Platforms/VExDay·threat intelligence

1,692 CVEs under active exploitation

Most CVEs are noise. We show you the signal.

Of 389,505 cataloged vulnerabilities, very few are actually under attack. VExDay shows exactly which ones, and whether they affect your stack.

vexday.io/pt/triagem · command room
Demo
Under attackIncidentsRansomwareBrazilIOCsBriefing
389,505Total CVEs
21,037Critical
1,692KEV
+71,3%YoY growth

Being exploited now

CVE-2024-21887Command injection in web components of Ivanti Connect Secure and Policy Secure
CVE-2019-0708Remote code execution in Remote Desktop Services (BlueKeep)
CVE-2014-0160Out-of-bounds memory read in the OpenSSL heartbeat (Heartbleed)
CVE-2014-6271Code execution via environment variables in GNU Bash (Shellshock)
CVE-2015-1635Remote code execution in Windows HTTP.sys
CVE-2021-40438SSRF in Apache HTTP Server mod_proxy

Board Intelligence

Today's cyber risk, in a number the board understands.

A daily 0–100 index of the threat landscape for Brazil. It's the weighted average of seven signals: exploitation pressure (EPSS), active ransomware, new critical CVEs, KEV, incidents and more. Every point is traceable to the data that produced it. No black box.

Risk index · Brazil
Demo
52
Elevatedout of 100 · higher is more dangerous
CalmModerateElevatedHighCritical
020406080100

Last 31 days

Exploitation pressureweight 15%100
Active ransomware in Brazilweight 20%64
New critical CVEs (7 days)weight 15%41

Plus four more signals: KEV, incidents and others.

Threat observatory

Threats to Brazil.
Who attacks, where and with what.

Ransomware intelligence focused on Brazil: which groups attack Brazilian companies, which sectors are most targeted and which flaws these groups exploit.

587

Brazilian victims cataloged

111

groups active against Brazil

228

in the last year

Most targeted sectors

Professional services
111
Manufacturing
87
Technology
72
Healthcare
54
Finance
47

Groups that attack Brazil the most

lockbit5
51
lockbit3
39
ransomhub
35
thegentlemen
32
arcusmedia
20

Source: ransomware.live and MITRE ATT&CK, via VExDay.

All your threat intelligence
in one place.

From the analyst hunting IOCs to the board that wants a number. One dataset, many readings.

Incidents

Incident database and APT profiles

Groups, TTPs mapped to MITRE ATT&CK, victims and sectors.

Exploitation

CVEs, KEV and active exploits

EPSS, public PoC and median time to the first exploit.

IOCs

Indicators of compromise

IPs, domains and hashes correlated with campaigns.

Validators

Instant checks

Malicious URLs, phishing, email breach lookup, IP checks and header analysis.

Briefing

Daily briefing

What changed in the last 24 hours, in decision-maker language.

My Dashboard

Only what affects you

Your stack matched against the active exploitation catalog.

How many of these 1,692 affect your stack?

We match the active exploitation catalog against your inventory and show you the result in 30 minutes.