IOChaser

Extract, normalize, and analyze IOCs from the current webpage

As of June 2026, IOChaser has 20 users and a 5.00/5 rating from 2 reviews in the Productivity category.

Usersup 5.3 percent+5.3%
20
20
Ratingno change0%
5.00
2 reviews
Reviewsno change0%
2
Version
1.4.0
Manifest V3
90-day change · In the last 90 days this extension 1 version update, changed permissions.

History

8 snapshots

Tracking since Apr 1, 2026.

21.162018.84Apr 1, 2026Jun 11, 2026
View as table
DateUsersRatingReviewsVersion
Apr 1, 2026195.0021.3.2
Apr 17, 2026205.0021.3.2
May 3, 2026195.0021.3.2
May 11, 2026205.0021.3.2
May 16, 2026195.0021.4.0
May 22, 2026205.0021.4.0
May 29, 2026195.0021.4.0
Jun 5, 2026215.0021.4.0
Now205.0021.4.0

Changelog

  • May 11, 2026
    description
    IOChaser is a lightweight Chrome extension designed for SOC analysts, threat hunters, and cybersecurity professionals to quickly extract and analyze Indicators of Compromise (IOCs) from any webpage.
    
    With one click, IOChaser automatically detects:
    
    • IP addresses
    
    • Domains
    
    • Email addresses
    
    • File hashes (MD5, SHA1, SHA256)
    
    and allows you to analyze them using trusted threat intelligence platforms.
    
    -------------------------------------------------------------------------------------------------------------------------------------------------
    
    Key Features:
    
    🔍 Automatic IOC Extraction from the current webpage
    
    🧠 Threat Analysis Integration using API calls:
    
    • VirusTotal (IPs, domains, hashes)
    
    • AbuseIPDB (IP reputation & reports)
    
    • Have I Been Pwned (email breach checks)
    
    🎯 Smart and instant reputation scan:
    
    Detects malicious, suspicious, or clean indicators without leaving your current page.
    
    🌐 Supports opening indicators in multiple external threat intelligence and investigation platforms.
    
    📋 One-click Copy of any IOC
    
    ⚙️ Customizable Tool Selection per IOC type
    
    🔐 Local API Key Storage: keys never leave your browser
    
    -------------------------------------------------------------------------------------------------------------------------------------------------
    
    Who Is This For?
    
    • SOC Analysts
    
    • Incident Responders
    
    • Threat Hunters
    
    • DFIR professionals
    
    • Security researchers
    Stop copying IOCs manually.
    
    IOChaser is a browser extension built for SOC analysts, threat hunters, and security professionals to extract, analyze, and investigate Indicators of Compromise (IOCs) directly from any webpage — without breaking your workflow.
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    ❌ The Problem ❌
    
    Analysts constantly deal with IOCs in threat reports, phishing pages, alerts, and blog posts.
    
    Typical workflow:
    
    1. Copy an IOC
    2. Refang it manually
    3. Open multiple tabs (VirusTotal, AbuseIPDB, etc.)
    4. Repeat for every indicator
    
    This process is SLOW, repetitive, and error-prone.
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    ✅ The Solution ✅
    
    IOChaser eliminates manual work by turning any webpage into an investigation-ready view.
    
    With one click, it extracts all visible IOCs, organizes them, and lets you investigate them instantly.
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    What IOChaser Detects 
    
    • IP addresses
    • Domains
    • URLs (including defanged formats)
    • Email addresses
    • File hashes (MD5, SHA1, SHA256)
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    Real Analyst Workflow
    
    IOChaser is designed around how analysts actually work:
    
    1. Extract all IOCs from the current page
    2. Review grouped results by type
    3. Filter and focus on relevant indicators
    4. Run quick reputation checks
    5. Select the indicators that matter
    6. Generate a structured enrichment summary
    7. Pivot to external tools when deeper analysis is required
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    Key Features:
    
    🔍 Automatic IOC Extraction
    Detect and group IOCs instantly from any webpage, including defanged indicators.
    
    ⚡ Quick Scan & Instant Verdicts
    Get immediate insights such as malicious, suspicious, or clean indicators directly in the extension.
    
    🧠 Enrichment Summary
    View structured threat intelligence in one place, including:
    
    • VirusTotal verdicts
    • AbuseIPDB reputation and reports
    • ASN, country, and contextual data
    
    🎯 Analyst-Focused Workflow
    Select, filter, and investigate IOCs efficiently without leaving your browser.
    
    🌐 Threat Intelligence Integrations
    Quickly pivot into:
    
    • VirusTotal
    • AbuseIPDB
    • Shodan
    • Censys
    • GreyNoise
    • and other investigation platforms
    
    📋 One-Click Copy & Export
    Copy selected IOCs safely in a consistent format for reporting or response.
    
    ⚙️ Customizable Tool Selection
    Choose which tools are used per IOC type based on your workflow.
    
    🔐 Privacy First
    API keys are stored locally in your browser. No data is sent externally unless you explicitly trigger a lookup.
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    Use Cases
    
    IOChaser is ideal for:
    
    • SOC analysts performing alert triage
    • Threat hunters investigating suspicious activity
    • Incident responders analyzing compromised indicators
    • DFIR practitioners reviewing evidence
    • Security researchers analyzing threat reports
    
    ────────────────────────────────────────────────────────────────────────────────────
    
    Why IOChaser?
    
    Unlike generic IOC extractors, IOChaser is designed for real-world investigations.
    
    It focuses on:
    
    • speed
    • accuracy
    • workflow efficiency
    • actionable intelligence
    
    so you can move faster from detection to investigation.
  • May 11, 2026
    short_description
    Extract IOCs from the current webpage and help analysts investigate them
    Extract, normalize, and analyze IOCs from the current webpage
  • May 11, 2026
    host_permissions
    https://www.virustotal.com/*, https://api.abuseipdb.com/*, https://haveibeenpwned.com/*, https://restcountries.com/*, https://urlscan.io/*, https://otx.alienvault.com/*
    https://www.virustotal.com/*, https://api.abuseipdb.com/*, https://haveibeenpwned.com/*, https://restcountries.com/*, https://urlscan.io/*

Permissions & access

Permissions
storageactiveTab
Host access
https://www.virustotal.com/*, https://api.abuseipdb.com/*, https://haveibeenpwned.com/*, https://restcountries.com/*, https://urlscan.io/*

Screenshots

IOChaser screenshot 1IOChaser screenshot 2IOChaser screenshot 3IOChaser screenshot 4IOChaser screenshot 5

About

Stop copying IOCs manually.

IOChaser is a browser extension built for SOC analysts, threat hunters, and security professionals to extract, analyze, and investigate Indicators of Compromise (IOCs) directly from any webpage — without breaking your workflow.

────────────────────────────────────────────────────────────────────────────────────

❌ The Problem ❌

Analysts constantly deal with IOCs in threat reports, phishing pages, alerts, and blog posts.

Typical workflow:

1. Copy an IOC
2. Refang it manually
3. Open multiple tabs (VirusTotal, AbuseIPDB, etc.)
4. Repeat for every indicator

This process is SLOW, repetitive, and error-prone.

────────────────────────────────────────────────────────────────────────────────────

✅ The Solution ✅

IOChaser eliminates manual work by turning any webpage into an investigation-ready view.

With one click, it extracts all visible IOCs, organizes them, and lets you investigate them instantly.

────────────────────────────────────────────────────────────────────────────────────

What IOChaser Detects 

• IP addresses
• Domains
• URLs (including defanged formats)
• Email addresses
• File hashes (MD5, SHA1, SHA256)

────────────────────────────────────────────────────────────────────────────────────

Real Analyst Workflow

IOChaser is designed around how analysts actually work:

1. Extract all IOCs from the current page
2. Review grouped results by type
3. Filter and focus on relevant indicators
4. Run quick reputation checks
5. Select the indicators that matter
6. Generate a structured enrichment summary
7. Pivot to external tools when deeper analysis is required

────────────────────────────────────────────────────────────────────────────────────

Key Features:

🔍 Automatic IOC Extraction
Detect and group IOCs instantly from any webpage, including defanged indicators.

⚡ Quick Scan & Instant Verdicts
Get immediate insights such as malicious, suspicious, or clean indicators directly in the extension.

🧠 Enrichment Summary
View structured threat intelligence in one place, including:

• VirusTotal verdicts
• AbuseIPDB reputation and reports
• ASN, country, and contextual data

🎯 Analyst-Focused Workflow
Select, filter, and investigate IOCs efficiently without leaving your browser.

🌐 Threat Intelligence Integrations
Quickly pivot into:

• VirusTotal
• AbuseIPDB
• Shodan
• Censys
• GreyNoise
• and other investigation platforms

📋 One-Click Copy & Export
Copy selected IOCs safely in a consistent format for reporting or response.

⚙️ Customizable Tool Selection
Choose which tools are used per IOC type based on your workflow.

🔐 Privacy First
API keys are stored locally in your browser. No data is sent externally unless you explicitly trigger a lookup.

────────────────────────────────────────────────────────────────────────────────────

Use Cases

IOChaser is ideal for:

• SOC analysts performing alert triage
• Threat hunters investigating suspicious activity
• Incident responders analyzing compromised indicators
• DFIR practitioners reviewing evidence
• Security researchers analyzing threat reports

────────────────────────────────────────────────────────────────────────────────────

Why IOChaser?

Unlike generic IOC extractors, IOChaser is designed for real-world investigations.

It focuses on:

• speed
• accuracy
• workflow efficiency
• actionable intelligence

so you can move faster from detection to investigation.

Technical

Version
1.4.0
Manifest
V3
Size
33.68KiB
Min Chrome
88
Languages
1
Featured
No

Metadata

ID
gjomgdkjfhpmmmlleefbblnfeanmniem
Developer ID
ub6cd1713e6bc8dd86508e5dae6c9ba92
Developer Email
[email protected]
Created
Jan 21, 2026
Last Updated (Store)
May 3, 2026
Last Scraped
Jun 11, 2026
Website
Support URL

Similar extensions

Alternatives to IOChaser, ranked by description similarity.

Data sourced from the Chrome Web Store · last verified Jun 11, 2026.