Unlock the full potential of mlab.sh and n8n’s automation platform by connecting Sn0wAlice’s capabilities with over 1,000 apps, data sources, services, and n8n’s built-in AI features.
Need something that’s not covered yet?
Use n8n’s pre-authenticated HTTP Request node to create new connections, giving you the flexibility to build powerful automations on any stack.
Created by
Sn0wAlice
Last update
17 hours ago
mlab.sh integration
is built and maintained by our partners at Sn0wAlice and verified by n8n. That means it’s solid, safe, and ready to help you tap into some great capabilities.
Add mlab.sh security data to any workflow. One node scans domains, IPs, crypto addresses and files, searches CVEs (with EPSS, KEV and severity filters) and retrieves threat-actor intelligence, including reverse CVE-to-actor lookups. Public APIs, with an API key only for core scans.
Lookup
Check sanctions, labels and risk score for a crypto address
Search
Search vulnerabilities by keyword, vendor or product
Get
Retrieve full details for a CVE (including EPSS and KEV data)
Get Latest
Fetch vulnerabilities from the last 7 days
Scan
Launch a domain scan and (optionally) wait for the results
Get Status
Get Results
Upload
Upload a file (max 10MB) and launch analysis
Get Results
Fetch analysis results by SHA-256 hash
Lookup
Resolve geolocation, ASN and ownership for an IP address
Get
Get the remaining daily quota for a scan type
List / Search
List actors with optional filters (origin, motivation, sector)
Get
Get a single actor by slug, including aliases, tools, CVEs and techniques
Get by CVE
Reverse lookup: which actors are known to exploit a given CVE
Verified nodes need a quick setup by an instance owner first, but after that, everyone on the instance can start using them in their workflows. Learn more here.
Sign in to n8n, open the editor, and click + in the top right to open the Nodes panel

The world's most popular workflow automation platform for technical teams including