CYBER THREAT INTELLIGENCECommand Centre
LOADINGChecking sources…
PHASE 1H.7 · VISUAL CYBER INTELLIGENCE EXPERIENCE

See what matters. Act on evidence.

Known exploitation, CVSS severity, EPSS probability, ransomware activity and Malaysia/ASEAN signals — correlated with direct source traceability.

CTI

Assessing intelligence

ASSESSING

Correlating CISA, NVD, FIRST EPSS, ransomware and MyCERT intelligence.

DECISION LAYER

Top 3 things that matter now

Click any card for details or its authoritative source.

Known exploitation momentum

KEV additionsRansomware-related additions

Exploit Risk Matrix

Top-priority KEVs plotted by CVSS and EPSS. Click a point to drill down.

Recent claim activity

LOADING

ASEAN signal concentration

Newest correlated signals

EXECUTIVE INTELLIGENCE

Management situation brief

A concise, evidence-based summary generated from the five live intelligence sources.

Generating briefing…

Waiting for correlated intelligence.

Confidence —

What changed

What to watch

Top KEV watchlist

Regional picture

Source confidence

MALAYSIA & ASEAN

Regional Threat Intelligence

Malaysia-focused cyber signals with ASEAN ransomware activity from the currently loaded public intelligence feed.

REGIONAL LENS

National cyber signal picture

ASSESSING
MY

Waiting for Malaysia intelligence.

Derived OSINT signal — not an official national threat level.
≤24h
≤7d
≤30d
Top group

Regional ransomware activity

11 MEMBERS
claims in loaded feed
≤24h
≤7d
Active countries
Top country

ASEAN claim concentration

Latest-feed sample

Regional threat groups

Targeted sectors

Latest MyCERT advisories

National advisory feed
MyCERT ↗
RANSOMWARE INTELLIGENCE

Global Activity Map & Explorer

Ransomware.live public claim intelligence mapped across the retained rolling archive. Click countries, groups or victim claims to drill into the evidence.

Open ransomware.live ↗
FEED STATUSCHECKINGSelecting freshest public feed…
LAST COLLECTOR CHECKGitHub Actions
LATEST SOURCE CLAIMWaiting for source data
NEW THIS CHECKCompared with previous collection
LIVE RANSOMWARE PULSEVictim-claim intelligence · auto refresh every 5 minutes
LATEST CLAIMWaiting for source data
CLAIMS ≤24HCurrent live window
COUNTRIES ≤24HMapped countries
ACTIVE GROUPS ≤24HObserved groups
MALAYSIA ≤24HMalaysia focus
Retained archiveRolling history
Claims · 90DSelected window
Claims ≤24hLatest activity
Active groupsIn selected window
CountriesWith mapped claims

Where ransomware claims are appearing now

LIVE · last 24 hours
LowHighLatest ≤24h
Country heat = selected time window. Pulsing markers = latest claims discovered within 24 hours.Mapping retained claims…

Claim trend

Selected history window
LIVE

Most active groups

Click a group for profile
DRILL-DOWN

Targeted countries

Click to inspect claims

Targeted sectors

Selected window

Recent victim claims

Click for evidence view
OSINT

Ransomware group profiles

Activity, countries, sectors and any TTP/CVE/tool metadata exposed by the public source.
— GROUPS
VULNERABILITY INTELLIGENCE

Exploit Priority & Exposure Signals

Known exploitation from CISA KEV, severity from NVD and exploit probability from FIRST EPSS — visualised for fast decision-making.

PRESSURE

Assessing exploit signals

ASSESSING

Correlating actively exploited KEVs, CVSS severity, EPSS probability and ransomware association.

CVSS CoverageNVD enriched
EPSS CoverageFIRST scored
PRIORITY WATCHLIST

Top vulnerabilities to watch now

Click a card to open correlated evidence and authoritative source links.

CVSS × EPSS × CTI Priority

Upper-right means severe + highly likely exploitation. Click a point for evidence.
CriticalHighMedium

Severity & exploit probability

scored
Critical High Medium Low
FIRST EPSS probability bands
Coverage
EPSS ≥10%
Top 1%

New exploited vulnerabilities

CISA KEV additions vs ransomware-associated additions
LIVE DATA
KEV additionsRansomware-related

Most represented vendors

Click a vendor to filter the live KEV table

Known exploited vulnerability intelligence

Loading…
CVEVendor / ProductCVSSEPSSRansomwareCTIIntelligenceEvidence
UNIFIED INTELLIGENCE

Live operational feed

Newest CISA, NVD, EPSS, ransomware and MyCERT signals in one chronological stream.

LIVE CORRELATION
LIVE
INTELLIGENCEWaiting for source data…

Operational stream

Building signals…
SOURCE ASSURANCE

Collection health & traceability

Every intelligence item retains its originating source and collection state.

CTI Priority = CVSS + EPSS + ransomware use + recency

CVSS up to 30 + EPSS up to 35 + known ransomware use up to 25 + recent KEV addition up to 10 = 100. This is external-intelligence prioritisation, not organisational risk.

0–100
Data caveat: ransomware victim entries are public claims and not automatically independently verified incidents. Ransomware map and ASEAN counts use the retained Ransomware.live historical mirror when available and fall back to recent public-claim data; they are OSINT claims, not complete national incident totals. The Malaysia signal score is dashboard-derived OSINT. EPSS is provided by FIRST. This product uses NVD data but is not endorsed or certified by NVD.