Ranks CVEs by rising attention (traction), reported severity (impact), and sector targeting (attribution). Cross-source signal: CISA KEV, FIRST EPSS, ICS-CERT, threat-actor crosswalk. Optional AI enrichment for one-line reasons and daily executive summary.
⚙ Worker URL
Ghost Worker
Not configured
Same Worker URL used by Tools 50/51/52/53 — shared via ghost2210_exploit_proxy localStorage key. Configure once; every tool inherits.
Anthropic Key
Not configured — raw signals only
AI is augmentation, not verdict. Traction score computed from objective signals. AI produces one-line reasons and executive summary from retrieved data with source citations. No hallucinated attribution.
CISA KEV—
FIRST EPSS—
CISA ICS-CERT—
Local baseline—
AI enrichment—
Ready. Click "Run Analysis" to pull signals.
—KEV entries
—Newly on KEV (window)
—Ransomware-tied (in window)
—Match your sector
AI Executive Summary — Today's Picture
Top Trending — Ranked by Combined Score
—
Run analysis to populate.
Newly on KEV — Hard Signal
Run analysis to populate.
Ransomware-Tied — Priority Signal
Run analysis to populate.
Honest Limits — Read Before Briefing Leadership
What the traction score is: arithmetic over objective signals from CISA KEV, FIRST EPSS, CISA ICS-CERT, and threat-actor→sector crosswalk. Signals include: KEV membership, KEV recency (in your selected window), ransomware use flag from CISA, ICS-CERT sector-tagged, EPSS score band, CVSS band. Same-input-same-output. Reproducible.
What the traction score is NOT: a prediction that this CVE will be exploited against you. It is a ranking of what the public signal environment is paying attention to. Exposure to a trending CVE is a defender question — use Tools 44, 49, 52 to determine whether YOU have the affected surface.
What AI enrichment adds: one-line reason synthesis from retrieved KEV + ICS-CERT + threat-actor data with source citations, plus a daily executive summary. AI does not compute the traction score. AI does not assert sector attribution beyond what the retrieved sources support.
Sector attribution confidence tiers shown as chip styling: solid green = hard signal (ICS-CERT direct tag or KEV vendor→sector), cyan outline = medium (threat-actor crosswalk from CISA-named campaigns), grey dashed = low (AI inference from advisory text; verify).
Delta signals require a baseline. First run establishes baseline. Subsequent runs compare against the cached previous state to show newly-added KEV entries and EPSS score changes. Clear baseline with browser storage if you need a hard reset.