Why
The PoC traces one CVE's lifecycle (report → embargo → disclosure → patch → exploitation) and the exploit market around it, framing patch latency as the real risk metric.
How it works
Not yet built.
Workspace Index › Dev Notes › CVE, NVD and the zero-day — the clock between discovery and patch
#188PoC
A zero-day is a vulnerability with no patch available, and the CVE/NVD system is the public clock tracking it from disclosure to fix — the window during which everyone is exposed and priced.
The PoC traces one CVE's lifecycle (report → embargo → disclosure → patch → exploitation) and the exploit market around it, framing patch latency as the real risk metric.
Not yet built.
제로데이는 패치가 없는 취약점이고, CVE/NVD 체계는 공개부터 수정까지 그것을 추적하는 공개 시계입니다 — 모두가 노출되고 값이 매겨지는 창입니다.
이 PoC는 한 CVE의 수명주기(신고 → 엠바고 → 공개 → 패치 → 악용)와 그 주변 익스플로잇 시장을 추적하여, 패치 지연을 진짜 리스크 지표로 규정합니다.
아직 만들지 않음.