Cyber Risk Directory
Public-source intelligence across vulnerabilities, ransomware activity, industries and countries. Updated continuously.
Top known-exploited vulnerabilities (1,655 tracked)
| CVE | Name | EPSS | Ransomware |
|---|---|---|---|
| CVE-2021-26086 | Atlassian Jira Server and Data Center Path Traversal Vulnerability | 100.0% | No |
| CVE-2024-23897 | Jenkins Command Line Interface (CLI) Path Traversal Vulnerability | 100.0% | Yes |
| CVE-2024-3400 | Palo Alto Networks PAN-OS Command Injection Vulnerability | 100.0% | Yes |
| CVE-2024-21893 | Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request | 100.0% | Yes |
| CVE-2023-35082 | Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core Authenticati | 100.0% | Yes |
| CVE-2024-21887 | Ivanti Connect Secure and Policy Secure Command Injection Vulnerabilit | 100.0% | Yes |
| CVE-2023-1671 | Sophos Web Appliance Command Injection Vulnerability | 100.0% | No |
| CVE-2023-22518 | Atlassian Confluence Data Center and Server Improper Authorization Vul | 100.0% | Yes |
| CVE-2023-4966 | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerabili | 100.0% | Yes |
| CVE-2023-44487 | HTTP/2 Rapid Reset Attack Vulnerability | 100.0% | No |
| CVE-2023-32315 | Ignite Realtime Openfire Path Traversal Vulnerability | 100.0% | No |
| CVE-2023-35078 | Ivanti Endpoint Manager Mobile Authentication Bypass Vulnerability | 100.0% | Yes |
| CVE-2023-1389 | TP-Link Archer AX-21 Command Injection Vulnerability | 100.0% | No |
| CVE-2023-27350 | PaperCut MF/NG Improper Access Control Vulnerability | 100.0% | Yes |
| CVE-2023-0669 | Fortra GoAnywhere MFT Remote Code Execution Vulnerability | 100.0% | Yes |
Company security profiles (25 analyzed)
Cyber Exposure Scores computed from public signals — email authentication, DNS, TLS, internet exposure and breach history. Newly analyzed domains appear here automatically.
| Domain | Exposure score | Industry |
|---|---|---|
| carrefour.es | 82 | — |
| fbi.gov | 89 | — |
| elperiodico.com | 79 | — |
| elperiodico.es | 72 | — |
| corriere.it | 85 | — |
| gmail.com | 81 | — |
| ovhcloud.com | 85 | — |
| ovh.com | 81 | — |
| ovh.xom | 59 | — |
| steam.org | 71 | — |
| steam.com | 59 | — |
| gwis.jrc.ec.europa.eu | 70 | — |
| eu-space.europa.eu | 70 | — |
| cloudflare.com | 95 | — |
| powerdmarc.com | 96 | — |
| dataspace.copernicus.eu | 92 | — |
| claude.ai | 89 | — |
| openai.com | 89 | — |
| quiescence.eu | 91 | — |
| eu261.es | 91 | — |
| meta.com | 83 | Technology |
| amazon.com | 85 | Retail |
| apple.com | 90 | Technology |
| microsoft.com | 95 | Technology |
| google.com | 91 | Technology |
Industry risk profiles
Is your domain exposed?
Run a free, instant security report for any domain — exposure score, email auth, TLS and breach metadata.
Get your free reportAll information is aggregated from public sources for awareness only and does not constitute an accusation or a security assessment. No personal data or credentials are published.