MAP
Build the inventory
Identify technologies observed on the public property, with first- and last-seen dates where available.
FROM DOMAIN TO DECISION
PatchWindow connects public technology evidence to vulnerabilities known to be exploited, then gives your team a ranked worklist with the context needed to act.
THE SHORT VERSION
Give PatchWindow a public domain. It builds an outside-in technology inventory, checks that evidence against the CISA Known Exploited Vulnerabilities catalog, and ranks the matches most worth confirming.
Instead of starting with a generic vulnerability bulletin, your team starts with affected-looking properties, observation dates, match rationale, and a clear next question for the asset owner.
THE WORKFLOW
MAP
Identify technologies observed on the public property, with first- and last-seen dates where available.
WATCH
Ingest the official CISA KEV catalog so prioritization begins with vulnerabilities known to be exploited.
MATCH
Resolve product aliases and connect observed technology to relevant KEV vendor and product records.
PRIORITIZE
Order potential matches by evidence and urgency, then state exactly what the authorized owner should confirm.
THE OUTPUT
See which public domains have technology observations related to a known exploited vulnerability.
Keep the detected technology, observation timing, CISA source facts, and match rationale together.
Ask the owner to confirm version, configuration, reachability, and remediation instead of sending an open-ended alert.
WHY IT SAVES TIME
Inventory collection and KEV correlation are repeatable work. PatchWindow handles that work continuously so security specialists spend their time validating the shortlist and deciding what to do.
See monitoring plans →Bring domains, observed technology, and exploited-vulnerability context into the same portfolio workspace.
Re-run the correlation as CISA adds new KEVs and the public technology estate changes.
Route a scoped potential match instead of broadcasting every vulnerability to every company.
Give the authorized asset owner the evidence and confirmation requirements needed to continue.
PRECISE BY DESIGN
PatchWindow labels a passive technology match as potential exposure. That wording keeps the worklist useful and accurate: the product narrows the search, while the authorized asset owner confirms affected version, configuration, reachability, and remediation status.
SEE THE METHOD
Start with one public domain. No agent, credentials, or active scan required.