Finished Intelligence items associated with the threat actor.
Notes:
- Enrichment allows access to actor data for
8hours without consuming tokens. - The last
5FINTEL actions of the actor are available without theThreat Landscapemodule. - Maximum
1request per second is allowed.
tokenCharged: If false, the request does not consume tokens.tokensLeft: Shows the remaining token balance.
Parameters
| Parameter | Description |
|---|---|
| Document Type | The document type to filter by. |
| Offset | The offset to start returning results from. |
| Query | The query used on actor properties to filter results by, such as title, summary. |
| Report Types | The report types to filter by. Applicable types based on the document type: * If Document Types is report: Actor Profile or Emerging Threats.* If Document Types is event: Ransom Event, Network Access, Malware, Source Update, APT Activity, Threat Update, Database Leak, or Vulnerabilities.* If Document Types is insight: leave empty. |
| Size | The maximum number of results to return. Note: Maximum 1000 results are allowed. |
| Threat Actor ID | The ID of the threat actor. Can be obtained by the List Threat Actors action. |