{"uid":"cap_WzTxtFuruMDpa7fQCRhZl","slug":"radhikachain-crowdsec-threat-intelligence-feed-76c1efbf","name":"RadhikaChain CrowdSec Threat Intelligence Feed","description":"Telemetria de cadena, inteligencia de defensa y computo verificable (Halo2, Nova, Plonky3). Pago por peticion en USDC nativo en Base (eip155:8453) mediante x402 v2 scheme exact; sin cuenta ni suscripcion. Catalogo canonico: GET /.well-known/x402.","url":"https://x402.radhikatmosphere.com/amenazas/crowdsec","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","properties":{"input":{"type":"object","properties":{"body":{"type":"object","additionalProperties":true},"queryParams":{"type":"object","additionalProperties":true}}},"output":{"type":"object","properties":{"example":{"type":"object","additionalProperties":true}}}}},"responseSchema":{"type":"json","example":{"fuente":"sensor XDP en la NIC (eBPF), no contadores de iptables","amenazas":[{"ip":"8.103.58.198","ttl":45,"puertos":[22,8402,8151,8332,5000,3000,8788,8413,9103],"sondeos":665179,"flags_tcp":[16,2,24,17,4,20,25],"so_probable":"linux/unix","primer_visto":1512360412807002,"ultimo_visto":2360929756865408,"clasificacion":"barrido de puertos","puertos_distintos":9},{"ip":"3.38.236.54","ttl":47,"puertos":[3000],"sondeos":10156,"flags_tcp":[2,4,16,24,17],"so_probable":"linux/unix","primer_visto":2078920099453734,"ultimo_visto":2186077586730334,"clasificacion":"sondeo insistente","puertos_distintos":1}],"diferencia":"cada entrada trae IP, puertos, flags TCP y TTL: accionable en un firewall. Los contadores agregados no.","ips_distintas":1819,"eventos_totales":811757}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"3.0888","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$3.0888/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"3.0888","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"3.0888","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_0oQSDVLUQWC0gdRqD7tqW","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"3.0888","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns real-time network threat intelligence from a CrowdSec-integrated eBPF/XDP sensor, including per-IP port scan data, TCP flags, OS fingerprints, and classification labels suitable for firewall actioning.","exampleAgentPrompt":"Pull the latest CrowdSec threat feed from RadhikaChain and show me which IPs are actively port-scanning right now, including their TCP flags and probable OS so I can update my firewall rules.","exampleUseCases":[{"title":"Automated firewall blocklist refresh","prompt":"Check the RadhikaChain CrowdSec endpoint and give me a list of all currently active scanning IPs with the ports they're hitting and their TCP flags — I want to push this straight into my firewall deny rules."},{"title":"SOC threat triage dashboard","prompt":"Fetch the latest network threat intelligence from the CrowdSec sensor on RadhikaChain and summarize the top 10 most aggressive IPs by probe count, including their classification and what OS they're likely running."},{"title":"Incident investigation enrichment","prompt":"I'm investigating a suspicious connection from 8.103.58.198 — pull the CrowdSec threat feed from RadhikaChain and tell me everything it knows about that IP: ports probed, TCP flags, first and last seen times, and how it's classified."}],"resultDescription":"A JSON object containing an array of threat entries, each with the attacker IP, TTL, list of probed ports, TCP flag values, probable OS, first/last seen timestamps in microseconds, probe count, and threat classification (e.g. 'port sweep', 'persistent probe'). Also includes aggregate stats: total distinct IPs observed and total event count. Data originates from an eBPF/XDP NIC sensor rather than iptables counters, providing richer per-packet detail.","failureModes":["402 Payment Required if x402 USDC payment on Base is missing or invalid","Empty threat array if no threats are currently recorded by the sensor","Stale data if the eBPF sensor feed has not updated recently","Network timeout if the RadhikaChain host is unreachable","Malformed response if the upstream CrowdSec integration is degraded"],"whenToPreferThis":"Choose this endpoint when you need granular, per-IP threat intelligence with TCP flag and OS fingerprint detail that can be directly actioned in a firewall — rather than aggregated block counts from traditional iptables-based feeds. Ideal for automated firewall rule generation, SOC enrichment pipelines, or real-time threat monitoring without requiring a subscription account.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-13T06:58:55.825Z","isFirstParty":false}