{"generatedAt":"2026-09-22T18:52:38.012Z","windowDays":7,"score":37,"defcon":{"max":40,"level":4,"status":"Elevated","color":"#e8d44d"},"metrics":[{"key":"ai_vulnerabilities","label":"AI Vulnerabilities","score":76,"eventCount":10},{"key":"prompt_injection","label":"Prompt Injection","score":42,"eventCount":3},{"key":"deepfake_fraud","label":"Deepfake / Fraud","score":11,"eventCount":2},{"key":"ai_malware","label":"AI Malware","score":21,"eventCount":3},{"key":"agent_abuse","label":"AI Agent Abuse","score":51,"eventCount":5},{"key":"ai_zero_day","label":"AI Zero-Day","score":12,"eventCount":1}],"sovereignty":{"score":0,"eventCount":0,"max":20,"band":"Green","status":"Stable","color":"#42d392"},"sectors":[{"key":"finance","label":"Finance","score":9,"eventCount":0,"globalBaseline":34,"sectorEvidence":0,"topDrivers":[],"latestEvidence":null},{"key":"healthcare","label":"Healthcare","score":11,"eventCount":0,"globalBaseline":42,"sectorEvidence":0,"topDrivers":[],"latestEvidence":null},{"key":"energy","label":"Energy","score":10,"eventCount":0,"globalBaseline":39,"sectorEvidence":0,"topDrivers":[],"latestEvidence":null},{"key":"defense","label":"Defense","score":10,"eventCount":0,"globalBaseline":38,"sectorEvidence":0,"topDrivers":[],"latestEvidence":null},{"key":"cloud_saas","label":"Cloud/SaaS","score":37,"eventCount":5,"globalBaseline":49,"sectorEvidence":33,"topDrivers":[{"key":"ai_vulnerabilities","label":"AI Vulnerabilities","score":51,"eventCount":5},{"key":"prompt_injection","label":"Prompt Injection","score":38,"eventCount":2},{"key":"agent_abuse","label":"AI Agent Abuse","score":32,"eventCount":2}],"latestEvidence":{"title":"Prompt injection — GHSA-798p-78g2-v556 / CVE-2026-61612: @aborruso/ckan-mcp-server has SSRF via DNS-name → internal IP — incomplete fix of CVE-2026-53509","url":"https://github.com/advisories/GHSA-798p-78g2-v556","sourceName":"GitHub Advisory Database — Prompt Injection","publishedAt":"2026-09-22T14:51:20.000Z","category":"prompt_injection"}},{"key":"water_utility","label":"Water Utility","score":12,"eventCount":0,"globalBaseline":46,"sectorEvidence":0,"topDrivers":[],"latestEvidence":null}],"eventCount":16,"sourceCount":4,"methodology":{"version":"1.1","description":"Seven-day, freshness-decayed source signal score using Section 4 weights. Scores reflect collected reporting, not measured global attack volume.","weights":{"ai_vulnerabilities":0.2,"prompt_injection":0.18,"deepfake_fraud":0.16,"ai_malware":0.16,"agent_abuse":0.15,"ai_zero_day":0.15},"sectorModel":"Each sector is 75% signals whose text matches that sector and 25% the global weighted AI-threat baseline. Both components decay over the same seven-day window."},"collection":{"lastSuccessfulAt":"2026-09-22T18:33:43.666Z","healthySources":16,"configuredSources":16}}