x402radar
ServicesEndpointsLeaderboardsStatsBlogAPISubmit
List
Back to directory

Telesint-api

LIVE ON-CHAINBase

C2 infrastructure from Telegram. Filters: framework(cobalt_strike|sliver|havoc|brute_ratel), severity, min_confidence, since, tag, limit, offset. Returns items[] with C2 IPs/domains, MITRE TTPs, confidence.

telesint-api.onrender.com
Website
85
Trust
92%
Uptime
202 ms
Latency
$97.89
Revenue (30d)

Overview

Protocolx402
Provider—
Payment assetUSD Coin
Networkbase
Categoryother
Sourcebazaar

Health

StatusDegraded
Uptime (window)92%
Success rate—
Confidence100%
Quotes (14d)48
Last checked6/16/2026, 4:41:03 PM
Latency (quote)530ms
Price / call20000
Uptime (daily)92%

Metrics by window

WindowTrustUptimeSuccessp50p95PriceData
Last hour87100%———$0.02Low
Last 24h8592%———$0.02Low
Last 7 days8592%———$0.02Low

Endpoints (23)

Schema API (all endpoints) ↗

Trust score is global for the provider. Latency, price and uptime are measured per endpoint (last 24h). Click a column to sort.

Endpoint
GET/ot/brief
Sector threat brief for ICS/OT. Pass ?sector=energy&period=30. Returns active actors, new CVE counts, active campaigns, top advisories, and risk_trend (increasing/stable/decreasing). One call replaces 5+ chained calls. Ideal for weekly reporting and compliance dashboards.
100%527 ms$0.1
GET/feed
Full intel feed across all categories. Filters: category(ioc|c2|actor|breach|intent), severity, min_confidence, since, tag, tlp, limit, offset. Returns all record types newest first. Use for SIEM ingestion.
100%358 ms$0.05
GET/intent
Pre-attack intent signals from Telegram: access sales, 0days, ransomware targeting. Filters: sector, country, organization, intent_type(access_sale|0day|ransomware|exploit), limit. Signals appear before attacks.
100%170 ms$0.05
GET/ot/campaign
Active ICS campaign tracker. Pass ?sector=electric&status=active. Returns campaigns currently targeting a sector with actor attribution, start date, targeted geography, TTPs in use, and CVEs being exploited. No free equivalent for live campaign status.
100%204 ms$0.05
GET/ot/device
ICS/OT device exposure lookup. Pass ?vendor=siemens&model=s7-1200. Returns default credential risk, exposed OT protocols (Modbus/502, S7comm/102, DNP3/20000), exploitation notes, and hardening steps. Covers Siemens, Schneider, Rockwell, Honeywell, GE, Unitronics, Beckhoff.
100%169 ms$0.05
GET/ot/exposure
OT asset risk verdict. Pass ?vendor=siemens&model=s7-1500&sector=energy&network=internet-facing. Returns risk_score (0-100), risk_level, escalate (boolean), recommended_action, active CVEs, and threat actors. Optional firmware param enables firmware-specific CVE matching. Cached 1 hour.
100%199 ms$0.05
GET/ot/patch
OT/ICS patch feasibility for a CVE. Pass ?id=CVE-XXXX-XXXX. Returns patch availability, OT-safe workarounds, patch complexity per ICS layer, estimated downtime, safe-to-patch-live flag, deployment strategy, and risk-vs-disruption score 1-10.
100%173 ms$0.05
GET/ransomware
Ransomware group activity from Telegram: victim posts, leak site announcements, extortion demands. Filters: severity, min_confidence, since, tag(lockbit|blackcat|cl0p|ransomhub), sector, country, limit, offset.
100%177 ms$0.04
GET/search
Cross-category pivot across all TeleSint intel. Use ?q= for broad keyword or combine filters: category, severity, sector, country, tag, ttp, name, organization, min_confidence, since. Returns items[] across any category.
100%195 ms$0.04
GET/breach
Breach disclosures from Telegram. Filters: sector, country, organization, severity, min_confidence, since, limit. Returns items[] with target{sectors,countries,organizations}, leak iocs[], confidence.
100%375 ms$0.03
GET/darkweb
Dark web intelligence from Telegram: marketplace listings, forum chatter, access broker posts, credential shops, Tor site activity. Filters: severity, min_confidence, since, tag, sector, country, organization, limit, offset.
100%194 ms$0.03
GET/ot/actor
ICS threat actor profile. Pass ?name=SANDWORM. Returns MITRE ATT&CK ICS techniques, known malware, attribution, physical impact, targeted sectors, and OT detection recommendations. Alias lookup supported: Volt Typhoon→VOLTZITE, APT44→SANDWORM. Covers all Dragos Activity Groups.
100%196 ms$0.03
GET/ot/actor/sector
ICS threat actors by sector. Pass ?sector=energy. Returns all groups targeting that sector from live MITRE ATT&CK ICS STIX data. Covers energy, water, manufacturing, oil-and-gas, chemical, transportation, nuclear.
100%187 ms$0.03
GET/ot/delta
ICS sector change feed — only what is NEW in the last N days. Pass ?sector=water&days=7. Returns new CVEs, new CISA advisories, and new actor activity since the last call. Designed for cron-based monitoring agents. Eliminates redundant reprocessing.
100%171 ms$0.03
GET/vulnerability
CVE and exploitation-in-the-wild signals from Telegram CTI channels. Filters: severity, min_confidence, since, tag(cve|exploit|poc|patch), ttp, type(cve), limit, offset. Returns CVE IDs, affected products, exploit status.
100%538 ms$0.03
GET/c2
C2 infrastructure from Telegram. Filters: framework(cobalt_strike|sliver|havoc|brute_ratel), severity, min_confidence, since, tag, limit, offset. Returns items[] with C2 IPs/domains, MITRE TTPs, confidence.
100%412 ms$0.02
GET/malware
Malware family intelligence from Telegram: new sample drops, behavior analysis, loader/stealer/RAT/backdoor writeups. Filters: severity, min_confidence, since, tag(stealer|loader|rat|backdoor), limit, offset.
100%197 ms$0.02
GET/ot/advisory
Live CISA ICS-CERT advisories filtered by vendor or sector. Pass ?vendor=siemens or ?sector=energy. Returns advisory IDs, CVSS scores, CVE lists, OT severity, and sector tags. Up to 25 results.
100%192 ms$0.02
GET/ot/cve
OT-contextualised CVE triage for ICS/SCADA. Pass ?id=CVE-XXXX-XXXX. Returns OT-adjusted severity, cyber-physical impact, patch feasibility, CISA KEV status, and prioritised action. DeepSeek-enriched with live NVD and CISA-KEV data.
100%484 ms$0.02
GET/ot/malware
ICS malware encyclopedia. Pass ?name=PIPEDREAM. Returns capabilities, targeted OT protocols, attributed actor, affected vendors, detection signatures, and MITRE ATT&CK ICS techniques. Covers PIPEDREAM, TRITON, INDUSTROYER2, CRASHOVERRIDE, FROSTYLOOP, BLACKENERGY.
100%192 ms$0.02
GET/ioc
IOC feed from Telegram CTI channels. Filters: type(ip|domain|url|hash|cve), severity, min_confidence, since, tlp, tag, channel, limit, offset. Returns items[] with iocs[], ttps[], confidence, severity, tlp, tags[].
100%202 ms$0.01
GET/ot/ioc
IOC enrichment with ICS campaign context. Pass ?value=1.2.3.4&type=ip or type=domain. Queries AlienVault OTX, AbuseIPDB, and DeepSeek CTI for OT campaign association. Returns verdict on whether the IOC is linked to ICS-targeting campaigns.
100%204 ms$0.01
GET/actor
Threat actor profiles from Telegram. Filters: name, nation_state(kp|ru|cn|ir), motivation(financial|espionage|hacktivism), ttp, severity, limit. Returns items[] with actor{}, ttps[], target{sectors,countries}.
50%106 ms$0.02

Equivalent APIs

See all alternatives →

Same category, ranked by Trust score — switch to a more reliable or cheaper source.

97
Agent402
agent402.toolsBase
Uptime
97%
Latency
153 ms
Price / call
$0.001 – $0.02
Endpoints
60
90
Polynews
polynews.newsBase
Uptime
91%
Latency
273 ms
Price / call
$0.001 – $0.1
Endpoints
13
89
Justaname
api.justaname.idBase
Uptime
91%
Latency
16 ms
Price / call
$0.001
Endpoints
44
89
Fanfare
fanfare.runBase
Uptime
98%
Latency
100 ms
Price / call
$0.001 – $0.5
Endpoints
64
88
Gblin
gblin.digitalBase
Uptime
90%
Latency
48 ms
Price / call
$0.001 – $0.005
Endpoints
7
88
Action402
action402.vercel.appBase
Uptime
93%
Latency
135 ms
Price / call
$0.003
Endpoints
27