Live Cyber threat intelligence
Author: dxrkfCreated Sep 1, 2026Updated Sep 1, 2026
Hello, Threat intel is everywhere, just not in the same place.
This request is to add dxrk.net to the framework as a free, publicly accessible threat intelligence resource.
What it is
A read-only cyber threat intelligence briefing page that pulls live data from verified public sources into a single view:
- Breaking security news wire
- Actively exploited CVEs (CISA KEV) ranked by EPSS exploit probability
- Ransomware watch — victims and active extortion groups
- Breach archive
- Threat actor profiles (APT28 through Scattered Spider)
- Live global attack map
- Daily SOC briefing + weekly recap
- Learn Hub with a 72-term glossary and common frameworks
Sources aggregated
CISA KEV, FIRST EPSS, SANS ISC, ransomware.live, Have I Been Pwned, abuse.ch, MITRE ATT&CK.
Why it fits the framework
- Free, no login, No Ads or registration wall
- Read-only by design — no user input, no accounts, no data collection. ("my stack" personalization is stored client-side in localStorage only)
- Open output endpoints in CSV, RSS, and Markdown for downstream use
Source: lockfale/OSINT-Framework