AcademyWorkflowsOperations

Phishing Analysis with URLScan.io and VirusTotal

IT and security-minded operations teams that review reported or incoming emails for suspicious links.

  • Recommendedour rating
  • 26,877views on n8n
Open on n8n.io ↗

Paste it straight onto an n8n canvas with Ctrl+V or Cmd+V.

phishing-analysis-urlscan-io-and-virustotal.json

Loading the file...

What it does

An n8n workflow that checks emails in a Microsoft Outlook inbox for suspicious links. It extracts the URLs, scans them with URLScan.io and VirusTotal, and sends a summary with the report links to Slack. It runs manually or on a daily schedule.

Use cases

  1. 01Scan links in a shared inbox every night
  2. 02Post a report with sender and subject to Slack
  3. 03Check a suspicious URL against two scanners

Connects

HTTP Request · Slack · Microsoft Outlook · urlscan.io · Code

Questions about
Phishing Analysis with URLScan.io and VirusTotal.

What is Phishing Analysis with URLScan.io and VirusTotal used for?

IT and security-minded operations teams that review reported or incoming emails for suspicious links. An n8n workflow that checks emails in a Microsoft Outlook inbox for suspicious links. It extracts the URLs, scans them with URLScan.io and VirusTotal, and sends a summary with the report links to Slack. It runs manually or on a daily schedule.

How do I import Phishing Analysis with URLScan.io and VirusTotal into n8n?

Copy the workflow JSON from this page and paste it onto the n8n canvas with Ctrl+V or Cmd+V. Then connect your credentials in each node.

Is Phishing Analysis with URLScan.io and VirusTotal safe to use?

It passed our automatic scan for credential theft, hidden instructions and risky install commands. Third party open source software. Sabemos AI does not maintain it. Check the code and permissions before you connect it to company data.