> For the complete documentation index, see [llms.txt](https://stormanalyzer.cybral.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://stormanalyzer.cybral.com/home.md).

# Home

From the Home page, users can quickly navigate to different sections of the system to dig deeper into specific aspects such as security posture, vulnerability analysis, and attack simulations. Additionally, the Home page may display real-time updates, alerts, or notifications to keep users informed about the latest developments in their network security posture.

By presenting a top-level overview of essential details, the Home page enables users to stay informed and make informed decisions regarding their organization's cybersecurity strategy.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FKjBJlNso88mA1Lv7s8DH%2Fimage.png?alt=media&amp;token=413e5023-68e1-4419-89e6-a5abbe5e63f7" alt=""><figcaption><p>Home Page</p></figcaption></figure>

## <mark style="color:purple;">Features</mark>

* The Topology tile provides an overview of the results obtained from network scanning, presenting key metrics related to the network's structure and security status. Specifically, it includes the following information:

1. <mark style="color:purple;">Total Number of Subnets:</mark> This metric indicates the overall number of subnets  within the organization's network infrastructure.&#x20;
2. <mark style="color:purple;">Number of Vulnerable Subnets:</mark> It highlights the subset of subnets within the network that contain vulnerabilities or security weaknesses. Identifying vulnerable subnets is crucial for prioritizing remediation and strengthening security measures.
3. <mark style="color:purple;">Total Number of Assets:</mark> It shows the total number of assets or devices detected within the network.
4. <mark style="color:purple;">Vulnerable Assets:</mark> Indicates the number of assets within the network that are found to have vulnerabilities or security flaws. Vulnerable assets represent potential entry points for attackers and require immediate attention to mitigate potential risks.
5. <mark style="color:purple;">Critical Paths:</mark> Highlights the most sensitive paths within the network that could lead to high-value assets.
6. <mark style="color:purple;">Number of Critical Assets:</mark> Indicates the number of assets considered critical based on their value to the organization.
7. <mark style="color:purple;">Critical Vulnerabilities:</mark> Highlights vulnerabilities classified as critical within the network.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2F2cUNhwO4oSYR0bjPq5Mb%2Fimage.png?alt=media&amp;token=a3781d47-8add-4fd1-bece-e87239c1b984" alt="" width="516"><figcaption><p>Network Overview</p></figcaption></figure>

### Risk Score

The **Risk Score** is a metric reflecting the current level of cybersecurity risk within the organization’s network. Presented as a percentage, it indicates the likelihood of a potential attack based on identified vulnerabilities, critical assets, and network exposure. In this example, a **Risk Score of 36.81%** suggests a moderate risk level. Monitoring this score over time helps in tracking the effectiveness of remediation efforts and identifying trends in network health.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FfhO6IRTR92Q0ddDuiqbL%2Fimage.png?alt=media&amp;token=3978dcd4-5717-4e52-8c68-9bae78bc003a" alt="" width="277"><figcaption><p>Risk Score</p></figcaption></figure>

### Resolved Vulnerabilities

This metric indicates the number of vulnerabilities that have been mitigated or resolved since the last scan. The **"Check Now"** option allows users to access detailed information of the resolved vulnerabilities.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FPcfiFDzIgXzqB7oXsuW7%2Fimage.png?alt=media&amp;token=eb2da75f-4f61-46fa-93ad-edb52dd81ec9" alt="" width="291"><figcaption><p>Resolved Vulnerabilities</p></figcaption></figure>

### Health Trend

The **Health Trend** graph visualizes the change in the Risk Score over time, offering a historical view of the network's security posture.&#x20;

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FralLCVBlPcIn4or4csKT%2Fimage.png?alt=media&amp;token=6514d9b4-7db3-4d08-b16a-912964a3e3a3" alt="" width="563"><figcaption><p>Health Trend</p></figcaption></figure>

### Assets Security Posture Analysis

This section provides an overview of the security posture of each asset within the network, categorized by vulnerability levels. Each asset's security posture, including its vulnerabilities, critical paths, and exposure levels, directly influences the organization's overall risk score.&#x20;

The breakdown of asset security postures is as follows:

* **Robust Assets:** These assets have a strong security posture with minimal vulnerabilities, making them difficult for attackers to exploit.
* **Moderate Assets:** Assets classified as **Moderate** have a balanced security posture with some vulnerabilities but are not highly exposed.&#x20;
* **Exploitable Assets:** These assets contain significant vulnerabilities that could be exploited by attackers.
* **Highly Exploitable Assets:** Assets in this category are the most vulnerable and present the greatest risk of exploitation.&#x20;

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2Fex4RymklPRFzkGBbA8aP%2Fimage.png?alt=media&amp;token=58973cc4-f6cc-4fbc-ba00-c4e7c615f281" alt="" width="563"><figcaption><p>Asset Security Posture Analysis</p></figcaption></figure>

## <mark style="color:purple;">Simplified Attack Scenarios Powered by AI</mark>

In the[ **Cybral Attack Scenario**](#cybral-attack-scenarios) section, the system uses advanced AI technology known as a **Large Language Model (LLM)** to make complex attack graphs easy to understand. This technology acts as an extra layer of analysis, taking in detailed attack data and translating it into a straightforward, written summary of potential threats, which is then displayed on the dashboard.

With LLM technology, users don’t need to be cybersecurity experts to grasp what’s going on in their network. The system generates a clear, narrative-style scenario that describes the steps an attacker might take to exploit vulnerabilities, giving users a real sense of the risks involved.

Each attack scenario also includes practical remediation steps that users can follow to protect their network. These recommendations are based on best practices in the industry, providing users with straightforward actions to shore up their defenses and address specific vulnerabilities.

### Cybral Attack Scenarios

The **Storm AI Engine** in this example has generated **6 attack scenarios** based on critical paths within the network. These scenarios illustrate potential attack vectors that an attacker might exploit by using known vulnerabilities, targeting specific IP addresses, and following critical pathways to gain unauthorized access. Each scenario is ranked by risk level—**Low** or **High**—allowing security teams to prioritize responses based on severity.

By clicking on the **Show** button next to each scenario, users are directed to the [**Critical Paths Graph** ](/attack-paths-analysis/critical-paths-view.md)page, where the specific critical paths related to that attack scenario are highlighted.&#x20;

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FmDQOMLSfEqPqI2yLiDXe%2Fimage.png?alt=media&amp;token=6ea7c033-7c75-4633-9d67-9ded6f56383a" alt="" width="563"><figcaption><p>Attack Scenarios</p></figcaption></figure>

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FYVP8Gs0cCFIn6gsiuBHz%2Fimage.png?alt=media&amp;token=d558563a-f224-4b83-b4c4-5fdc77dd120c" alt=""><figcaption><p>Generated Attack Scenarios </p></figcaption></figure>

### Generate Defense Strategy

After selecting "Generate Defense Strategy," users are directed to **Defense Strategy** page, where **Storm Analyzer** prioritizes the necessary remediation actions required to address vulnerabilities and enhance the network’s security posture. The system highlights the critical vulnerabilities that need immediate attention. This page provides a detailed, structured approach to implementing effective defense measures.

Users have the option to **Export Remediations**, allowing them to download an Excel report that includes the CVE identifier, affected assets, and recommended remediation steps.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FuLWTAajtSn2s8CuBgpsu%2Fimage.png?alt=media&amp;token=79450cda-187a-4f61-85c4-46a430d4cebb" alt="" width="563"><figcaption><p>Generate Defense Strategy </p></figcaption></figure>

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2Fs5WeWoHtf5HeMFq8QpKF%2Fimage.png?alt=media&amp;token=118ed9f8-f3f3-4e83-887e-c6c08aeae561" alt=""><figcaption><p>Defense Strategy Page </p></figcaption></figure>

Users have the option to select a checkbox next to each "Remediate CVE......." option, enabling the **Simulate Remediation Actions** feature. By clicking this button, users are directed to the **Remediation Planner** page, where they can simulate the potential impact of remediation actions on the network. For example, users can evaluate the effect of addressing a specific vulnerability or blocking a port.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FxzfF3odqelrqJfCHdMKH%2Fimage.png?alt=media&amp;token=a67139d5-6f42-4907-8aae-557ba753c934" alt=""><figcaption><p>Simulate Remediation Action</p></figcaption></figure>

On the[ **Remediation Planner**](/remediation-planner.md) page, clicking **Simulate** generates a comparison between the current network state and the projected state after implementing the recommended remediation actions that will be discussed later in a separate section. This analysis provides valuable insights into the effectiveness of proposed actions. Users can also download this comparison as a **Before and After** PDF report for documentation and review.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FPs0U34TFjwiGuImDuov9%2Fimage.png?alt=media&amp;token=8d04e0b1-8fbf-492e-ae78-9061e80b15b3" alt=""><figcaption><p>Remediation Planner</p></figcaption></figure>

### Vulnerabilities Insights

The **Vulnerabilities Insights** section provides a detailed analysis of vulnerabilities present within the network, segmented by frequency and severity. This feature allows security teams to quickly assess the scope and criticality of vulnerabilities and prioritize remediation efforts accordingly. The pie chart displays the distribution of different vulnerabilities based on their frequency within the network.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FVuCq6PLUpgYme23y0WYj%2Fimage.png?alt=media&amp;token=6433905f-93ef-4b0e-bfae-163da852321c" alt="" width="563"><figcaption><p>Vulnerabilities Insights</p></figcaption></figure>

* **Severity Distribution Bar:**
  * This bar chart classifies the vulnerabilities into four severity levels: **Critical**, **High**, **Medium**, and **Low**.
  * Each severity level is color-coded, providing a quick visual assessment of the risk profile:
    * **Critical:** 4 vulnerabilities (indicated in red)
    * **High:** 24 vulnerabilities (indicated in orange)
    * **Medium:** 14 vulnerabilities (indicated in yellow)
    * **Low:** 11 vulnerabilities (indicated in green)

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2Fc8xoMtKTp4iWK2d2nIci%2Fimage.png?alt=media&amp;token=5ddd2d3e-376d-450c-945a-258ea52fa282" alt="" width="563"><figcaption><p>Severity Destribution Bar</p></figcaption></figure>

In the **Vulnerabilities Insights** section, the **"Show"** arrow located in the upper left is a clickable element. By clicking on it, users are directed to the [**Network Vulnerability**](/network-vulnerabilities.md) page, where they can view a more detailed breakdown of vulnerabilities across the network. This page provides in-depth insights into each identified vulnerability, allowing users to better understand their network’s security landscape and prioritize remediation actions effectively.

<figure><img src="https://4110079619-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F6v1ePfi8ZUrB71bhN26C%2Fuploads%2FCqDf9t4aUgqQzZyD6HQM%2Fimage.png?alt=media&amp;token=6e51ed33-9d18-47c8-8997-e6c5454a9cdd" alt="" width="556"><figcaption><p>Network Vulnerabilities</p></figcaption></figure>
