{"uid":"cap_VLTzzI_1RuLsmOi6ZpphH","slug":"telesint-vulnerability-intelligence-feed-a22495b5","name":"TeleSint Vulnerability Intelligence Feed","description":"CVE and exploitation-in-the-wild signals from Telegram CTI channels. Filters: severity, min_confidence, since, tag(cve|exploit|poc|patch), ttp, type(cve), limit, offset. Returns CVE IDs, affected products, exploit status.","url":"https://telesint-api.onrender.com/vulnerability","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","properties":{"tag":{"type":"string","description":"Tag keyword filter, e.g. cve, exploit, poc, patch, zero-day"},"ttp":{"type":"string","description":"MITRE ATT&CK technique ID prefix, e.g. T1190, T1203"},"type":{"type":"string","description":"IOC type filter: cve"},"limit":{"type":"number","description":"Page size, default 20, max 100"},"since":{"type":"string","description":"ISO 8601 timestamp filter, e.g. 2026-05-01T00:00:00Z"},"offset":{"type":"number","description":"Pagination offset, default 0"},"severity":{"type":"string","description":"Minimum severity: critical | high | medium | low | info"},"min_confidence":{"type":"number","description":"Minimum AI confidence score 0-100"}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":{"type":"json","example":{"items":[{"id":"v1u2l3n4-5678-90ab-cdef-vuln56789012","ts":"2026-05-27T10:00:00Z","tlp":"WHITE","iocs":[{"type":"cve","value":"CVE-2026-1234","context":"Critical RCE in PAN-OS"},{"type":"url","value":"https://github[.]com/exploit-db/CVE-2026-1234","context":"PoC repository"}],"tags":["cve","rce","palo-alto","pan-os","poc","exploit-in-the-wild"],"ttps":[{"id":"T1190","name":"Exploit Public-Facing Application","tactic":"Initial Access"},{"id":"T1203","name":"Exploitation for Client Execution","tactic":"Execution"}],"channel":"https://t[.]me/vxunderground","summary":"PoC released for CVE-2026-1234 (CVSS 9.8): unauthenticated RCE in Palo Alto PAN-OS. Exploitation observed in the wild targeting government networks.","category":"vulnerability","severity":"critical","confidence":91}],"limit":20,"total":34,"offset":0,"source":"TeleSint","endpoint":"vulnerability"}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.03","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"settled","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.03/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.03","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.03","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_EX0xhTI2fjMFuWCCdhIUY","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.03","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Retrieves AI-enriched vulnerability and exploitation intelligence from Telegram CTI channels, including CVE details, PoC releases, CVSS severity, MITRE ATT&CK mappings, and in-the-wild exploitation signals","exampleAgentPrompt":"Pull the latest critical-severity vulnerability intelligence from TeleSint — filter for anything tagged 'exploit-in-the-wild' or 'poc' with at least 80 confidence, give me up to 20 results from the past week.","exampleUseCases":[{"title":"Zero-day CVE morning briefing","prompt":"Check TeleSint for any new zero-day disclosures or unpatched CVEs that surfaced in the last 24 hours across Telegram CTI channels — I want the top 10 results sorted by CVSS severity, with their MITRE ATT&CK mappings and AI confidence scores above 70."},{"title":"Vendor-specific exploit tracking","prompt":"Search TeleSint for any recently disclosed vulnerabilities affecting Palo Alto or Fortinet products — flag anything that has a public PoC or exploitation-in-the-wild signal, and give me up to 15 results from the past two weeks with confidence scores included."},{"title":"SOC patch prioritization triage","prompt":"Pull vulnerability intel from TeleSint mapped to MITRE T1190 initial access techniques — filter for critical or high CVSS severity, grab up to 20 records from the last 72 hours, and highlight anything where ransomware groups are mentioned in the context."}],"resultDescription":"A paginated JSON array of vulnerability intelligence records, each including CVE identifiers, CVSS severity, summary of exploitation activity, PoC links, affected products, MITRE ATT&CK technique mappings (e.g. T1190), TLP classification, AI confidence score (0-100), associated tags, originating Telegram channel, and timestamp. Total count and pagination metadata are included.","failureModes":["Payment not included or insufficient USDC on Base mainnet — 402 Payment Required response","Invalid severity enum value (must be critical/high/medium/low/info) — likely 400 or empty result","Invalid ISO 8601 timestamp in 'since' parameter — malformed request error","Limit exceeds 100 — capped or error response","No matching records for applied filters — empty items array with total:0","Service temporarily unavailable on Render free tier (cold start delay) — timeout or 503"],"whenToPreferThis":"Use this endpoint when you need near-real-time vulnerability intelligence sourced from active Telegram CTI communities, especially for CVEs with PoC releases, exploitation-in-the-wild signals, or zero-days not yet widely indexed. Prefer this over NVD or Shodan when you want AI-enriched context, MITRE ATT&CK annotations, and community-sourced threat signals. Best for SOC teams, red teamers, and threat intel analysts who need timely exploit awareness with confidence scoring.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T18:34:44.076Z","isFirstParty":false}