basicsecurity.net
Proof, not just disclosure.
Threats / Contributors / Cisco Talos
Research org contributor

Cisco Talos

cited as evidence in 56 · CNA assigner on 2 (independent) · credited finder on 1 of 59 known-exploited records. Every aggregate on this page is recomputed from the records listed below — each one already cited to its public source.

blog.talosintelligence.com ↗ · home of the cited advisories

Independent CNA
59
records cited in
deterministic count
1
finder / reporter credits
CVE.org credits
2
CVE records catalogued (CNA)
independent
67%
avg modeled exploit prob.
FIRST EPSS, 59/59
22%
ransomware-associated
13 of 59 · CISA flag
R

Roles across the work

— find / fix / exploit / catalog, computed per record from credit type, the vendor-self-CNA gate, and the linked public exploit catalog
1
Find
record(s)
0
Fix
record(s)
0
Exploit
record(s)
2
Catalog
record(s)

Stands alone with its own profile — the research arm of Cisco; successor to sourcefire. Related, but credited in its own right (soft link, not a rollup).

Each dimension is a count of the listed records where this contributor did that job. A CNA row is fix only when the affected product is the assigner’s own; registries, coordinators, platforms, intel and research houses read as catalog, never fix. Exploit counts records where this contributor is credited as author of a public exploit / detection template in a linked catalog — we link the catalog, never host a payload.

01

Known for

— recomputed from this contributor’s own records
SurfacesApplication / other (27), Operating system / kernel (13), Browser (6), Server / web platform (6), Edge / remote-access infra (4)
WeaknessMemory safety (13), Injection (13), Authorization / access control (6), Path traversal / file (4), Authentication (4)
PortfolioCisco (14), Microsoft (10), Adobe (5), Google (4), GNU (3), Linux (2)
PeopleNamed individuals credited under this contributor:
Discovered by Piotr Bania of Cisco Talos
02

Narrative reach

— how far this contributor’s records carry an attacker, front door → lights out
1Front door
54reach this stage
→
2Keys to the kingdom
54reach this stage
→
3Lateral reach
50reach this stage
→
4Data at risk
10reach this stage
→
5Lights out
2reach this stage

Furthest any of these records carries an attacker: 5 · Lights out. 10 of 54 narrative-framed records reach data-at-risk or lights-out. (furthest-position idiom, reused from the landing map; the stage mapping is a model output over cited evidence.)

03

Recent highlights

— this contributor’s newest known-exploited records
04

Every record they’re cited in

— all 59, each linked to its cited source

This is the evidence behind every number above. Sorted ransomware-first, then by modeled exploit probability.

CVE-2018-7600Drupal100%RWKEVCVE-2017-10271Oracle100%RWKEVCVE-2019-2725Oracle100%RWKEVCVE-2021-3129Laravel100%RWKEVCVE-2021-21972VMware100%RWKEVCVE-2021-34527Microsoft100%RWKEVCVE-2019-18935Progress100%RWKEVCVE-2008-2992Adobe98%RWKEVCVE-2018-8174Microsoft88%RWKEVCVE-2021-30116Kaseya86%RWKEVCVE-2021-1675Microsoft85%RWKEVCVE-2021-36942Microsoft66%RWKEVCVE-2022-31199Netwrix36%RWKEVCVE-2014-6271GNU100%KEVCVE-2018-11776Apache100%KEVCVE-2017-12617Apache100%KEVCVE-2014-7169GNU100%KEVCVE-2018-0296Cisco100%KEVCVE-2020-7961Liferay100%KEVCVE-2017-1000353Jenkins100%KEVCVE-2014-6278GNU100%KEVCVE-2023-20198Cisco100%KEVCVE-2017-3881Cisco99%KEVCVE-2009-0927Adobe97%KEVCVE-2009-1151phpMyAdmin97%KEVCVE-2026-20182Cisco92%KEVCVE-2017-3066Adobe91%KEVCVE-2017-8570Microsoft90%KEVCVE-2023-20273Cisco90%KEVCVE-2026-20127Cisco88%KEVCVE-2026-20079Cisco88%KEVCVE-2013-3893Microsoft88%KEVCVE-2007-5659Adobe87%KEVCVE-2025-20362Cisco87%KEVCVE-2014-0322Microsoft85%KEVCVE-2021-23758Ajax.NET Professional83%KEVCVE-2009-4324Adobe82%KEVCVE-2018-0824Microsoft73%KEVCVE-2025-20333Cisco71%KEVCVE-2017-6736Cisco70%KEVCVE-2021-40407Reolink48%KEVCVE-2013-3660Microsoft39%KEVCVE-2021-38003Google39%KEVCVE-2025-20393Cisco32%KEVCVE-2026-20133Cisco32%KEVCVE-2018-4063Sierra Wireless27%KEVCVE-2026-20122Cisco25%KEVCVE-2021-37976Google20%KEVCVE-2010-3904Linux14%KEVCVE-2022-20775Cisco12%KEVCVE-2021-37973Google12%KEVCVE-2015-3246Red Hat9%KEVCVE-2022-0995Linux9%KEVCVE-2020-1040Microsoft7%KEVCVE-2015-5287Red Hat5%KEVCVE-2021-38000Google5%KEVCVE-2025-22224VMware2%KEVCVE-2026-21385Qualcomm1%KEVCVE-2021-1048Android1%KEV
05

Coverage & confidence

— what this profile claims, and what it does not

Established (cited)

  • Cited in 59 known-exploited records — the list below; every one links to its public source.
  • Catalogued 2 CVE record(s) as the CNA assigner (from CVE.org).
  • Credited as the finder/reporter on 1 record(s) (CVE.org credits).
  • Coverage gaps — stated, not hidden

  • This profile is an aggregation: it asserts only what the listed records already cite — no new external claim about the contributor is made.
  • The TYPE badge and the narrative-stage mapping are editorial (our call), labeled as such, not a sourced fact.