CTIX
Network live

Intel Exchange API Reference

Intel Exchange is an any-to-any threat intelligence platform (TIP) that is built as a unique solution for the collection, processing, and dissemination of threat intelligence data in various formats. Intel Exchange allows you to receive and share threat intelligence in the form of human and machine-readable packages. By utilizing the Structured Threat Information eXpression (STIX) format and the Trusted Automated Exchange of Intelligence Information (TAXII) mechanism, Intel Exchange achieves Threat Data enrichment and threat intelligence exchange. In addition to that, the Intel Exchange application systematically converts, stores, and organizes actionable threat data across various formats, including STIX 1.x, STIX 2.0, XML, JSON, Cybox, OpenIOC, and MAEC. For more information, see Intel Exchange Product Documentation.

For AI agents and LLM-based discovery, see the Intel Exchange LLM-friendly API guide.

Supported Intel Exchange Version: 3.6.2 and later versions.

You can use Intel Exchange to automate threat intelligence operations and integrate Intel Exchange with other systems in your environment. The Intel Exchange API reference includes the following public API endpoints: