x0rz/phishing_catcher
Phishing catcher using Certstream observed · 2026-08-28
Health v2 · maintenance only
32/100
- Activity 0
- Release rhythm 35
- Longevity 100
Flags: no_releases
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: n/a
- age_days: 3221
- days_rel: n/a
- days_push: 750
- n_releases_24m: 0
Adoption not part of the score
1819 stars · 359 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
A Python CLI tool that monitors TLS certificate issuances in near real time via the CertStream API and flags suspicious domains using a configurable keyword-scoring system. It serves as a proof-of-concept for detecting potential phishing domains as they are registered in the Certificate Transparency Log.
Use cases
- detect newly issued phishing domains in real time
- monitor certificate transparency logs for suspicious domains
- score domains for phishing likelihood based on keywords
- feed threat intelligence workflows with early phishing warnings
- run a dockerized phishing domain watcher
- customize keyword scoring rules for brand protection
When to choose
- you want near-real-time alerts on suspicious TLS certificate issuances
- you need a lightweight, scriptable phishing domain detector
- you want to customize scoring rules via simple YAML config
- you work in threat intelligence or OSINT and monitor domain abuse
When to avoid
- you need a full phishing detection platform with takedown and reporting features
- you require low false positives out of the box without tuning
- you need a GUI or managed service rather than a PoC script
- you want passive DNS or URL content analysis rather than certificate-based detection
Facets
cli-tool · maturity maintenance
osint security monitoring streaming security osint python cli cross-platform certstream certificate-transparency phishing-detection threatintel domain-monitoring threat-intelligence phishing docker
1 source
- readme: https://github.com/x0rz/phishing_catcher · fetched 2026-08-28 · 8ed543ea72af
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| x0rz/phishing_catcher | main | 32 |
For agents
markdown · JSON · MCP: product_card(name="x0rz/phishing_catcher")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem