Cyber Resilience

Cyber Resilience

Last updated: 22 August 2026 23:44 UTC

All news →

🇪🇺 European context

EU and UK enrichment for the same CVE corpus — ENISA EUVD references, UK NCSC advisories, and regulatory framing (NIS2 / DORA / CRA / UK NIS Regs).

64
CVEs with EU CSIRT advisories
in the last 30 days
Top contributing CSIRTs
34
CISA-only KEVs
(ENISA: not exploited)

🌏 Asia-Pacific context

APAC framing for the same CVE corpus — ISO/IEC 27001 as the control baseline, JPCERT/CC advisories, and regional incident- reporting law. APAC landscape →

Incident-reporting law
  • APPI (Act on the Protection of Personal Information) (Japan)
    Report qualifying personal-data breaches to the PPC promptly; sector incident guidance via METI and JPCERT/CC.
  • Security of Critical Infrastructure Act (SOCI) (Australia)
    Critical-infrastructure operators must report cyber incidents to ASD/ACSC — 12 hours for a significant impact, 72 hours for a relevant impact.
  • Cybersecurity Act 2018 + PDPA (Singapore)
    Critical-information-infrastructure owners report incidents to CSA; PDPA requires notifiable data breaches be reported to the PDPC within 72 hours.
Pick your lane
Security leaderBoard-ready riskWhat changed, whether it hits you, and what to tell the board.Lean IT orgsWhat to patch firstNo security team? The short list of what matters this week.ResearcherPivot the dataCVE → weakness → technique → actor → control, with provenance.MSPAcross your clientsOne weekly read to triage exposure across every stack you run.
See it live
Daily CVE Tracker — exploit pressure over the last 30 daysDaily CVE Tracker3 new KEV·8 fresh criticalsEvery published CVE, scored and ranked. Rebuilt nine times a day.AI Hype Index — score and 10-day trendAI Hype Index81 todayHow far the AI-vulnerability story has run ahead of the evidence.Observed threat map — countries shaded by observed attack volumeObserved Threat Map90 countries·90 daysAttack volume we can actually observe: leak-site claims, filings, reporting.Controls coverage map — framework-pair coverage heat gridControls Coverage Map30,810 two-way mappingsWhich framework covers what, in both directions, with the gaps left visible.
Exposures — step back and see your full exposure across nine layers × five weakness classes →

Or browse by pillar: Vulnerabilities·Threats·Assets·Controls

The public feeds are raw material anyone can pull — the cleanup, the two-way mappings, and the decision layer on top are ours. Methodology →

Follow the daily brief: RSS · JSON point any reader at the RSS feed — no email needed.