https://telesint-api.onrender.com/c2
C2 infrastructure from Telegram. Filters: framework(cobalt_strike|sliver|havoc|brute_ratel), severity, min_confidence, since, tag, limit, offset. Returns items[] with C2 IPs/domains, MITRE TTPs, confidence.
What this profile is sourced from
Raw HTTP — what an agent observes
GET https://telesint-api.onrender.com/c2 → HTTP/1.1 402 Payment Required X-Payment-Required: $0.0200 X-Payment-Currency: USDC X-Payment-Chain: base GET https://telesint-api.onrender.com/c2 X-Payment: <signed-receipt> → HTTP/1.1 200 OK Content-Type: application/json …response body…
Things to know before drawing strong conclusions
accepts[] entry is used.