In the last few weeks thanks to contributors and the Serpico team members’ updates, new report types have been added to the framework. One of the recent additions was the Risk Matrix scoring submitted by geckom.
Similar to other report types, switching to Risk Matrix is simple. Just change the Risk Scoring Algorithm under the Administration menu -> Modify Configurations.
With Risk Matrix enabled, we find new options when editing or adding a new finding. We have Vulnerability Risk Level, Severity, Severity Rationale, Likelihood and Likelihood Rationale options in our findings.
If you’re at Black Hat next week stop by and check out these new features in action. We’ll be at the Arsenal track on Thursday, July 27th from 10:00am-11:20am.