Hudson Rock
Hudson Rock is a cybersecurity intelligence platform specializing in compromised computer and credential data obtained from information-stealing malware (infostealers). The platform provides access to a vast repository of stolen credentials, session tokens, cookies, browser data, and system information extracted from computers infected by various infostealer malware families including Redline, Raccoon, Vidar, Mars, and other credential-harvesting trojans.
| Category | Threat intelligence |
| Direction | Query source |
| Sign-in | No Authentication |
| Query languages | SQLite |
| Tables | 5 |
| Website | hudsonrock.com |
Before you start
Hudson Rock needs no credentials — Huntbase queries it without signing in.
Connect Hudson Rock
- Go to Connections and click New connection, or click New connection on the Hudson Rock product page.
- On Product, pick Hudson Rock and choose the Owner.
- On Details, give the connection a Name and, optionally, a Description.
- On Connect, fill in the settings and credentials described below.
- On Verify, review the summary and click Create & check.
For everything else on the setup page — saving a draft, I'll do this later, and what each check result means — see Connections.
Settings
Where your Hudson Rock lives:
| Field | Required | Notes |
|---|---|---|
| Max Retries | No | |
| Min Delay (seconds) | No |
Credentials
The only Method is No Authentication. Enter a Credential label (for example Production), then fill in:
No fields — choose this method to connect without credentials.
Query it
Once connected, Hudson Rock can serve these languages in a query tab, and Scout can use it when you ask in Auto:
| Language | Use it for |
|---|---|
| SQLite | SQL over the 5 tables listed below, alongside every other connected source. |
Tables
Hudson Rock adds 5 tables. Browse their columns from Schema in the query bar's ⋯ menu.
All 5 tables
| Table | Contains |
|---|---|
hudsonrock_search_by_domain | Search for domain-related cyber crime and infostealer intelligence using Hudson Rock's API. |
hudsonrock_search_by_email | Search for compromised credentials and infostealer data by email using Hudson Rock's API. |
hudsonrock_search_by_ip | Search for info-stealer data by IP address using Hudson Rock's API. |
hudsonrock_search_by_username | Search for compromised credentials and infostealer data by username using Hudson Rock's API. |
hudsonrock_url_by_domain | List URLs identified by infostealer infections for a given domain using Hudson Rock's API. |
Next steps
- Connections — health, credentials and settings after you connect
- Query languages — syntax, parameters and time ranges
- Chatting with Scout — ask questions without writing a query
- All integrations — the rest of the catalog