A few years ago, while working at a fintech company, I faced a tough challenge.
Every day, our security team sent us a list of hundreds of IPs to be blocked on our FortiGate firewalls — attackers constantly trying to breach our edge.
💡 The problem?
- We couldn’t be sure every IP was 100% malicious — some might have even belonged to customers
- We didn’t want to block them permanently
- And manually managing these lists was a nightmare
So I built a tool: IPloader
✨ What it does:
✔️ Verifies each IP against AbuseIPDB to assess threat level
🗃 Stores IPs in SQLite with expiration dates (for temporary blocks)
🔁 Removes duplicates and keeps the list clean
🌐 Generates a local file that can be served to FortiGate as a dynamic block list
This tool helped automate the entire process — giving our security team confidence in what was being blocked with no guesswork.
👉 The code is here: https://github.com/Amiri83/IPloader
I hope it helps someone else as much as it helped me.

Top comments (0)