🌎 Geopolitical Intelligence Center
🔍 Focus & Event Query
Countries tracked
High-risk states
Active narratives
Nation-state actors
Sanctioned entities
Live events
📊 Dashboard KPIs
🧩 Geopolitical Capabilities
🔥 Country Risk Board
No governance signals yet. Seed reference data with seed-human-security.php (World Bank Rule of Law, offline-safe) and seed-countries.php, then refresh via sync-intel.php.
🌐 Geopolitical Event & Adverse-Media Feed · GDELT 2.0 (live)
Query: military conflict. Live open-source signal via the GDELT Project (100+ languages), cached & offline-safe. Deep dive in Geopolitical Monitor →
🏴 Nation-State Cyber Overlay (actors → operates-from → nation)
| Nation | Groups | Attributed actors / APTs | |
|---|---|---|---|
| 🏴 China | 51 | graph | |
| 🏴 Russia | 35 | graph | |
| 🏴 Iran | 20 | graph | |
| 🏴 North Korea | 8 | graph | |
| 🏴 commercial | 3 | graph | |
| 🏴 Pakistan | 3 | graph | |
| 🏴 Lebanon | 2 | graph | |
| 🏴 Turkey | 2 | graph | |
| 🏴 Vietnam | 2 | graph | |
| 🏴 Belarus | 1 | graph | |
| 🏴 botnet_cc | 1 | graph | |
| 🏴 India | 1 | graph | |
| 🏴 Israel (commercial) | 1 | graph | |
| 🏴 Nigeria | 1 | graph | |
| 🏴 South Korea | 1 | graph |
Derived from the MITRE ATT&CK ingest (seed-attack.php) — group country-of-origin inferred and stored as actor operates-from nation links in the correlation graph.
⚖ Sanctions Overlay (20 designated entities · top jurisdictions)
📢 Disinformation & Influence Narratives (60 tracked)
🧩 Composite Risk Model (transparent weights)
Each signal is log-scaled and min-max normalised across all countries, then weighted; governance uses World Bank Rule of Law (weak rule of law raises risk). Full methodology on the Country Risk board.
📈 Risk Trend
Trend analysis needs at least two risk snapshots. Run snapshot-risk.php now and again after the next cron cycle to surface movers.
🕵 OSINT Pivots
📚 Evidence & Authoritative Sources
Every local dataset in this center is curated from these real, citable public sources — no attribution, tiers or events are fabricated.
💡 Analyst Recommendations
- Prioritise countries where weak rule of law overlaps active cyber indicators AND sanctions exposure — that intersection is compound geopolitical risk.
- Pivot each nation-state APT (operates-from) against local geolocated IoCs to scope suspected state-sponsored campaigns, then open a case.
- Treat GDELT event spikes as early warning; correlate them with country-risk trend movers before they crystallise.
- Screen entities from high-risk jurisdictions against OFAC / UN / EU designations prior to any engagement or onboarding.
- Cluster active disinformation narratives by target country and upcoming elections; track origin→target attribution over time.
- Snapshot risk daily (snapshot-risk.php) so governance, displacement and cyber shifts surface as measurable deltas.
⚡ AI Skills & Automation
Automate unattended via the cron pipeline (collect → ingest → resolve → enrich → score → alert).
📜 Playbook — Geopolitical risk assessment
- Direction — frame the requirement for geopolitical risk: what decision does this support, by when?
- Collection — pull GDELT events, country-risk scores, sanctions, nation-state attribution and disinformation narratives for the target country/region; capture provenance and observe OPSEC.
- Processing — normalize, de-duplicate and enrich the collected data.
- Analysis — correlate against local holdings; apply ACH; assign confidence.
- Dissemination — open a case, draft a report, share via STIX/MISP.
- Feedback — set an alert rule / watchlist to monitor for change.
🧩 Advanced Capabilities
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron