Live Cyber threat intelligence

Author: dxrkfCreated Sep 1, 2026Updated Sep 1, 2026

Hello, Threat intel is everywhere, just not in the same place.

This request is to add dxrk.net to the framework as a free, publicly accessible threat intelligence resource.

What it is

A read-only cyber threat intelligence briefing page that pulls live data from verified public sources into a single view:

  • Breaking security news wire
  • Actively exploited CVEs (CISA KEV) ranked by EPSS exploit probability
  • Ransomware watch — victims and active extortion groups
  • Breach archive
  • Threat actor profiles (APT28 through Scattered Spider)
  • Live global attack map
  • Daily SOC briefing + weekly recap
  • Learn Hub with a 72-term glossary and common frameworks

Sources aggregated

CISA KEV, FIRST EPSS, SANS ISC, ransomware.live, Have I Been Pwned, abuse.ch, MITRE ATT&CK.

Why it fits the framework

  • Free, no login, No Ads or registration wall
  • Read-only by design — no user input, no accounts, no data collection. ("my stack" personalization is stored client-side in localStorage only)
  • Open output endpoints in CSV, RSS, and Markdown for downstream use

Source: lockfale/OSINT-Framework