman
- Chesty
- Black Jack
- Howlin' Mad
- Mad Anthony
- Light-Horse Harry
- Vinegar Joe
Medal of Honor, Iraq & Afghanistan
Named in tribute to Medal of Honor recipients of the Global War on Terror. A sensor named for a recipient stands watch and defends.
- Monsoor
- Smith
- Bellavia
- Payne
- Giunta
- Meyer
- Romesha
- Carter
- Carpenter
- Petry
- Byers
- Chapman
(P) denotes a posthumous award. These names are used with respect, to honor the recipients' valor. A sensor bearing a recipient's callsign stands a quiet watch in their memory.
Report a threat or fraud
Seen a malicious IP, a scam or impostor account, or a fraudulent identity? Anyone can report it. Tips go to an analyst for review; verified indicators may be added to the registry after corroboration.
Reports are confidential and are not published. Submit only lawfully obtained information. Tips are corroborating leads, not proof.
Join the network.
Community membership and the feed are free. Request a sensor for a dollar and sharpen protection for everyone, including you. Launching now, request early access below.
Join Omega Threat ID Free →
Omega Threat ID ·
Home ·
Support & how-to ·
Terms ·
Privacy ·
Disclaimer ·
Acceptable Use ·
Security
Threat data is corroborating evidence, not proof. © 2026 Omega Point Solutions LLC · Salem, Illinois · USA