Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 1

Search by keyword →
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability
TI
Cyber Security News

PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability

Proof-of-concept (PoC) exploit code and deep technical details have now been released for CVE-2025-53770, a critical remote code execution (RCE) vulnerability i...

8 Jul 2026
Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations
TI
Security Week

Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations

The "Rogue Agent" vulnerability could have enabled attackers to silently manipulate AI conversations, exfiltrate data, and compromise every Dialogflow CX agent ...

8 Jul 2026
DuckDuckGo browser now blocks YouTube video ads
TI
Bleeping Computer

DuckDuckGo browser now blocks YouTube video ads

DuckDuckGo announced that its browser can now block most video ads on YouTube, including those shown before the video starts playing and during playback. [...]...

8 Jul 2026
GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures
TI
The Hacker News

GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures

New research shows that a signed Git commit's hash is not the one-of-a-kind name that much of the software world assumes it to be. Given any signed commit, some...

8 Jul 2026
TI
Cyber Security News

First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone

A full-chain exploit dubbed “IonStack” demonstrates how a single malicious URL click can hand attackers complete control over an Android device. The...

8 Jul 2026
The Verification Step Is the New ATO Battleground in 2026
TI
The Hacker News

The Verification Step Is the New ATO Battleground in 2026

For years, account takeover (ATO) followed a predictable script. Attackers bought stolen credentials in bulk, ran them through automated tools, and waited for m...

8 Jul 2026
Telco giant KDDI says data breach affects over 12 million people
TI
Bleeping Computer

Telco giant KDDI says data breach affects over 12 million people

Japanese telecommunications giant KDDI says that millions of people had their email addresses and passwords exposed after attackers breached an email platform u...

8 Jul 2026
GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code
TI
The Hacker News

GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code

An AI coding assistant that refuses to answer a dangerous request in its chat box can answer it anyway if the same request is broken into small, ordinary-lookin...

8 Jul 2026
New Bit2Watt attack uses AI GPU workloads to destabilize power grids
TI
Cyber Insider

New Bit2Watt attack uses AI GPU workloads to destabilize power grids

A new cyber-physical attack called Bit2Watt uses carefully crafted GPU workloads to manipulate a data center's power consumption in ways that interfere with mod...

8 Jul 2026
CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws
TI
Security Week

CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws

Two newly disclosed critical vulnerabilities in Adobe ColdFusion and Langflow join two Joomla extension flaws in CISA's Known Exploited Vulnerabilities catalog,...

8 Jul 2026
Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection
TI
Security Week

Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection

Researchers show how attackers can use a crafted public GitHub Issue to trick AI-powered workflows into exposing data from private repositories without authenti...

8 Jul 2026
CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks
TI
Cyber Security News

CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Adobe ColdFusion vulnerability, tracked as CVE-2026-48282, to its Known Ex...

8 Jul 2026
EU now one step away from reviving private message scanning rules
TI
Cyber Insider

EU now one step away from reviving private message scanning rules

The European Parliament has approved an urgent procedure to fast-track legislation that would revive the EU's expired “Chat Control 1.0” rules. This...

8 Jul 2026
CISA orders feds to prioritize patching Langflow auth bypass flaw
TI
Bleeping Computer

CISA orders feds to prioritize patching Langflow auth bypass flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) gave federal agencies until Friday to patch an actively exploited vulnerability in the Langflow...

8 Jul 2026
70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks
TI
Cyber Security News

70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks

A recent study has revealed that more than 70% of publicly accessible WordPress websites are running outdated versions of PHP, significantly increasing their ex...

8 Jul 2026
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware
TI
The Hacker News

China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware

A Chinese threat actor tracked as UAT-7810 is actively refining its bespoke malware to expand its Operational Relay Box (ORB) network by breaking into internet-...

8 Jul 2026
Hackers Exploit Roundcube N-Day Flaws to Steal Credentials and Deploy VShell
TI
Cyber Security News

Hackers Exploit Roundcube N-Day Flaws to Steal Credentials and Deploy VShell

A newly identified hacking campaign is targeting university mail servers by exploiting known but unpatched flaws in Roundcube webmail software. The attackers ar...

8 Jul 2026
Ubiquiti warns of new max severity  UniFi OS vulnerability
TI
Bleeping Computer

Ubiquiti warns of new max severity UniFi OS vulnerability

Ubiquiti has released security updates to patch seven critical vulnerabilities in UniFi OS, including a maximum-severity flaw that can be exploited in command i...

8 Jul 2026
TI
Dark Reading

State IDs for AI Agents: Will Estonia Set a Precedent?

The world's digital testing ground plans to help people use AI agents for government purposes....

8 Jul 2026
China-Nexus Hackers Exploit Ruckus Routers to Build Operational Relay Box Networks
TI
Cyber Security News

China-Nexus Hackers Exploit Ruckus Routers to Build Operational Relay Box Networks

UAT-7810, a China-nexus hacking group, is expanding a global network of hijacked internet devices by exploiting security flaws in Ruckus wireless routers and ro...

8 Jul 2026
Next →