Version 0.5
2026-07-15
Version 0.5 makes evidence easier to verify and complex stories easier to navigate. Cases and
Happenings now share a focused evidence inspector that connects individual claims, signals,
measurements, IOCs, vulnerabilities, actors, and ATT&CK techniques to the articles that
support them.
- Unified evidence inspection: source-count controls and contextual tags now open the same anchored, focused inspector across Cases and Happenings without taking readers away from the page.
- Claim-level sourcing: Key Facts, Detailed Reports, developments, impact values, timeline context, IOCs, and other signals can show confirming quotes and compact source-article cards for the exact information being inspected.
- Clearer evidence strength: direct and indirect article mentions are separated, unresolved publisher metadata is called out, source lists are searchable, and long article sets are easier to expand and navigate.
- Richer context from existing data: CVE and CVSS details, affected and fixed product versions, Malpedia-linked malware and actor profiles, threat context, geography, sectors, and measurement history are organized into compact tabs while retaining their provenance.
- Better timelines and developments: the latest Case development is prominent, older developments have age-aware freshness indicators, phase details are less cluttered, and phase sources and IOCs use the shared inspector.
- ATT&CK mapping: Cases and Happenings can preview their technique coverage in a miniature matrix and open a source-backed, full-width map with sticky headings and column-by-column navigation.
- More coherent presentation: Cases and Happenings now use consistent breadcrumbs, colors, tags, grouped values, source controls, expansion actions, and impact-signal ordering.
- Safer Case maintenance: improved linkage and merge review can identify candidates, record manual decisions, preserve archived pages, and direct readers to the current merged Case without listing obsolete entries in discovery views.
- Stronger quality safeguards: ambiguous country matches and unconfirmed victim organizations are filtered more carefully, malformed summary rendering is detected, source lineage is audited, and the guarded production upgrade verifies backups and generated output before release.
Version 0.4
2026-05-24
Version 0.4 is a major upgrade to CyberHappenings. It adds Cases for connected cyber stories,
visible scoring and signals, richer source article browsing, and activity-aware discovery so
updated stories remain easy to find.
- Cases: source-backed Case pages that connect related Happenings into larger stories, with member Happenings, curated timelines, Case scores, source articles, signals, and title history.
- Scores and signals: visible H score and Case score, score sorting, curated signal chips, clearer exploitation and remediation wording, and source-backed overlays.
- Source articles: visible source article sections with domains, dates, locally served favicons, expandable summaries, filtering, sorting, and domain controls.
- Browse and frontpage: Cases included alongside Happenings, kind filters, score sorting, activity-based indexes for updated older stories, better card layout, and the new slogan.
- News summary refresh: the existing 48h and 7 days summary feature now works with the newer data model and can include both Happenings and Cases.
Version 0.3
2025-10-01
Version 0.3 focuses on day-to-day usability: collecting IOCs, better filtering, clearer happening previews,
improved source listing, and a proper contact page with a PGP helper. This is a live, rolling version:
structure, new features, and improvements will be shipped directly to production on the fly without
separate version changes.
- IOC collection surfaced across views.
- Browse: better filtering.
- Happening preview improvements: latest development title and clamped summary.
- Source carousel: better summaries and per-source IOCs.
- New contact page with PGP email reveal and copy tools.
- Living 0.3: structure, features, and improvements land on the fly without separate version bumps.
Version 0.2
2025-09-13
Complete rewrite of CyberHappenings, both backend and frontend, for clarity, performance, and maintainability.
Happenings, timelines, facts, frontpage, and browse were redesigned end-to-end, with a stronger focus on sourced
context and fast navigation.
- New frontpage with Latest and Most sourced lists.
- Unified definition of Sources as unique publisher domains.
- Readable multi-paragraph summaries across the site.
- Browse view with quick presets, calendar range, sorting, and expandable summaries.
- Single-Happening page with improved timeline and source carousel.
- News summary generation via LLM with safe fallback and timestamp handling.
- JS apps progressively enhance static pages, with fallback content hidden on load.
- Vendored Alpine.js locally and removed external CDN fetches. Only third-party used is Cloudflare as CDN.
- Limited sources for now. More will be added, along with a source activity list at some point.
Version 0.1
2025-01-20 22:00
Initial release of CyberHappenings. This was the first MVP version judged good enough for release.
Some bugs existed, such as timezone handling, and were expected to be ironed out.
Features
- Frontpage list of Happenings.
- Single Happening page.
- Timeline of developments.
- Keyword search for Happenings and facts.
- Sorting by release time, update time, or source amount.
- Freshness indicator.
- Pin Happenings to a pinned list and show them on the frontpage.
Planned next
- Automatic content updates.
- CVE listing and relation to Happenings.
- Custom lists to follow Happenings based on keywords.
- Backup and restore followed Happenings.
- AI-based daily and weekly summaries.