Harpia - harpy eagle emblemHARPIAExploitation Intelligence

About Harpia

Named after the harpy eagle - an apex predator that watches from above and strikes only what matters.

Why we exist

Security teams drown in vulnerability counts. Hundreds of thousands of CVEs are published, yet under 1% are ever confirmed exploited in the wild - and of the ones that are, 60.7% are already under attack 24 hours after disclosure. Treating every finding the same wastes the scarcest resource a team has - remediation time - on the vast majority that never gets attacked.

Harpia inverts the problem. Instead of asking "how severe could this be?" we ask "is anyone actually exploiting it - and what does that mean for this asset, here, now?"

What we build
Data sources

The feed is built from public, auditable sources - NVD, OSV.dev (all published ecosystems, including distribution advisories from Ubuntu, Debian, Red Hat, SUSE, AlmaLinux, Rocky Linux and more), CISA KEV, EPSS, exploit databases and repository telemetry - merged, de-duplicated, and scored continuously.

Principles

Questions, feedback, or partnership ideas? Get in touch.