Path Atlas
Which cluster follows which, how fast each transition happens, and where attack paths start, end and cause Data Risk Events — computed over a set of TLCTC Layer-3 attack-path records. Every number opens the steps behind it.
Curated, AI-assisted corpus — these statistics describe the records loaded here, not the threat landscape. Unresolved steps (?, …) never form transitions (R-UNRES-3); the breaks they cause are counted as dropped.
Transition matrix
Rows: the step's cluster. Columns: the next step's cluster. Parallel groups link to the step before and after them, never within the group. Click a cell for its velocity profile.
Velocity
Transitions
Entry and exit
The first and last evidenced step of each record; a parallel group counts every member. A record that starts or ends with an unresolved step has no evidenced entry or exit.
Entry cluster
Exit cluster
Data Risk Events by cluster
DRE codes attached to a step, counted against that step's cluster. Refinements also count to their parent: Ii and If to I, Av and Ac to A.