{"uid":"cap_GDFkSp0u_A3TBouK_XSGM","slug":"thebotwire-threat-intelligence-feed-2d4e8ea8","name":"TheBotWire Threat Intelligence Feed","description":"Vendor threat-intelligence research , Talos, Unit 42, Check Point, SentinelOne, MSRC. SOC automation vendors and MSSPs; IOC-enrichment agents. Unlike cve, this is vendor-published trade content, not a government firehose , nearer the co","url":"https://thebotwire.com/threatintel/latest","method":"GET","headers":{},"bodySchema":null,"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.005","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.005/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.005","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.005","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_6UDvVbL9vh0Pywo1tK_UL","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.005","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns latest vendor-published cybersecurity threat intelligence from sources like Talos, Unit 42, Check Point, SentinelOne, and MSRC, with optional keyword search and source filtering","exampleAgentPrompt":"Pull the latest threat intelligence from Unit 42 and SentinelOne from the past 24 hours — up to 20 results — and flag anything mentioning ransomware or new IOCs.","exampleUseCases":[{"title":"SOC morning threat briefing","prompt":"Give me the last 10 threat intel posts from Talos and Unit 42 published in the past 24 hours so I can prep our morning SOC briefing."},{"title":"IOC enrichment for incident response","prompt":"Search vendor threat intelligence for anything mentioning 'LockBit' published in the last 3 days — check Talos, SentinelOne, and Unit 42, up to 25 results."},{"title":"MSRC vulnerability research monitor","prompt":"Fetch the latest research blog posts from MSRC and Check Point from the past 48 hours, limit 15, so I can see if any new zero-days have been disclosed."}],"resultDescription":"A list of threat intelligence items from vendor sources (Talos, Unit 42, Check Point, SentinelOne, MSRC, etc.), each including title, source, publication timestamp, summary or excerpt, and relevant tags or IOC references. Results are filtered by source, keyword, and freshness window as requested.","failureModes":["No results found for narrow query terms or very short freshness windows","Invalid 'since' format (e.g. '1week' instead of '7d') may return an error or empty results","Source enum mismatch if an unsupported source name is passed","Rate limiting or payment failure at $0.005 per call via x402","Stale content if vendor sources have not published recently"],"whenToPreferThis":"Choose this endpoint when you need curated, vendor-published threat intelligence (Talos, Unit 42, Check Point, SentinelOne, MSRC) rather than raw government CVE feeds or unfiltered news. It is ideal for SOC automation, IOC enrichment pipelines, and security research agents that need high-signal, practitioner-grade content rather than NVD/NIST firehose data. Prefer it over general news search endpoints when the user specifically needs cybersecurity vendor research or threat actor analysis.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-16T01:04:57.973Z","isFirstParty":false}