{"uid":"cap_8WiW7gvZGEeQcCb40eNoD","slug":"virustotal-attack-tactic-lookup-via-locus-x402-5a1b72ca","name":"VirusTotal Attack Tactic Lookup via Locus x402","description":"Threat intelligence platform — scan files by hash, URLs, domains, and IPs against 70+ antivirus engines and security tools.","url":"https://virustotal.x402.paywithlocus.com/virustotal/attack-tactic","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"id":{"type":"string"}}},"responseSchema":{"type":"json","example":{"data":{},"payment":{"scheme":"exact","settledUsdc":"0.001000","authorizedMaxUsdc":"0.001000"},"request":{"id":"00000000-0000-4000-8000-000000000000","statusUrl":"/requests/00000000-0000-4000-8000-000000000000"},"success":true}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.055","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.055/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.055","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.055","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_DmWPXyosS1H5HcJjoQNft","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.055","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Retrieves MITRE ATT&CK tactic details from VirusTotal's threat intelligence platform using a tactic ID (e.g. TA0001).","exampleAgentPrompt":"Can you look up the MITRE ATT&CK tactic TA0001 on VirusTotal and tell me what it covers in terms of adversary behavior?","exampleUseCases":[{"title":"Incident response tactic classification","prompt":"We detected suspicious lateral movement in our network — can you pull up the details for MITRE ATT&CK tactic TA0008 from VirusTotal so I can understand what techniques fall under it?"},{"title":"Threat report enrichment","prompt":"I'm writing a threat report and need the full description and context for MITRE ATT&CK tactic TA0006 (credential access) — can you fetch that from VirusTotal?"},{"title":"Security training content lookup","prompt":"Pull up the VirusTotal details for MITRE ATT&CK tactic TA0002 so I can explain execution techniques to my security team in our training session."}],"resultDescription":"Returns a JSON object containing detailed information about the specified MITRE ATT&CK tactic, including metadata such as tactic name, description, and associated threat intelligence data from VirusTotal, along with payment confirmation and request tracking details.","failureModes":["Invalid tactic ID format — returns error if ID does not match expected MITRE format (e.g. TA followed by 4 digits)","Non-existent tactic ID — returns empty or error if the tactic is not found in VirusTotal's database","Payment failure — request rejected if USDC payment of $0.055 cannot be settled via x402 protocol","Rate limiting — too many requests in a short window may be throttled"],"whenToPreferThis":"Use this endpoint when you need structured MITRE ATT&CK tactic-level threat intelligence from VirusTotal, specifically to enrich security reports, incident response workflows, or threat hunting operations with authoritative tactic metadata. Prefer this over generic MITRE ATT&CK documentation lookups when you want VirusTotal's threat intelligence context layered on top. Best suited for pay-per-call agent workflows using the x402 micropayment protocol.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T06:49:48.545Z","isFirstParty":false}