Resources · Free to use · No sign-up
Answers you cantake away with you.
Checklists, tools and briefings we publish for anyone defending an organisation, whether or not they ever work with us. Nothing on this page is gated behind a form, and nothing on it tries to frighten you.
CVE ExplorerWeekly briefingsChecklistsFortnightly newsletter
What is here
Use what is useful
Questions to ask a SOC provider
Twenty questions in five themes, each with what a good answer looks like, a scoring scheme and the answers that should worry you. Take it into the procurement meeting.
CVE Explorer
Search any vulnerability and see CVSS severity, EPSS exploitation probability and CISA Known Exploited Vulnerabilities status side by side, refreshed daily, with a plain-English verdict on what to do.
Weekly threat briefings
The public editions of the threat-intelligence reports our SOC writes every week: which groups are active, which techniques are working, and what to check in your own estate.
Sector briefings
The same reporting, sorted by sector — financial services, legal, healthcare, maritime and logistics, retail, defence and government, trade bodies — with the regulators and schemes that apply.
Threat actor profiles
Who the ransomware and nation-state groups are, how they get in, and what their victims had in common, written from cases we have worked and intelligence we hold.
The fortnightly briefing
One email every two weeks: what changed, what to patch, what it means for a UK organisation. Double opt-in, one-click unsubscribe, and an RSS feed if you would rather not give us an address.
Most of what a SOC learns is only useful if it is shared.
Our analysts see the same techniques used against organisations in every sector we monitor. The details of any one client are theirs and stay private; the patterns are not, and keeping them to ourselves would help nobody except the people using them. So the weekly reports are published in a public edition, the CVE data is open, and the checklists are the ones we would want a client to bring to us.
- Cost
- None. No form, no account, no sales call attached.
- Reuse
- Print, share and adapt inside your organisation; a link back is appreciated if you publish.
- Accuracy
- Written by the analysts on shift and reviewed before publication; corrections welcome at hello@cyber-defence.io.
- Feeds
- RSS at /feed.xml; the CVE Explorer has its own sitemap for anything you want to bookmark.
Start a conversation
Something missing?
If there is a question you keep having to answer for your board, your auditor or your insurer, tell us. The next resource on this page is usually the one somebody asked for.