{"uid":"cap_ww5t_uKQpLXaFDaIp4Ydb","slug":"radhikachain-live-threat-intelligence-feed-59e4aa3d","name":"RadhikaChain Live Threat Intelligence Feed","description":"Telemetria de cadena, inteligencia de defensa y computo verificable (Halo2, Nova, Plonky3). Pago por peticion en USDC nativo en Base (eip155:8453) mediante x402 v2 scheme exact; sin cuenta ni suscripcion. Catalogo canonico: GET /.well-known/x402.","url":"https://x402.radhikatmosphere.com/amenazas/vivas","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","properties":{"input":{"type":"object","properties":{"body":{"type":"object","additionalProperties":true},"queryParams":{"type":"object","additionalProperties":true}}},"output":{"type":"object","properties":{"example":{"type":"object","additionalProperties":true}}}}},"responseSchema":{"type":"json","example":{"fuente":"sensor XDP en la NIC (eBPF), no contadores de iptables","amenazas":[{"ip":"8.103.58.198","ttl":45,"puertos":[22,8402,8151,8332,5000,3000,8788,8413,9103],"sondeos":665179,"flags_tcp":[16,2,24,17,4,20,25],"so_probable":"linux/unix","primer_visto":1512360412807002,"ultimo_visto":2360929756865408,"clasificacion":"barrido de puertos","puertos_distintos":9},{"ip":"3.38.236.54","ttl":47,"puertos":[3000],"sondeos":10156,"flags_tcp":[2,4,16,24,17],"so_probable":"linux/unix","primer_visto":2078920099453734,"ultimo_visto":2186077586730334,"clasificacion":"sondeo insistente","puertos_distintos":1}],"diferencia":"cada entrada trae IP, puertos, flags TCP y TTL: accionable en un firewall. Los contadores agregados no.","ips_distintas":1819,"eventos_totales":811757}},"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"4.29","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$4.29/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"4.29","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"4.29","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_rQLqjc5ggPq6oZnJ1cBBW","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"4.29","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns real-time live network threat data including active attacker IPs, scanned ports, TCP flags, TTL, and threat classification from an eBPF/XDP sensor","exampleAgentPrompt":"Pull the live threat feed right now and show me which IPs are actively scanning ports, including their TCP flags and what OS they look like — I want to copy the worst offenders straight into my firewall block list.","exampleUseCases":[{"title":"Automated firewall block list refresh","prompt":"Fetch the current live threat feed and extract all IPs classified as port scanners or persistent probers — I want to push those addresses straight into our firewall deny rules."},{"title":"Security dashboard threat summary","prompt":"Get the latest live attacker telemetry and summarize how many distinct IPs are active right now, what ports they're hitting, and which threats look most aggressive based on probe counts."},{"title":"Incident triage and OS fingerprinting","prompt":"Pull the live threat data and for each active attacker IP tell me the probable OS, which ports they've hit, and how long they've been active — I'm triaging a potential intrusion right now."}],"resultDescription":"A JSON object containing a list of active threat entries, each with attacker IP, TTL, scanned ports array, TCP flag values, estimated OS, first-seen and last-seen microsecond timestamps, probe count, distinct port count, and threat classification (e.g. 'port sweep', 'persistent probe'). Also includes aggregate statistics: total distinct IPs seen and total event count. Data sourced from an eBPF/XDP sensor on the NIC, not aggregated iptables counters.","failureModes":["Payment not included or invalid x402 USDC payment on Base — returns 402 Payment Required","Sensor data temporarily unavailable — may return 503 or empty threat list","Malformed request headers — returns 400 Bad Request","Network timeout if sensor pipeline is under load"],"whenToPreferThis":"Prefer this endpoint when you need per-IP, per-port, per-flag granular threat data suitable for direct firewall ingestion — not just aggregate counts. It is especially valuable when you need OS fingerprinting and precise timestamps for active threats, and when you want sensor-level eBPF/XDP fidelity rather than aggregated log data. Use it for real-time threat blocking automation, SOC dashboards, or incident triage where actional IP-level detail matters.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T06:52:03.764Z","isFirstParty":false}