https://ot-intel-api.onrender.com/ot/actor
ICS threat actor profile. Pass ?name=SANDWORM. Returns MITRE ATT&CK ICS techniques, known malware, attribution, physical impact, targeted sectors, and OT detection recommendations. Alias lookup supported: Volt Typhoon→VOLTZITE, APT44→SANDWORM. Covers all Dragos Activity Groups.
What this profile is sourced from
Raw HTTP — what an agent observes
GET https://ot-intel-api.onrender.com/ot/actor → HTTP/1.1 402 Payment Required X-Payment-Required: $0.0300 X-Payment-Currency: USDC X-Payment-Chain: base GET https://ot-intel-api.onrender.com/ot/actor X-Payment: <signed-receipt> → HTTP/1.1 200 OK Content-Type: application/json …response body…
Things to know before drawing strong conclusions
accepts[] entry is used.