Tim Bastin

Results 52 comments of Tim Bastin

Yep! I want to use the EPSS as the threat metric. Using the calculator provided by the FIRST organization (https://www.first.org/cvss/calculator/4.0), it does ask for a "Threat" Metric. It is called:...

Do you think it might make sense to map EPSS Values to the Exploit Maturity? Like: < 0.1: Unreported < 0.5: PoC > 0.5: Attacked? Does that sound reasonable? I...

Thank you so much for all your input! I am sure I will come back to you, after I had the time to think a bit more thoroughly about that....

We already implemented a risk calculation function, which recalculates the risk based on the information, if a cve exists inside the exploit db. We are currently working on improving this,...

This is strongly related to: https://github.com/l3montree-dev/flawfix/issues/7

I think we should at least take a look at this. I am fine with "not doing it after evaluating the necessary efforts and outcomes".

Hi @Nephrain thanks for the ticket. Exploits and Vulnerabilities are unrelated to any location. Let's think about something like your Firefox-Browser. The vulnerability database does contain a list of vulnerabilities...

related to: https://github.com/l3montree-dev/devguard/issues/540#issuecomment-2834828000

We already display a loading spinner on the details page now. Nevertheless, i think this can be improved by creating the async button component