Welcome to ThreatDossier
Executive summary — ThreatDossier publishes one curated intelligence dossier every night, analyzing the last 24 hours of threat-actor activity, backed by a continuously updated live feed of open-source intelligence.
The nightly dossier
Every night we review the day's events — government advisories, indictments and takedowns, new exploitation activity, ransomware leak-site postings, and credible social-media reporting — and distill them into a single analyzed briefing: what happened, who's behind it, and why it matters.
The live feed
The live feed refreshes every 30 minutes from public, authoritative sources:
- Government — CISA advisories, FBI press releases, DOJ Justice News, NCSC UK.
- Security press & research — Krebs on Security, BleepingComputer, The Record, The Hacker News, SANS Internet Storm Center.
- Social — curated threat-intel hashtags on the fediverse.
- Dark-web-derived OSINT — ransomware leak-site monitoring via Ransomware.live.
Everything is also available as RSS: the nightly dossier feed and the live intel feed.
A note on sourcing
All intelligence here is derived from publicly available sources. Attribution reflects open reporting and may be revised as events develop.