Skip to content
COOEY

◄ COMMAND CENTER

SITREP · SITUATIONAL AWARENESS

LIVE

Real-time posture across the intelligence corpus — correlation fires, threat throughput, and active narratives. Windows are 7-day / 30-day, honest to our collector cadence.

Global posture ▸
DEFCON 1
SEVERE · 25 SEVERE (DEFCON-1) escalations active
Correlations / 7D
163
▲ 75% vs prior 7d
Active threats / 7D
175
▲ 24% vs prior 7d
KEV · CVE · advisories
FedRAMP monitored
424
authorized products under CVE watch
SYSTEM VITALS 13 SOURCES LIVE · freshest 3h ago 2,607 ENTITIES 3,592 EVENTS 29,281,452 DEFCON EVENTS LIVE
GLOBAL THREAT MAP // LIVE intel · geo →
85.137.53.71 · NL76.76.21.21 · US104.20.24.117 · CA172.66.150.162 · CA209.182.237.133 · JP185.10.68.127 · RO209.94.90.1 · US · Scattered Spider172.66.0.227 · CA · Play, Scattered Spider45.131.66.106 · DE64.20.53.230 · US185.70.42.45 · CH91.132.163.78 · DE · Lazarus Group142.251.186.191 · US18.160.156.19 · US18.160.156.24 · US18.160.156.28 · US18.160.156.44 · US176.65.139.204 · NL3.96.91.14 · CA83.142.209.214 · DE · Rocke34.117.59.81 · US · Rocke178.236.252.133 · NL · Earth Lusca77.91.123.187 · GE · Earth Lusca96.126.130.126 · JP · Sandworm Team188.208.141.177 · IN · Mustang Panda, RedEcho194.5.97.169 · NL · Mustang Panda, RedEcho104.20.44.100 · CA · Sandworm Team172.66.169.62 · CA · Sandworm Team137.220.156.33 · JP104.26.3.16 · CA · Turla104.26.2.16 · CA · Turla172.67.75.40 · CA · Turla174.138.125.138 · US · Turla172.67.183.105 · CA · Earth Lusca104.21.18.221 · CA · Earth Lusca76.76.21.98 · US · Earth Lusca, Contagious Interview76.76.21.22 · US · Earth Lusca, Contagious Interview140.82.113.3 · US · Earth Lusca, Contagious Interview172.66.135.165 · CA172.66.139.132 · CA
malicious IOC origin 40 geolocated indicators · node graph ▸
THREAT ACTIVITY // 7-DAY exposures →
Correlation throughput 7D 30D GEO · LIVE ▸
08-06 correlation fireshigh-sev events 08-12
Active narratives · story clusters
×2
CVE-2024-55591: An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-2
CVE-2024-55591
CRITICAL
×2
CVE-2026-16232: An authentication bypass vulnerability in the Check Point SmartConsole login pro
CVE-2026-16232
CRITICAL
×2
CVE-2023-3519: Unauthenticated remote code execution
CVE-2023-3519
CRITICAL
×2
CVE-2025-3248: Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/
CVE-2025-3248
CRITICAL
×2
CVE-2023-41265: An HTTP Request Tunneling vulnerability found in Qlik Sense Enterprise for Windo
CVE-2023-41265
CRITICAL
×2
CVE-2024-11680: ProjectSend versions prior to r1720 are affected by an improper authentication v
CVE-2024-11680
CRITICAL
THREAT_TICKER
CVE-2026-71362 CVE-2026-71362: Adobe Commerce is affected by an Incorrect... CVE-2026-73032 CVE-2026-73032: PapersGPT for Zotero 0.6.1 contains a remote... CVE-2026-5917 CVE-2026-5917: libgit2 versions v0.27.0 through v1.9.0 built... CVE-2021-44228 CVE-2021-44228: Apache Log4j2 2.0-beta9 through 2.15.0... CVE-2026-27302 CVE-2026-27302: Adobe Campaign Classic (ACC) is affected by... CVE-2026-71398 CVE-2026-71398: Adobe Campaign Classic (ACC) is affected by... CVE-2026-13473 CVE-2026-13473: IBM Storage Protect Client 8.1.0.0 through... CVE-2026-73034 CVE-2026-73034: DB-GPT v0.8.1 contains an unauthenticated... CVE-2018-0101 CVE-2018-0101: A vulnerability in the Secure Sockets Layer... CVE-2020-3187 CVE-2020-3187: A vulnerability in the web services interface... CVE-2026-14501 CVE-2026-14501: IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM... CVE-2026-16439 CVE-2026-16439: In Eclipse OpenJ9 versions up to 0.60, using... CVE-2026-69102 CVE-2026-69102: MaxKey contains an unauthorized access... CVE-2026-72898 Metabase SQL Injection Vulnerability CVE-2026-20349 Cisco Secure Firewall Adaptive Security Appliance (ASA) and... CVE-2026-68820 Microsoft Windows Ancillary Function Driver for WinSock... CVE-2026-71362 CVE-2026-71362: Adobe Commerce is affected by an Incorrect... CVE-2026-73032 CVE-2026-73032: PapersGPT for Zotero 0.6.1 contains a remote... CVE-2026-5917 CVE-2026-5917: libgit2 versions v0.27.0 through v1.9.0 built... CVE-2021-44228 CVE-2021-44228: Apache Log4j2 2.0-beta9 through 2.15.0... CVE-2026-27302 CVE-2026-27302: Adobe Campaign Classic (ACC) is affected by... CVE-2026-71398 CVE-2026-71398: Adobe Campaign Classic (ACC) is affected by... CVE-2026-13473 CVE-2026-13473: IBM Storage Protect Client 8.1.0.0 through... CVE-2026-73034 CVE-2026-73034: DB-GPT v0.8.1 contains an unauthenticated... CVE-2018-0101 CVE-2018-0101: A vulnerability in the Secure Sockets Layer... CVE-2020-3187 CVE-2020-3187: A vulnerability in the web services interface... CVE-2026-14501 CVE-2026-14501: IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM... CVE-2026-16439 CVE-2026-16439: In Eclipse OpenJ9 versions up to 0.60, using... CVE-2026-69102 CVE-2026-69102: MaxKey contains an unauthorized access... CVE-2026-72898 Metabase SQL Injection Vulnerability CVE-2026-20349 Cisco Secure Firewall Adaptive Security Appliance (ASA) and... CVE-2026-68820 Microsoft Windows Ancillary Function Driver for WinSock...
CORRELATION_FIRES incident vault →
#FIRE-002B 08-12 00:20Z
CVE-2018-0101: A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco
◈ Duo Federal, Cisco Umbrella for Government +6 more
CVECRITICAL
#FIRE-F257 08-12 00:20Z
CVE-2021-44228: Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12
◈ Duo Federal, Cloud Insights +8 more
CVECRITICAL
#FIRE-A285 08-12 00:20Z
CVE-2020-3187: A vulnerability in the web services interface of Cisco Adaptive Security Applian
◈ Duo Federal, Webex for Government +6 more
CVECRITICAL
#FIRE-DF45 08-12 00:20Z
Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense...
◈ Duo Federal, Cisco Meraki for Government +6 more
KEVHIGH
#FIRE-071C 08-12 00:20Z
Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
◈ Azure Government (includes Dynamics 365), Azure Commercial Cloud +2 more
KEVHIGH
#FIRE-CC3F 08-12 00:20Z
CVE-2026-13473: IBM Storage Protect Client 8.1.0.0 through 8.1.27.0, 8.1.27.1, and 8.2.0.0 throu
◈ Azure Commercial Cloud, IBM Maximo and TRIRIGA on Cloud for U.S. Federal +7 more
CVEHIGH
#FIRE-FDB3 08-12 00:20Z
CVE-2026-14501: IBM Db2 Genius Hub 1.1, 1.1.1, 1.1.2 and IBM Agentics 1.0 could allow an attacke
◈ IBM Cloud for Government, IBM Maximo and TRIRIGA on Cloud for U.S. Federal +3 more
CVEMEDIUM
#FIRE-8893 08-11 18:20Z
CVE-2026-20157: As part of Cisco's ongoing commitment to proactive security and product quality,
◈ Duo Federal, Webex for Government +6 more
CVEHIGH
#FIRE-2A36 08-11 18:20Z
CVE-2026-20156: As part of Cisco's ongoing commitment to proactive security and product quality,
◈ Duo Federal, Cisco SD-WAN for Government +6 more
CVEHIGH
#FIRE-BAB6 08-11 00:20Z
CVE-2026-10025: IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 00
◈ IBM Cloud for Government, IBM Federal HR Cloud +3 more
CVEHIGH