---
title: "Ransomware statistics"
method: GET
path: "/ransomware/stats"
tags: ["ransomware"]
---

# Ransomware statistics

`GET /ransomware/stats`

The aggregate the sync job writes under `ransomware:stats`, returned as
is — a free-form object whose keys follow the sync job, not this handler.
Costs one request of the monthly quota.

## Response `200`

Cached statistics object, shape owned by the sync job

- object

## Other responses

- `401` — Unauthorized - Missing or invalid API key
- `429` — Too many requests - Rate limit exceeded
- `503` — Statistics not cached yet

## Changes

- **2026-09-23** `edb544398108` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api/changes/ransomware/stats/get.md)

---

[API](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api.md) · [All operations](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api/llms.txt) · [OpenAPI document](https://skmtc.dev/ismalicious/apis/ismalicious-threat-intelligence-api/revisions/0fa256b179f3?raw)
