Assets
What’s exposed — vendors, products, and the organisations behind them, ranked by real attacker pressure.
Last updated: 23 August 2026 00:24 UTC
Act
Your stackdeclare your vendors, see your exposure — actors, KEV, controls (no sign-in, all in your browser)Vendor leaderboard6,700 vendors ranked by 24-month CVE pressureActor × vendor heatmapwhich threat actors target which vendors, by recencySectorswhich industries the tracked actors targetExplore
Named victimsorganisations named in actor records — 246 actors carry victimsBreach disclosuresSEC 8-K material-incident filings, linked to actorsLLM-credited discoverieswhich vendors' CVEs are being found by AI modelsUnderstand
Who is exposed?vendor KEV velocity and cohort volume over timeRisk scoringhow the 0–100 composite worksRead
All articlesVendors with new criticals — recent CISA KEV addslast 30 days
- SynacorCVE-2026-73570Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability1 KEV addAug 211 CVEs/30d
- AppleCVE-2026-65400Apple macOS Improper Authentication Vulnerability1 KEV addAug 18275 CVEs/30d
- BroadcomCVE-2026-59310Broadcom VMware vCenter Path Traversal Vulnerability1 KEV addAug 18
- MicrosoftCVE-2026-55040Microsoft SharePoint Weak Authentication Vulnerability3 KEV addsAug 18537 CVEs/30d
- CiscoCVE-2026-20349Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall…2 KEV addsAug 1175 CVEs/30d
- ProgressCVE-2026-8037Progress LoadMaster Command Injection Vulnerability1 KEV addAug 75 CVEs/30d