Threat Actor
Threat Actor API
Access threat actor profiles with aliases, TTPs, target sectors and campaign history. All profiles are fictional and for educational/defensive use only.
Safety level: Restricted. All responses are editorially reviewed, redacted and safe for enterprise consumption. No raw IOC data, dark web content, exploit code or stolen credentials.
Example use cases
- •Threat landscape briefings
- •MITRE ATT&CK mapping for detection engineering
- •Executive risk reporting
- •Red team scenario planning
Endpoints
Threat Actor Response
Threat actor profile with aliases, TTPs and targeting information.
id*
Actor profile identifier
name*
Primary actor name
type*
Actor type: apt, ransomware, cybercrime, hacktivist
aliases
Known aliases
targetSectors*
Targeted industry sectors
observedTtps
MITRE ATT&CK technique IDs
confidence*
Attribution confidence: low, medium, high
Safety notes
• All threat actor profiles are entirely fictional.
• No real group identities, operational capabilities or tooling specifics disclosed.
• MITRE ATT&CK references are for educational mapping only.
