Welcome to ThreatDossier

meta

Executive summary — ThreatDossier publishes one curated intelligence dossier every night, analyzing the last 24 hours of threat-actor activity, backed by a continuously updated live feed of open-source intelligence.

The nightly dossier

Every night we review the day's events — government advisories, indictments and takedowns, new exploitation activity, ransomware leak-site postings, and credible social-media reporting — and distill them into a single analyzed briefing: what happened, who's behind it, and why it matters.

The live feed

The live feed refreshes every 30 minutes from public, authoritative sources:

  • Government — CISA advisories, FBI press releases, DOJ Justice News, NCSC UK.
  • Security press & research — Krebs on Security, BleepingComputer, The Record, The Hacker News, SANS Internet Storm Center.
  • Social — curated threat-intel hashtags on the fediverse.
  • Dark-web-derived OSINT — ransomware leak-site monitoring via Ransomware.live.

Everything is also available as RSS: the nightly dossier feed and the live intel feed.

A note on sourcing

All intelligence here is derived from publicly available sources. Attribution reflects open reporting and may be revised as events develop.