PhishCan
Canadian phishing threat intelligence updated every 12 hours
What is PhishCan? Complete Overview
PhishCan is a specialized threat intelligence platform focused on identifying and tracking phishing threats targeting Canadian institutions. The service provides real-time feeds of malicious domains impersonating Canadian banks, utility companies, government services and investor alerts. Updated every 12 hours, PhishCan helps security professionals, financial institutions and government agencies stay ahead of phishing campaigns targeting Canadian consumers and businesses. The platform tracks hundreds of active phishing domains across multiple categories, with detailed breakdowns by targeted institution. Data is available in multiple formats (TXT, CSV, JSON) for easy integration with security systems.
PhishCan Interface & Screenshots

PhishCan Official screenshot of the tool interface
What Can PhishCan Do? Key Features
Live Banking Phishing Feed
Tracks 800+ active phishing domains targeting major Canadian banks including RBC, TD, Scotiabank, BMO and CIBC. Provides real-time updates with new domains added as they're discovered. Each entry includes verification links to URLScan.io and VirusTotal for additional analysis.
Utilities Threat Feed
Monitors 696+ phishing domains impersonating Canadian hydro, telecom and utility companies. Helps protect customers from fraudulent payment requests and account takeover attempts through compromised utility accounts.
Government Services Tracking
Identifies 57+ phishing sites targeting Canadian government services including CRA, Canada Post and provincial services. Critical for preventing tax-related fraud and identity theft through fake government portals.
Investor Alert Monitoring
Tracks 211+ domains related to fraudulent investment schemes and regulator warnings across Canadian jurisdictions. Helps financial advisors and investors identify potential scams before they cause harm.
Multiple Data Formats
Provides threat feeds in TXT, CSV and JSON formats for easy integration with security systems. Developers can also access the data through GitHub repositories for custom implementations.
Best PhishCan Use Cases & Applications
Financial Institution Protection
Banks and credit unions use PhishCan to identify phishing sites impersonating their online banking portals. Security teams can quickly take down fraudulent sites and alert customers about ongoing phishing campaigns.
Enterprise Security Monitoring
Large corporations integrate PhishCan feeds into their security operations centers to block access to known phishing sites through web filters and firewall rules, protecting employees from credential theft.
Government Cybersecurity
Public sector agencies use the government services feed to identify fake CRA and Canada Post sites, preventing tax fraud and package delivery scams targeting citizens.
How to Use PhishCan: Step-by-Step Guide
Navigate to PhishCan.com and select your desired threat category (Banking, Utilities, Government or Investor Alerts)
Choose your preferred data format (TXT for simple lists, CSV for spreadsheet analysis, or JSON for programmatic access)
Download the latest feed or access it directly through the provided GitHub repository for automated updates
Integrate the data into your security systems, SIEM platforms or threat intelligence tools
Use the provided URLScan.io and VirusTotal links to investigate suspicious domains further
PhishCan Pros and Cons: Honest Review
Pros
Considerations
Is PhishCan Worth It? FAQ & Reviews
PhishCan updates all threat feeds every 12 hours, providing fresh intelligence on active phishing campaigns targeting Canadian institutions.
Yes, the feeds are available in multiple formats (TXT, CSV, JSON) and through GitHub for easy integration with SIEMs, firewalls and other security tools.
The platform tracks phishing sites targeting all major Canadian banks and many regional financial institutions, with specific categories for RBC, TD, Scotiabank, BMO, CIBC and others.
PhishCan specializes in phishing, threat intelligence, and cybersecurity capabilities, positioning it across Security Tools and Threat Intelligence categories. This combination makes it particularly effective for users seeking comprehensive security tools solutions.
PhishCan is designed for users working in security tools with additional applications in threat intelligence and cybersecurity. It's particularly valuable for professionals and teams who need reliable phishing and threat intelligence capabilities.
You can email potential additions or improvements to [email protected] for review by the threat intelligence team.
The current version provides real-time feeds only. Historical data may be available through the GitHub repository or by contacting the PhishCan team.
How Much Does PhishCan Cost? Pricing & Plans
Free
$0PhishCan Support & Contact Information
Monthly Visits (Last 3 Months)
Growth Analysis
XFA
Secure every device effortlessly with agentless security
wAnywhere
AI-powered employee productivity and security for hybrid workspaces
ZeroThreat
AI-powered pentest & DAST tool for web apps & APIs security
Polygraf AI
Enterprise-Grade AI Security & Zero-Trust Governance
Security Verification
Automated robot detection to secure websites
NPM Plus
AI-powered package manager with security-first approach
Vidoc Security Lab
Secure AI-generated code in real-time with expert vulnerability fixes.
Barndoor.ai
The Control Plane for Agentic AI to adopt AI safely with MCP security.
SECURITYSCROLL
Real-time cybersecurity dashboard with threat intelligence and tech updates
DevStack Tools
Essential developer utilities for JWT, hash, crypto, and more
Liveupx
Enterprise software development & AI solutions for digital transformation
DropAlias
Secure, disposable email aliases that auto-delete