# Cyware Threat Data API

**Canonical:** https://apis.io/apis/cyware/cyware-threat-data-api/  
**Provider:** Cyware — https://apis.io/providers/cyware/  
**Base URL:** https://demo.cyware.com/ctixapi  
**Documentation:** https://ctixapiv3.cyware.com/

Cyware Threat Data API is one of 35 APIs that [Cyware](https://apis.io/providers/cyware/) publishes on the [APIs.io](https://apis.io/) network, described by a machine-readable OpenAPI specification. Tagged areas include Threat Data. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, an API reference, and authentication docs.

## Operations (24)

| Method | Path | Summary |
|---|---|---|
| GET | `/ingestion/file/{file_id}/` | Get Download Link |
| POST | `/ingestion/threat-data/ai-search/` | AI-Assisted Search |
| POST | `/ingestion/threat-data/bulk-action/analyst_score/` | Bulk Add Analyst Score |
| POST | `/ingestion/threat-data/bulk-action/add_relation/` | Bulk Add Relation |
| POST | `/ingestion/threat-data/bulk-action/{action_type}/` | Bulk Add/Remove Allowed Indicators |
| POST | `/ingestion/threat-data/bulk-action/analyst_tlp/` | Bulk Add TLP |
| POST | `/ingestion/openapi/bulk-lookup/{object_type}/` | Bulk IOC Lookup (Advanced) |
| POST | `/ingestion/threat-data/bulk-lookup-and-create/` | Bulk IOC Lookup and Create Intel |
| POST | `/ingestion/threat-data/bulk-action/run_rule/` | Bulk Run Rule |
| POST | `/ingestion/export/` | Generate Export File |
| POST | `/ingestion/threat-data/list/` | Get Threat Data List |
| GET | `/ingestion/utilities/countries/` | Get Countries List |
| GET | `/ingestion/utilities/ioc-types/` | Get IOC Types List |
| GET | `/conversion/feed-sources/types/` | Get Source Types List |
| GET | `/conversion/feed-sources/` | Get Sources List |
| GET | `/ingestion/threat-data/{object_type}/{object_id}/quick_card/` | Get Threat Data Object Preview |
| POST | `/ingestion/saved-searches/` | Create Saved Search |
| GET | `/ingestion/saved-searches/` | Get Saved Searches List |
| DELETE | `/ingestion/saved-searches/{id}/` | Delete Saved Search |
| GET | `/ingestion/saved-searches/{id}/` | Get Saved Search Details |
| PUT | `/ingestion/saved-searches/{id}/` | Update Saved Search |
| POST | `/ingestion/saved-searches/pin-saved-search/` | Pin Saved Search |
| DELETE | `/ingestion/saved-searches/pin-saved-search/` | Remove Pined Saved Search |
| PUT | `/ingestion/saved-searches/pin-saved-search/` | Update Pinned Saved Search |

## Machine-readable artifacts (12)

- **OpenAPI** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/openapi/cyware-threat-data-api-openapi.yml
- **Documentation** — https://techdocs.cyware.com/ctix/en/product-documentation.html
- **APIReference** — https://ctixapiv3.cyware.com/
- **Authentication** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/authentication/cyware-authentication.yml
- **Conventions** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/conventions/cyware-conventions.yml
- **ErrorCatalog** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/errors/cyware-problem-types.yml
- **DataModel** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/data-model/cyware-data-model.yml
- **LLMsTxt** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/llms/cyware-intel-exchange-api-llms.txt
- **Documentation** — https://techdocs.cyware.com/co/en/product-documentation.html
- **APIReference** — https://orchestrateapi.cyware.com/
- **Webhooks** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/asyncapi/cyware-orchestrate-webhooks.yml
- **LLMsTxt** — https://raw.githubusercontent.com/api-evangelist/cyware/refs/heads/main/llms/cyware-orchestrate-api-llms.txt

## Other Cyware APIs (12)

- [Cyware MCP Server](https://apis.io/apis/cyware/cyware-mcp-server/)
- [Cyware Administration API](https://apis.io/apis/cyware/cyware-administration-api/)
- [Cyware Allowed Indicators API](https://apis.io/apis/cyware/cyware-allowed-indicators-api/)
- [Cyware Analytics API](https://apis.io/apis/cyware/cyware-analytics-api/)
- [Cyware ATT&CK Navigator API](https://apis.io/apis/cyware/cyware-att-ck-navigator-api/)
- [Cyware Authentication API](https://apis.io/apis/cyware/cyware-authentication-api/)
- [Cyware Code Snippets API](https://apis.io/apis/cyware/cyware-code-snippets-api/)
- [Cyware Create Intel via Open API API](https://apis.io/apis/cyware/cyware-create-intel-via-open-api-api/)
- [Cyware Custom Email Templates API](https://apis.io/apis/cyware/cyware-custom-email-templates-api/)
- [Cyware Dashboards API](https://apis.io/apis/cyware/cyware-dashboards-api/)
- [Cyware Detailed Submission API](https://apis.io/apis/cyware/cyware-detailed-submission-api/)
- [Cyware Events API](https://apis.io/apis/cyware/cyware-events-api/)

## Tags

Threat Data

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/cyware/cyware-threat-data-api/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/cyware/.
