Tell me what you have, or pick a starter below. I will point you to the right CSINT page and the next safe step.
Active exploitation
Actively Exploited CVEs
Enter a CVE. CISA KEV, EPSS, and NVD are read together. See active exploitation first.
Official, passive feeds only. Runs in the browser.
Scores are priority indicators. Verify environment, inventory, and patch state separately.
- CVE
- Exploitation
- Evidence
- Report
Enter a CVE, read exploitation status, write evidence, then generate the report.
CISA KEV
Use Pull radar to load live CISA KEV data.
CISA KEV radar
Filter actively exploited vulnerabilities. The list is for priority, not full inventory.
15 live queries per minute. Results are a priority note, not final proof.
This module is for legal, passive, defensive threat intelligence only. It reads official public feeds (CISA KEV, FIRST EPSS, NVD) exclusively; it does not support exploit creation, target scanning, or attacks. Scores are risk indicators, not final proof; context, asset inventory, and patch state must be verified separately.

