RangeCheck
Concurrent discovery, service fingerprinting, and explainable finding rules. An exposed service is an observation to investigate.
Inspect source ↗Read methodology ↗THE WORKBENCH / OPEN FOR INSPECTION
Working interfaces. Inspectable code. A clear account of what each experiment does—and where its evidence ends.
Choose a project.
Inspect the decisions.
Try it for yourself.
01 / RESEARCH FIXTURE
Three small counterexamples: malformed Boolean bytes, event attribution, and execution gaps.
The interactive page loads when you choose Load preview.
Preview not loaded. The full page is always available.
NEXT / READ THE IMPLEMENTATION
Python projects with explicit methods,
evaluation fixtures, and limits at source.
Concurrent discovery, service fingerprinting, and explainable finding rules. An exposed service is an observation to investigate.
Inspect source ↗Read methodology ↗ATT&CK-mapped detection rules and time-window correlation. Published fixtures and critiques make the logic reviewable.
Inspect source ↗Read critique ↗Hybrid retrieval and cited answers with a sample evaluation corpus. The critique documents decisions, corrections, and limits.
Inspect source ↗Read critique ↗Sample scores describe the supplied fixtures. They are not claims of production coverage, accreditation, or client outcomes.
FOLLOW THE REASONING
PUBLIC DATA / RESEARCH VIEWS
Expand a view to request its public-data snapshot.
Methods and limitations stay beside the numbers.
Public indicators returned by the existing feed service: CISA KEV, Feodo Tracker, and ThreatFox. Check the source timestamp and coverage before interpreting the sample.
Loading current CVEs…
Loading live C2 servers…
Loading recent IOCs…
Recent NVD entries ranked by FIRST EPSS, with CVSS context and KEV membership. EPSS estimates exploitation probability over the next 30 days. A score or a missing catalog entry does not establish whether a particular system is safe.
Ranking newest CVEs by exploitation probability…
Ranking = EPSS probability first, then CVSS severity, then recency. EPSS via FIRST.org; scores shift daily as exploitation signal accrues. This is public-data analysis, not a claim of private discovery.
This board compares a vulnerability's NVD publication date with the date CISA added it to the Known Exploited Vulnerabilities catalog: max(0, KEV dateAdded − NVD published). The interval describes time to catalog inclusion. It does not date the first exploit or measure how long a system was safe to leave unpatched. Only entries matched across the two sources are included.
Loading…
Loading…
Headlines use matched entries added to KEV from 2023 onward; the yearly chart also includes earlier additions. Historical backfills and delays in publication or cataloging affect this interval in every year. dateAdded is the catalog addition date, not the first exploitation date. Intervals at or below zero are displayed as zero; they do not establish a zero-day exploit. KEV is a selected catalog, and missing source records can reduce coverage. These figures describe catalog history and do not establish a safe patching window.
Posting counts, group activity, and sector summaries from ransomware.live. These are aggregate observations of a selected public feed, not a census of incidents or independently verified victim claims.
Loading…
Loading…
Loading…
This view presents aggregate counts. Victim names and hidden-service addresses are not displayed. The counts describe source postings and do not establish the number of confirmed breaches.
THE PERSON BEHIND THE WORK
I’m Sergio Rodriguez, a security tool builder from New York’s Hudson Valley, studying Cybersecurity at Iona University with a focus on Security Threat & Analysis.
More about me ↗FOUNDATION
CONTINUE THE CONVERSATION