cyber.nanoteofficial.me
Cyber.
Threat intelligence in the open, ISO 27001 governance behind a login
What is being exploited right now, aggregated from free public feeds and readable without an account — and, for those invited, a persisted ISO/IEC 27001 workspace where controls, risks and evidence are actually tracked.
Live feed (preview)
- Critical2m
Remote code execution in enterprise firewall management plane
CVE-2025-0282Ivanti
- Critical14m
Authentication bypass in zero-trust network gateway
CVE-2025-23209Palo Alto
- High42m
Privilege escalation via LDAP injection in IAM platform
CVE-2025-21298Microsoft
- High1h
Vendor advisory: FortiOS SSL-VPN pre-auth buffer overflow
CVE-2024-55591Fortinet
- Medium2h
Phishing campaign targeting SEA finance sector via deepfake voice
- High3h
SIEM log ingestion bypass via crafted syslog headers
CVE-2025-1094Splunk
- Medium5h
Misconfigured cloud IAM roles expose government S3 buckets
Planned features
Known-exploited vulnerabilities joined with EPSS likelihood scoring
Ransomware victims, C2 infrastructure and infocon on one world map
All 93 ISO/IEC 27001:2022 Annex A controls with gap assessment by theme
5×5 risk register and a Statement of Applicability that refuses to export an unjustified exclusion
Preview
Coming to cyber.nanoteofficial.me
This is a public preview of what will live on the dedicated subdomain. The production app will be deployed separately and linked from here.