get_threat_intelligence
Search threat intelligence data to uncover indicators of compromise, threat actors, and campaigns. Filter results by indicator type and limit the number of records returned.
Instructions
Query threat intelligence data — IOCs, threat actors, and campaigns
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| type | No | Filter by IOC type: ip_address, domain, file_hash, url, email | |
| limit | No | Max records to return (default 25) | |
| query | Yes | Search term (IP, domain, hash, actor name) |