Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
376
119
40
16
30
1
High
227
309
82
24
93
7
Medium
118
142
70
17
98
14
Low
24
31
21
—
14
—
Hover to preview · click to filter
All-time · 6526 totalintensity = volume
LIVE
Top 10 Best Patch Management Software in 2026·Top 10 Best Mobile Threat Defense (MTD) Solutions in 2026·Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners·Top 10 Best Mobile Device Management (MDM) Solutions in 2026·Top 10 Best Unified Endpoint Management (UEM) Solutions in 2026·New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access·Google warns of new Chrome zero-day bug exploited in attacks·Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild·Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days·N-able N-central Pre-Auth RCE Flaw Exploited in the Wild·FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests·Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults·Patch Tuesday Sets Another Record With 974 CVEs·Attackers Use Multi-Hop Google Redirects for Phishing Campaign·OpenAI Agents Took Over Wiki Site Before Hugging Face Attack·Top 10 Best Patch Management Software in 2026·Top 10 Best Mobile Threat Defense (MTD) Solutions in 2026·Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners·Top 10 Best Mobile Device Management (MDM) Solutions in 2026·Top 10 Best Unified Endpoint Management (UEM) Solutions in 2026·New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access·Google warns of new Chrome zero-day bug exploited in attacks·Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild·Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days·N-able N-central Pre-Auth RCE Flaw Exploited in the Wild·FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests·Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults·Patch Tuesday Sets Another Record With 974 CVEs·Attackers Use Multi-Hop Google Redirects for Phishing Campaign·OpenAI Agents Took Over Wiki Site Before Hugging Face Attack·

Latest IntelligenceApplication SecurityPage 1

Search by keyword →
Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults
TI
Bleeping Computer

Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults

Microsoft is adding new age-awareness APIs to Windows 11 that will allow apps to determine whether someone is a child, teenager, or adult without exposing their...

9 Sept 2026
Microsoft confirms GitHub is down worldwide
TI
Bleeping Computer

Microsoft confirms GitHub is down worldwide

GitHub is down for some users as a widespread outage is causing errors across the website, API, Actions, Pull Requests, and several other services. [...]...

17 Aug 2026
Brave browser adds new defenses against GPU fingerprinting
TI
Cyber Insider

Brave browser adds new defenses against GPU fingerprinting

Brave is rolling out new protections to reduce browser fingerprinting through WebGL and WebGPU, two APIs that can expose detailed information about a device&#82...

13 Aug 2026
LexisNexis shuts down services after suspicious activity on servers
TI
Bleeping Computer

LexisNexis shuts down services after suspicious activity on servers

LexisNexis took its Diligence, Metabase API, and Newsdesk services offline as part of its response to unusual activity on servers hosted and managed by an unnam...

10 Aug 2026
How AI-powered phishing killed blocklists for good
TI
Bleeping Computer

How AI-powered phishing killed blocklists for good

AI is helping attackers create disposable phishing infrastructure and rapidly evolving toolkits that blocklists cannot track fast enough. Push Security explains...

5 Aug 2026
OpenAI says its new GPT 5.6 models are becoming more cost-efficient
TI
Bleeping Computer

OpenAI says its new GPT 5.6 models are becoming more cost-efficient

OpenAI says it has reduced the price of two GPT-5.6 models, cutting Luna's API price by 80% and Terra's by 20% as it works to make its models more efficient. [....

31 Jul 2026
Shadow AI agents are multiplying. Here's how to find and secure them.
TI
Bleeping Computer

Shadow AI agents are multiplying. Here's how to find and secure them.

Shadow AI agents are rapidly spreading across enterprise platforms, often without IT or security visibility. Nudge Security explains how organizations can disco...

27 Jul 2026
TI
CIS Advisories

Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.Adobe After Effects is a digi...

14 Jul 2026
Microsoft to retire the OWA Light client in Exchange Server
TI
Bleeping Computer

Microsoft to retire the OWA Light client in Exchange Server

Microsoft has announced plans to disable Outlook Web Access (OWA) Light, the lightweight version of the Outlook Web App email client, in a future Exchange Serve...

9 Jul 2026
ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds
TI
Bleeping Computer

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

ConsentFix and ClickFix attacks steal Microsoft 365 tokens in seconds using fake prompts and OAuth flows. Learn how these MFA bypass tactics work and how to def...

2 Jul 2026
Opera introduces Paste Protect feature to block ClickFix attacks
TI
Cyber Insider

Opera introduces Paste Protect feature to block ClickFix attacks

Opera has introduced a new browser security feature called Paste Protect, designed to stop clipboard-based attacks such as ClickFix before users can execute mal...

2 Jul 2026
TI
CIS Advisories

Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.Adobe Campaign Classic is an ...

1 Jul 2026
ShapedPlugin update flow hacked to infect WordPress sites
TI
Bleeping Computer

ShapedPlugin update flow hacked to infect WordPress sites

Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack that distributed infected releases to paying customers via the vendor's o...

18 Jun 2026
Malicious JetBrains Marketplace plugins steal AI API keys from developers
TI
Bleeping Computer

Malicious JetBrains Marketplace plugins steal AI API keys from developers

At least 15 malicious plugins found on the JetBrains Marketplace were designed to steal AI API keys from developers. [...]...

16 Jun 2026
OptinMonster WordPress plugin hacked in CDN supply-chain attack
TI
Bleeping Computer

OptinMonster WordPress plugin hacked in CDN supply-chain attack

WordPress plugins OptinMonster, TrustPulse, and PushEngage have been compromised in a supply-chain attack impacting Awesome Motive-s content distribution networ...

15 Jun 2026
Researcher uses AI to hack Google and collect $500,000 in bounties
TI
Cyber Insider

Researcher uses AI to hack Google and collect $500,000 in bounties

Security researcher Arvin Shivram has revealed how a custom AI-powered testing system uncovered dozens of vulnerabilities across Google's vast API ecosystem, ea...

12 Jun 2026
New “HTTP/2 Bomb” attack can exhaust server memory in seconds
TI
Cyber Insider

New “HTTP/2 Bomb” attack can exhaust server memory in seconds

Researchers have disclosed a new denial-of-service (DoS) technique dubbed HTTP/2 Bomb, a memory-exhaustion attack that can render major web servers inaccessible...

3 Jun 2026
Google “Won’t Fix” API key staying active for 23 mins after deletion
TI
Cyber Insider

Google “Won’t Fix” API key staying active for 23 mins after deletion

Deleted Google API keys remain valid for up to 23 minutes after revocation, potentially allowing attackers to continue accessing Google Cloud services and Gemin...

21 May 2026
Avada Builder WordPress plugin flaws allow site credential theft
TI
Bleeping Computer

Avada Builder WordPress plugin flaws allow site credential theft

Two vulnerabilities in the Avada Builder plugin for WordPress, with an estimated one million active installations, allow hackers to read arbitrary files and ext...

15 May 2026
Frame Security Emerges From Stealth With $50M for Awareness and Training Platform
TI
Security Week

Frame Security Emerges From Stealth With $50M for Awareness and Training Platform

Team8, Index Ventures, Picture Capital, Elad Gil, Cerca Partners, and Tesonet invested in Frame Security. The post Frame Security Emerges From Stealth With $50M...

11 May 2026
Next →