Intel Tags Uplift and Threat Actors v1
Tags
Tags have been updated with some new icons and descriptions.
Zero Day changing to Potential Public Exploit (PPE)
We updated the Zero Day tag to help clarify that it also covers potential exploitation in the wild. (Both the icon and the name has changed.)

As a result, we needed to update the PPE and KTA tags as follows:
New Proof-of-Concept (POC) tag
The old Potential Public Exploit tag has been replaced with the Potential Proof-of-Concept tag. The meaning of this tag has not changed, it indicates that there is potentially public PoC or exploit code available.

New Known Threat Actor (KTA) icon
The icon of the Known Threat Actor tag has been updated. The meaning of this tag has not changed, it indicates that the CVE has a known threat actor associated with it.
Threat Actors
Along with the icon update, the first phase of Threat Actors is now live! Any CVE with the KTA (Known Threat Actor) tag will display the associated threat groups and their aliases:

You can also search for any CVEs with an associated threat group from the CVE Database. Just flip the 'Known Threat Actor’ toggle in the Advanced Search options:

Trends
- Improved sort priority in tables:
- 'Trending in News or Social' is now sorted by Social Media mentions by default
- 'Rising EPSS' is now sorted by EPSS by default
- Added horizontal scrolling to table so it doesn't overflow its width on smaller screens.
- Updated the colour of Social Mentions and News Mentions labels
Settings
- Improved the password validation screens that appear when changing passwords.

