Understanding Trulens Home
The TruLens Overview is a dashboard that provides security teams a real-time, clear view of cyber risk. It combines threat intelligence, vulnerability exposure, asset impact, and performance benchmarking in one place.
Instead of showing separate data points, the dashboard links them together: Threat actors, exploited vulnerabilities, impacted assets, and remediation performance
This helps both technical and executive teams move quickly from awareness to action. Each section adds a layer of insight, so users can prioritize, investigate, and respond efficiently.
Threat Actors Impacting Your Industry
This section shows you how many active threat actors are relevant to your industry. For example, you might see that 127 out of 288 actors are currently affecting you. Each card highlights a different threat group, such as financially motivated groups, nation-state actors, or ransomware groups.
From this card, you can
- View which threat actors are most active in your environment.
- Find out how many CVEs these groups are exploiting.
- Learn the scope of exposure, including which assets are impacted.
The card highlights the Top 10 Threat Actors from this list for quick visibility. These are prioritized based on maximum impact on your assets. You can click View All to explore the complete list.
Each Threat Actor card displays a quick summary of a specific threat actor:
- Threat Actor Name ( for example, Larva-24005, Carbon Spider, SparklingGoblin)
- Short Description: Brief context about the threat actor (for example, financially motivated group, nation-state actor, etc.)
- Impact on your environment
This is the most critical part of the card:- CVEs (Vulnerabilities)
Number of known vulnerabilities associated with this threat actor in your environment - Assets Impacted
Number of your assets currently affected by those vulnerabilities
- CVEs (Vulnerabilities)
- Targeted Countries: Countries where the threat actor actively conducts or has conducted attacks.
- Targeted Industries: Industries that are specifically targeted by the threat actor based on their attack objectives.

Insights
The Insights section highlights key risk observations and actionable intelligence based on your environment, vulnerabilities, and threat activity.

Insights provides you with the visibility to
- Asset Exposure to Threat Actor Activity
Indicates how many of your assets are exposed to vulnerabilities being actively used by a specific threat actor (for example, SparklingGoblin). It helps identify real-world attack risk. - Exploit Validation (TruConfirm)
Displays how many vulnerabilities in your environment are actively exploited and can be validated.This insight is visble if TruConfirm is enabled for your account
- Helps prioritize high-confidence, exploitable risks.
- Remediation Performance Gap
Compares your remediation time against industry standards (e.g., CISA’s 14-day guideline). It highlights if you are behind on fixing critical vulnerabilities.
Trending CVEs Impacting You
This section highlights recent and relevant security vulnerabilities (CVEs) that may affect your environment. It displays you to identify vulnerabilities that are currently gaining attention in the cybersecurity landscape and determine whether they require immediate action.
The search bar helps to look up a specific CVE identifier. This makes it easy to investigate known vulnerabilities and check whether they are relevant to the organization’s assets or technology stack.
You can use the three filtering options that organize vulnerabilities by their level of urgency and relevance:
- Trending
Displays vulnerabilities that are currently receiving significant attention across the security community, often due to increased discussion, exploitation attempts, or rapid adoption in attack campaigns. - Actively Exploited
Lists vulnerabilities that are confirmed to be exploited in real-world attacks. These typically require immediate prioritization for patching or mitigation. - Newly Added
Shows vulnerabilities that have been recently published or added to the platform’s vulnerability intelligence database.
The View All link opens the complete vulnerability list, allowing analysis and investigation.
Overall, this section provides a quick, intelligence-driven overview of high-visibility vulnerabilities, helping security teams prioritize remediation efforts and maintain awareness of emerging threats.

Card-based display of Actively Exploited CVEs. Each CVE card includes labels such as:
- Ransomware association: Indicates whether the CVE is linked to known ransomware campaigns.
- Malware activity: Shows if active malware families are exploiting this vulnerability.
- Threat actor involvement: Highlights whether specific threat groups are known to target the CVE.
- CISA KEV exposure: Flags if the vulnerability is listed in the CISA Known Exploited Vulnerabilities catalog.
- Patch availability: Specifies whether a vendor-issued fix is available for remediation.
You can view the CVE details by clicking CVE ID.
Assets impacted by trending CVEs
The card provides geographical distribution of assets impacted by trending CVEs, highlighting regions with highest exposure. The global map is the primary visualization that highlights where impacted assets are located. Red markers indicate regions with assets affected by currently trending CVEs. .
Region filter: A dropdown allows you to scope the visualization. You can filter to specific regions for targeted analysis.
Summary Metrics (Right Panel): This section shows the number of assets impacted by trending CVEs and the number of distinct vulnerabilities that are causing this impact. For instance, the screenshot indicates that 5 assets are currently affected by the trending CVEs, with 3 distinct CVEs contributing to this situation.
CVE details card display ransomware association, malware activity, threat actor involvement, CISA KEV exposure, and patch availability.

Peer & Performance Benchmarking
This section demonstrates how to compare against peers within your industry. This section provides an overview of your performance in comparison to others in the industry.
For each metric, the visualization includes three benchmark points:
- Your organization’s performance
- Industry mininum, average and maximum performance
Key metrics shown:
- EOL/EOS Critical Vulnerabilities: Number of critical vulnerabilities found on end-of-life or end-of-support assets.
- Ransomware Vulnerabilities: Count of vulnerabilities associated with known ransomware activities.
- MTTR for Critical CVEs: Average time taken to remediate vulnerabilities classified as critical CVEs.
- MTTR for CISA KEV: Average remediation time for vulnerabilities listed in the CISA Known Exploited Vulnerabilities catalog.
- How are you performing compared to your peers

Top 5 Threat Categories in your Industry
This section highlights the top threat themes driving risk in your industry. This section addresses the various types of threats that are influencing the risk landscape for organizations similar to your organization.
Categories include:
- Ransomware-as-a-Service (RaaS): Threat actors leveraging subscription-based ransomware kits to launch scalable attacks.
- Supply Chain Compromise: Attacks executed by exploiting vulnerabilities in third-party vendors or software dependencies.
- Data Exfiltration Malware: Malware designed to stealthily extract sensitive data from compromised systems.
- Business Email Compromise (BEC): Social engineering attacks that manipulate email channels to fraudulently access funds or information
- Targeted Espionage Actors: Advanced threat groups conducting focused, long-term campaigns to steal strategic or confidential data.
