Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
376
119
40
16
30
1
High
227
309
82
24
93
7
Medium
118
142
70
17
98
14
Low
24
31
21
—
14
—
Hover to preview · click to filter
All-time · 6526 totalintensity = volume
LIVE
Top 10 Best Patch Management Software in 2026·Top 10 Best Mobile Threat Defense (MTD) Solutions in 2026·Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners·Top 10 Best Mobile Device Management (MDM) Solutions in 2026·Top 10 Best Unified Endpoint Management (UEM) Solutions in 2026·New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access·Google warns of new Chrome zero-day bug exploited in attacks·Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild·Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days·N-able N-central Pre-Auth RCE Flaw Exploited in the Wild·FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests·Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults·Patch Tuesday Sets Another Record With 974 CVEs·Attackers Use Multi-Hop Google Redirects for Phishing Campaign·OpenAI Agents Took Over Wiki Site Before Hugging Face Attack·Top 10 Best Patch Management Software in 2026·Top 10 Best Mobile Threat Defense (MTD) Solutions in 2026·Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners·Top 10 Best Mobile Device Management (MDM) Solutions in 2026·Top 10 Best Unified Endpoint Management (UEM) Solutions in 2026·New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access·Google warns of new Chrome zero-day bug exploited in attacks·Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild·Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days·N-able N-central Pre-Auth RCE Flaw Exploited in the Wild·FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests·Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults·Patch Tuesday Sets Another Record With 974 CVEs·Attackers Use Multi-Hop Google Redirects for Phishing Campaign·OpenAI Agents Took Over Wiki Site Before Hugging Face Attack·

Latest IntelligenceAPT & Nation-StatePage 1

Search by keyword →
Microsoft warns of TerminalFix attacks deploying reverse tunnels
TI
Bleeping Computer

Microsoft warns of TerminalFix attacks deploying reverse tunnels

A new ClickFix variant dubbed TerminalFix uses fake Cloudflare CAPTCHA prompts on compromised websites to trick victims into running malicious PowerShell comman...

31 Aug 2026
Hackers abuse npm mirrors to host phishing redirect pages
TI
Bleeping Computer

Hackers abuse npm mirrors to host phishing redirect pages

Threat actors are abusing npm and its mirrors to host malicious HTML pages that impersonate Cloudflare CAPTCHAs to redirect visitors to attacker-controlled webs...

25 Aug 2026
Microsoft links hotel Wi-Fi hacks to Russian Midnight Blizzard hackers
TI
Cyber Insider

Microsoft links hotel Wi-Fi hacks to Russian Midnight Blizzard hackers

Microsoft has attributed an ongoing campaign targeting travelers on hotel and other hospitality Wi-Fi networks to a subgroup of the Russian state-sponsored hack...

3 Aug 2026
New AI attack can reconstruct typed text from keyboard sounds
TI
Cyber Insider

New AI attack can reconstruct typed text from keyboard sounds

Researchers have developed a new acoustic side-channel attack that can reconstruct text typed on a laptop by analyzing nothing more than the sound of keystrokes...

27 Jul 2026
Cloudflare expands behavioral tracking to fight AI bots, says user privacy protected
TI
Cyber Insider

Cloudflare expands behavioral tracking to fight AI bots, says user privacy protected

Cloudflare has introduced Precursor, a new bot detection system that continuously monitors visitor behavior throughout an entire browsing session instead of rel...

13 Jul 2026
Mozilla proposes privacy-preserving alternative to CAPTCHAs
TI
Cyber Insider

Mozilla proposes privacy-preserving alternative to CAPTCHAs

Mozilla has unveiled a new proposal called PACT (Private Access Control Tokens), a framework designed to help websites distinguish legitimate users from abusive...

24 Jun 2026
5 Steps to Managing Shadow AI Tools Without Slowing Down Employees
TI
Bleeping Computer

5 Steps to Managing Shadow AI Tools Without Slowing Down Employees

Many employees already use shadow AI tools at work without security review. Adaptive Security breaks down how teams can build practical AI governance without ad...

18 May 2026
TI
Dark Reading

'FrostyNeighbor' APT Carefully Targets Govt Orgs in Poland, Ukraine

Attackers uniquely fingerprint victims before delivering spear-phishing payloads aimed at espionage, in the latest campaign from the Belarussian nation-state th...

14 May 2026
TI
Dark Reading

China's 'FamousSparrow' APT Nests in South Caucasus Energy Firm

The cyberthreat group targets an Azerbaijani oil and gas firm with repeated attacks, as the China-linked actors extend targeting beyond hospitality, telecom, an...

13 May 2026
TI
Dark Reading

Name That Toon: Mark of (Security) Progress

Feeling creative? Have something to say about the last 20 years of cybersecurity? Our editors will award the best cybersecurity-related caption with a $20 gift ...

1 May 2026
OilRig Hides C2 Configuration in Google Drive Image Using LSB Steganography
TI
Cyber Security News

OilRig Hides C2 Configuration in Google Drive Image Using LSB Steganography

A well-known Iranian state-sponsored hacking group called OilRig, also tracked as APT34 and Helix Kitten, has been found hiding its command-and-control (C2) ser...

28 Apr 2026
Deepfake Voice Attacks are Outpacing Defenses: What Security Leaders Should Know
TI
Bleeping Computer

Deepfake Voice Attacks are Outpacing Defenses: What Security Leaders Should Know

Three seconds of audio is all it takes to clone a voice for fraud. Adaptive Security shows how deepfake calls trick employees into sending real money—and why mo...

27 Apr 2026
Hackers Use Fake CAPTCHA Pages to Trigger Costly International SMS Fraud
TI
Cyber Security News

Hackers Use Fake CAPTCHA Pages to Trigger Costly International SMS Fraud

Most internet users are familiar with CAPTCHA tests, simple challenges like selecting traffic lights or typing distorted letters to confirm they are human. But ...

24 Apr 2026
TI
Dark Reading

Chinese APT Abuses Multiple Cloud Tools to Spy on Mongolia

The threat actor gave itself plenty of options to support command and control, tapping Microsoft Outlook, Slack, Discord, and file.io for online espionage....

24 Apr 2026
TI
Dark Reading

Tropic Trooper APT Takes Aim at Home Routers, Japanese Targets

The Chinese state-sponsored cyber threat is known for moving fast and trying odd attack vectors; now it's branching out in tools, victimology, and TTPs....

24 Apr 2026
New GopherWhisper APT group abuses Outlook, Slack, Discord for comms
TI
Bleeping Computer

New GopherWhisper APT group abuses Outlook, Slack, Discord for comms

A previously undocumented state-backed threat actor named GopherWhisper is using a Go-based custom toolkit and legitimate services like Microsoft 365 Outlook, S...

23 Apr 2026
Hackers Use Outlook Mailboxes to Hide Linux GoGra Backdoor Communications
TI
Cyber Security News

Hackers Use Outlook Mailboxes to Hide Linux GoGra Backdoor Communications

A nation-state-linked hacking group has found a clever way to hide its malicious activity inside Microsoft Outlook mailboxes, making its attacks much harder to ...

23 Apr 2026
TI
Dark Reading

Chinese APT Targets Indian Banks, Korean Policy Circles

China is spying on India's financial sector, for some reason, and it's not putting much effort into it, judging by some stale TTPs....

21 Apr 2026
KelpDAO suffers $290 million heist tied to Lazarus hackers
TI
Bleeping Computer

KelpDAO suffers $290 million heist tied to Lazarus hackers

State-sponsored North Korean hackers are likely behind the $290 million crypto-heist that impacted the KelpDAO DeFi project on Saturday. [...]...

20 Apr 2026
US nationals behind DPRK IT worker 'laptop farm' sent to prison
TI
Bleeping Computer

US nationals behind DPRK IT worker 'laptop farm' sent to prison

Two U.S. nationals have been sent to prison for helping North Korean remote information technology (IT) workers to pose as U.S. residents and get hired by over ...

16 Apr 2026
Next →