Get threat history for a web property

Retrieve historical threat observations for a web property. This endpoint returns time ranges during which threats were detected on the host.

You can define a specific time frame of interest. If you do not specify a time frame, this endpoint will search the historical dataset that is available to your account.

You can filter by threat name.

This endpoint is available to organizations that have access to the Adversary Investigation module.

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Path Params
string
required

A web property identifier in hostname:port format.

Query Params
uuid
required

The ID of a Censys organization to associate the request with. See the Getting Started docs for more information.

string

Start of date range (RFC3339 format, e.g., 2024-01-01T00:00:00Z). If not specified, defaults to the maximum query window back from the end time.

string

End of date range (RFC3339 format, e.g., 2024-01-31T23:59:59Z). If not specified, defaults to now. Cannot be in the future.

int32
1 to 100
Defaults to 100

Number of results per page (max 100)

string

Pagination token from previous response

string

Filter by threat name

order_by
array of strings | null

Order observations by these fields. Multiple values can be provided to sort by multiple fields (e.g., ['threat_name DESC']).

order_by
Headers
uuid

The ID of a Censys organization to associate the request with. See the Getting Started docs for more information. Note: The header parameter is supported for atypical use cases; we recommend always providing this field via the query parameter.

string
enum
Defaults to application/json

Generated from available response content types

Allowed:
Responses

Language
Credentials
Bearer
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json
application/problem+json