Destroylist

Destroylist

A free, constantly-updated list of known phishing and scam websites that you can plug straight into a firewall, DNS server, or ad blocker to automatically block them — like a spam filter, but for malicious domains instead of email.

🔗 Visit Destroylist
📁 Security & Privacy🗣️ English📅 July 30, 2026

Description

Phishing and scam sites come and go fast, so a static blocklist goes stale within days. Destroylist is a real-time threat intelligence feed that aggregates phishing and scam domain data from 13+ sources, currently tracking over 888,000 threats, and verifies entries with live DNS checks and HTTP content inspection rather than just trusting the source list.

It's fully open source with no API key required, and it ships the same data in multiple formats depending on where you want to use it: plain text, JSON, hosts file, AdBlock filter, Dnsmasq, Unbound, RPZ, and Redis. There's also a free threat-intelligence API with 0-100 risk scoring and bulk domain checking (up to 500 domains per request), a historical vault of point-in-time domain snapshots, integration with 50+ security vendors for abuse reporting, and an automated remediation workflow that can notify domain registrars directly.

💬 Our review

The short version: this is a solid, free option for anyone who needs an up-to-date phishing/scam blocklist — network admins, DNS operators, and browser-extension or firewall developers — with the bonus of a free scoring API rather than just a raw list.

Against commercial threat-intel feeds (many of which charge per lookup or require enterprise contracts), Destroylist's combination of free access, no API key, and multiple ready-to-use output formats (RPZ and Unbound for DNS operators, AdBlock for browser use, Redis for app integration) makes it easy to plug into an existing stack without negotiating a vendor deal. The tradeoff of any community-aggregated blocklist is coverage and false-positive risk: it's only as good as its 13+ underlying sources, and like any blocklist it can occasionally flag or miss a domain that a paid, more curated commercial feed would get right — worth spot-checking before wiring it into something business-critical.

💰 Pricing

Free (open source)No API key required, free access to all blocklists and the threat-intel API.

📊 Global score

45Average
🌐Availability15/100Faible

1 language · 0 platform

📄Profile75/100Bien

Profile completeness

🤖 AI-enriched data

💰 Pricing model
🆓 Gratuit (open source)

Accès gratuit à toutes les listes et à l'API de threat intelligence, aucune clé API requise.

👥 Target audienceAdministrateurs réseau, opérateurs DNS, développeurs d'extensions navigateur et de pare-feux, équipes sécurité.
🗣️ Languagesen
🌍 Target countriesWorldwide
👍

Pros

888K+ menaces suivies, agrégées depuis 13+ sources, vérification DNS/HTTP en temps réel

Gratuit, sans clé API, formats multiples prêts à l'emploi (RPZ, Unbound, AdBlock, Redis...)

API de scoring de risque (0-100) gratuite avec vérification en lot (500 domaines/requête)

👎

Cons

Couverture dépendante de la qualité des 13+ sources agrégées (risque de faux positifs/négatifs)

Projet communautaire, pas de garantie contractuelle comme un fournisseur commercial

À valider avant un usage critique en production

❓ Frequently asked questions

What is Destroylist in one sentence?
Is it free?
What formats does it support?
Can I check domains programmatically?
Is it worth the money compared to alternatives?
Which tool should you pick for your case?