The Threat Landscape
Real-time cybersecurity data from 17 intelligence sources. CVE trends, ransomware tracking, malware analysis, botnet infrastructure, and global exposure data.
Latest CISA Security Advisories
Recent cybersecurity advisories from the U.S. Cybersecurity and Infrastructure Security Agency.
Known Exploited Vulnerabilities
Vulnerabilities confirmed to be actively exploited in the wild, tracked by the U.S. Cybersecurity and Infrastructure Security Agency.
KEV Additions by Year
Most Affected Vendors (KEV)
Recently Added
Active Threat Groups
Tracking 394 ransomware groups and their recent activity.
Recent Ransomware Activity
Licindia
View group profile →Grayson Rural Electric Cooperative
View group profile →Marlborough Partners
View group profile →Chip 1 Exchange
View group profile →Quality Resource Pvt
View group profile →Holland & Knight
View group profile →Szechenyi Programiroda Nonprofit Kf
View group profile →Oportunidados
View group profile →PT Intraco Penta Tbk
View group profile →Honeycomb Programs Inc
View group profile →Seasia Infotech
View group profile →SCHMIDT
View group profile →Manchester Airports Group
View group profile →specialtytextile.com
View group profile →REXT Holdings Co., Ltd.
View group profile →What's exposed right now
Real-time data from Shodan on internet-facing services and attack surface exposure worldwide.
Global SSH Exposure Rankings
Internet Scanning Intelligence
3 of 3 blacklisted IPs are also observed performing internet-wide scanning by GreyNoise.
Exploit Prediction Scores
CVEs with the highest probability of exploitation in the next 30 days, scored by FIRST.org's Exploit Prediction Scoring System.
APT Threat Explorer
Top Threat Origins
Showing all 503 threat groups
Source: ETDA Threat Group Cards · 503 groups indexed
Malware, abuse & detection intelligence
Unified threat feed from URLhaus, AbuseIPDB, VirusTotal, and Malware Bazaar — malware URLs, blacklisted IPs, and recent malware samples.
Malware Distribution
13% of tracked URLs are currently serving malware
Command & Control Infrastructure
Active botnet C2 servers tracked by Feodo Tracker. These servers control malware-infected systems worldwide.
Global Breach Landscape
Tracking 1,033 known data breaches affecting 17.8 billion accounts worldwide.
Most Recent Breaches Added
Recently published vulnerabilities
The latest CVE publications from CIRCL — newly disclosed vulnerabilities that may affect your infrastructure.
Server-Side Request Forgery (SSRF)
Improper Authorization Validation
Command Restriction Bypass
GitPython before 3.1.58 Path Traversal via .gitmodules Submodule Name
Authenticated Stack Overflow Vulnerabilities lead to Denial-of-Service in AOS-CX
Unauthenticated Format String Vulnerability leads to Remote Code Execution in AOS-CX
Authenticated Stored Cross-Site Scripting Vulnerability (XSS) in AOS-CX Web-Based Management Interface
Lack of Cross-Site Request Forgery (CSRF) Protections for Certificate-Authenticated Sessions in AOS-CX
This is what we protect you against
The threat landscape evolves daily. Make sure your security does too.
Source Health Dashboard
Build: 2026-09-02T20:19:06.649Z | 15/17 sources active