{"uid":"cap_kV8ZCd3OWiQzYXCI64L1_","slug":"radhikachain-threat-intelligence-feed-6e9975d9","name":"RadhikaChain Threat Intelligence Feed","description":"Telemetria de cadena, inteligencia de defensa y computo verificable (Halo2, Nova, Plonky3). Pago por peticion en USDC nativo en Base (eip155:8453) mediante x402 v2 scheme exact; sin cuenta ni suscripcion. Catalogo canonico: GET /.well-known/x402.","url":"https://x402.radhikachain.xyz/federacion/amenazas","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","properties":{"input":{"type":"object","properties":{"body":{"type":"object","additionalProperties":true},"queryParams":{"type":"object","additionalProperties":true}}},"output":{"type":"object","properties":{"example":{"type":"object","additionalProperties":true}}}}},"responseSchema":{"type":"json","example":{"nota":"'visto_en' indica en cuantos nodos aparecio: mas nodos significa un escaneo mas amplio","total":2091,"fuente":"sensores XDP/eBPF en los nodos de la red","amenazas":[{"ip":"169.188.233.172","ttl":45,"puertos":[8545],"sondeos":30242233902,"visto_en":["seed"],"flags_tcp":[2,16,24,17,4],"so_probable":"linux/unix","primer_visto":7391931344,"ultimo_visto":122915823205836,"clasificacion":"sondeo insistente"},{"ip":"64.248.200.172","ttl":40,"puertos":[8151,8126,28334,8413,8402,3000,28332,5000,8414,8332,28335,28333],"sondeos":27119417444,"visto_en":["seed"],"flags_tcp":[24,16,2,17,4,18,25],"so_probable":"linux/unix","primer_visto":1103534350967449,"ultimo_visto":1550758766647374,"clasificacion":"barrido de puertos"}]}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"1.0296","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$1.0296/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"1.0296","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"1.0296","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_5x4nTulzNdmxNwMO8vnNc","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"1.0296","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns a live list of network threat actors detected by XDP/eBPF sensors across the RadhikaChain node fleet, including IP addresses, port scan patterns, TCP flags, probable OS, and attack classification.","exampleAgentPrompt":"Pull the latest threat intelligence feed from RadhikaChain — I want to see which IPs are actively scanning or attacking the node network right now, including their port targets, TCP flags, and how they've been classified.","exampleUseCases":[{"title":"Block aggressive port scanners at firewall","prompt":"Fetch the current threat list from RadhikaChain's sensor network — I need to extract all IPs classified as port sweepers or persistent probers so I can add them to our firewall blocklist."},{"title":"Monitor threats targeting RPC port 8545","prompt":"Get the RadhikaChain threat feed and filter for any IPs that have been probing port 8545 — I want to know how many probes they've sent, what nodes spotted them, and their TCP flag patterns."},{"title":"SOC threat briefing from blockchain sensors","prompt":"Pull the latest threat intelligence snapshot from RadhikaChain's eBPF sensors across the fleet and give me a summary: how many total threats are active, what OS fingerprints are most common, and which IPs have the highest probe counts?"}],"resultDescription":"A JSON object containing a total count of detected threats, the sensor source (XDP/eBPF nodes), and an array of threat entries each with: source IP, TTL, list of probed ports, total probe count, which fleet nodes observed it, TCP flag set, probable OS, first-seen and last-seen timestamps, and a human-readable attack classification (e.g. 'sondeo insistente' / persistent probing, 'barrido de puertos' / port sweep).","failureModes":["Payment not included or invalid x402 USDC payment on Base → 402 Payment Required response","Network or sensor feed temporarily unavailable → 5xx server error","No threats currently in the feed → empty amenazas array with total: 0","Stale data if sensors are lagging → timestamps may not reflect real-time state"],"whenToPreferThis":"Choose this endpoint when you need raw, sensor-derived threat intelligence from a distributed blockchain node fleet rather than aggregated commercial threat feeds. It is especially useful for identifying IPs actively scanning blockchain-specific ports (e.g. 8545) with OS fingerprinting and TCP-level detail. Prefer this over generic threat intelligence APIs when you specifically want in-kernel XDP/eBPF telemetry from crypto infrastructure nodes, and when pay-per-call with no subscription is preferred.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T13:06:31.802Z","isFirstParty":false}