Source policy

How Unpatched Intel sources stories

Primary sources first, fast reporting second, unsupported claims never.

Unpatched Intel prioritizes official advisories, vendor reports, security research, package registries, source repositories, and reputable cybersecurity news. Claims are summarized and attributed. Unsupported victim claims, fake IOCs, fake CVEs, fake CVSS scores, and copied article text are rejected.

Primary sources are preferred when available. Fast cyber news is useful for discovery, but high-impact claims still need clear attribution and careful wording.

Tier 1: official or authoritative

CISA KEV, CISA Cybersecurity Advisories, NVD, CVE.org, Microsoft MSRC, Vendor security advisories, GitHub Security Advisories, Google Project Zero, Google Threat Intelligence / Mandiant

Tier 2: security research

Cisco Talos, Palo Alto Unit 42, CrowdStrike, SentinelOne, ESET Research, Sophos X-Ops, Rapid7, Wiz Research, Aqua Security, Snyk, Sonatype, Socket.dev, Trail of Bits, ProjectDiscovery

Tier 3: fast cyber news

BleepingComputer, The Hacker News, The Record, SecurityWeek, Dark Reading, KrebsOnSecurity, DataBreaches.net