get_threat_intelligence
Retrieve threat intelligence by searching IOCs, threat actors, and campaigns. Filter results by type and limit to zero in on relevant indicators.
Instructions
Query threat intelligence data — IOCs, threat actors, and campaigns
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| type | No | Filter by IOC type: ip_address, domain, file_hash, url, email | |
| limit | No | Max records to return (default 25) | |
| query | Yes | Search term (IP, domain, hash, actor name) |