← HazardNow Learn

Internet, Cyber & Communications

Internet / Cyber Card Explained

3 min read

The Internet / Cyber card separates observed connectivity disruption from public cyber tempo. Internet outage signals and cyber advisories are related context, but one does not prove the other.

Check the live HazardNow dashboard

Use this page to understand Internet / Cyber. Use the live dashboard to see current alerts, infrastructure stress, weather, wildfire, travel, public-health, supply-chain, and stability indicators in one place.

Quick answer / What to check next

Quick answer

The Internet / Cyber card separates observed connectivity disruption from public cyber tempo. Internet outage signals and cyber advisories are related context, but one does not prove the other.

What this signal means

Connectivity, DNS, cloud services, carrier networks, and cyber incidents can affect alerts, work, travel, payments, and emergency communication.

What to check on HazardNow

status, Out %, cyber sub-rating, tempo, new KEVs, CISA advisories, critical-infrastructure references, source, confidence, completeness, and updated time.

Verify with official source

CISA cybersecurity advisories

Quick read

Useful for
Connectivity, DNS, cloud services, carrier networks, and cyber incidents can affect alerts, work, travel, payments, and emergency communication.
Watch
status, Out %, cyber sub-rating, tempo, new KEVs, CISA advisories, critical-infrastructure references, source, confidence, completeness, and updated time.
Confirm with
CISA cybersecurity advisories and CISA Known Exploited Vulnerabilities catalog
Remember
Public internet telemetry is not a complete outage map and cyber tempo is not proof of a local incident.

How to read this card

  • Status: current observed internet-disruption bucket such as Normal, Degraded, Disrupted, or Unknown after source normalization.
  • Out %: provider/telemetry-derived outage percentage when available; if unavailable the card shows Out —.
  • Cyber sub-rating: public cyber context based on available advisories and confidence, not a local breach claim.
  • Cyber Threat Tempo: recent CISA KEV/advisory activity; it is displayed above observed disruption details in the hover card.
  • Updated: source/display timing for the specific rows shown.

Hover card metrics explained

  • Tempo: compact label for recent public cyber activity; higher means more public defensive urgency.
  • New KEVs, 7d: newly added CISA Known Exploited Vulnerabilities during the last seven days.
  • CISA advisories, 7d: recent CISA advisory count when available.
  • Critical infra: advisories or context tagged to critical infrastructure sectors.
  • Ransomware/state: recent advisories with ransomware or nation-state relevance.
  • Source: normally CISA KEV/advisory context for tempo rows.
  • Observed Internet Disruption: rows such as outage percentage, affected scope, source, confidence, completeness, and last updated for connectivity context.
  • Confidence/completeness: whether the data is broad enough to trust as more than a fallback or partial signal.

What can make this status change?

  • Cloudflare Radar or other provider telemetry indicates broader disruption.
  • CISA publishes new KEVs or advisories, especially with active exploitation or critical-infrastructure relevance.
  • A source reading becomes stale or a provider becomes unavailable, lowering confidence.
  • A disruption clears or public advisory tempo slows.

Limitations

Internet telemetry can miss local ISP, last-mile, Wi-Fi, DNS, device, or power problems. CISA advisory counts do not identify victims and do not mean a specific organization is compromised.

Sources and update behavior

The dashboard summarizes public internet and cyber context from sources such as Cloudflare Radar, CISA KEV/advisories, and provider/reachability signals where available. Some rows update frequently; others follow provider reporting cadence.

Visual reference

Internet / Cyber signal map

Read the signal as one layer in a larger source stack, not as a standalone instruction.

Source
Time
Place
Scope

Official sources to verify

Use these links to verify current source text, update timing, and agency caveats.

Last reviewed: . This page explains general preparedness information and does not replace official instructions.

FAQ

Does elevated cyber tempo mean the internet outage is cyber caused?

No. The card intentionally separates cyber tempo from observed internet disruption. Correlation is not attribution.

Related terms

Check the live HazardNow dashboard

Use this page to understand Internet / Cyber. Use the live dashboard to see current alerts, infrastructure stress, weather, wildfire, travel, public-health, supply-chain, and stability indicators in one place. Focus on cyber-threat-tempo, internet-outage, telecom-disruption in the live view.