The Argus Blog

Intelligence, not noise.

Research and field notes on evidence-based detection, version-aware matching, threat-intelligence prioritisation, and the craft of telling teams what actually matters.

Detection· 7 min

Version-Aware CVE Matching: Killing the False Positive

Most tools match a product to a CVE and stop there. The version you actually run decides whether the finding is real — and it's where the false positives hide.

May 8, 2026
Threat Intelligence· 8 min

KEV, EPSS, and ExploitDB: How to Read Threat-Intel Signals

Three feeds, three very different questions. Knowing what each one actually tells you — and what it doesn't — is the foundation of defensible prioritisation.

April 22, 2026
Methodology· 6 min

Evidence-Based Detection: A Finding Is a Claim That Needs Proof

If a tool can't show you how it reached a conclusion, you can't defend it to an auditor, a developer, or an executive. Every Argus finding carries its evidence.

April 3, 2026