GreyNoise Intelligence · Schema
CVEExploitationActivity
SecurityThreat IntelligenceCybersecurityIP ReputationVulnerability ManagementNetwork TelemetrySOC AutomationPublic APIs
Properties
| Name | Type | Description |
|---|---|---|
| activity_seen | boolean | Whether exploitation activity has been observed. |
| benign_ip_count_1d | integer | The count of benign IPs in the last day. |
| benign_ip_count_10d | integer | The count of benign IPs in the last 10 days. |
| benign_ip_count_30d | integer | The count of benign IPs in the last 30 days. |
| threat_ip_count_1d | integer | The count of threat IPs in the last day. |
| threat_ip_count_10d | integer | The count of threat IPs in the last 10 days. |
| threat_ip_count_30d | integer | The count of threat IPs in the last 30 days. |
JSON Schema
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"$id": "https://api-evangelist.github.io/greynoise/json-schema/greynoise-cve-exploitation-activity-schema.json",
"title": "CVEExploitationActivity",
"type": "object",
"properties": {
"activity_seen": {
"type": "boolean",
"description": "Whether exploitation activity has been observed.",
"example": true
},
"benign_ip_count_1d": {
"type": "integer",
"description": "The count of benign IPs in the last day.",
"example": 100
},
"benign_ip_count_10d": {
"type": "integer",
"description": "The count of benign IPs in the last 10 days.",
"example": 500
},
"benign_ip_count_30d": {
"type": "integer",
"description": "The count of benign IPs in the last 30 days.",
"example": 1000
},
"threat_ip_count_1d": {
"type": "integer",
"description": "The count of threat IPs in the last day.",
"example": 10
},
"threat_ip_count_10d": {
"type": "integer",
"description": "The count of threat IPs in the last 10 days.",
"example": 50
},
"threat_ip_count_30d": {
"type": "integer",
"description": "The count of threat IPs in the last 30 days.",
"example": 100
}
}
}
Work with this as data
Every JSON Schema here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for schemas
4 MCP tools reach this
find_json_schemasBrowse and filter every JSON Schema in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This JSON Schema
curl "https://apis.io/api/v1/json-schemas/greynoise-cve-exploitation-activity"
All schemas
curl "https://apis.io/api/v1/json-schemas?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.
A second provider on the same verified email joins the account you already have.