Threat Intelligence Hub
A daily view of what attackers are exploiting, who ransomware groups are hitting and where malware is being hosted, drawn from open-source threat intelligence feeds.
Actively exploited vulnerabilities
CISA KEV| CVE | Affected | Added |
|---|
Critical vulnerabilities this week
NVD| CVE | CVSS | Details | Published |
|---|
Ransomware activity
ransomware.liveBy group
Who is being targeted
ransomware.liveBy sector
By country
Malware distribution
abuse.ch URLhausBy threat type
Most common tags
Newest malware hosts
abuse.ch URLhausShown defanged for safety. Do not visit these hosts.
| Host | Threat | Seen |
|---|
Botnet command and control
Latest government advisories
CISAWant this intelligence applied to your organisation?
Our threat intelligence and managed SOC services turn these signals into detections, hunts and actions specific to your environment.
Sources and methodology
Data is collected automatically from public sources: the CISA Known Exploited Vulnerabilities catalogue, the NIST National Vulnerability Database, CISA advisories, abuse.ch URLhaus and Feodo Tracker, and ransomware.live. Ransomware figures reflect claims published by criminal groups and are not verified; victim names are deliberately not shown. Information is provided as is, for awareness only. This product uses data from the NVD API but is not endorsed or certified by the NVD.
Tell us what your regulator, auditor or board is asking for.
We will come back to you with how we would approach it, who would work on it and what it would take.