Go straight to di content

Security public data

Vulnerabilities, techniques, groups and logs — everyone fit trace back to where e come from.

Dey load di data…

Scope and how dem dey collect di data

Dis na di first snapshot: di 50 most recent KEV entries, three ATT&CK groups wit dia techniques, and OTRF public lab logs. SCAP na catalog of specifications, e no be evaluation engine or di full set of check definitions. Automatic updates no dey configure.

Sourced claims, logs wey dem observe, and analysis scenarios, dem dey keep dem separate. KEV listing alone no fit decide say particular asset dey vulnerable or name attacker.

The IPLD CIDs na the source of truth; the JSON-LD and Datomic forms dem generate from the same data. Dem dey serve the blocks over HTTPS. Distribution to the IPFS network and registration under the encyclopedia single ref, na separate steps.

MITRE ATT&CK terms of use · OTRF terms of use