Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceThreat IntelligencePage 3

Search by keyword →
Critical GitLab Vulnerabilities Enables XSS and Unauthenticated DoS Attacks
TI
Cyber Security News

Critical GitLab Vulnerabilities Enables XSS and Unauthenticated DoS Attacks

Threat actors are constantly hunting for infrastructure weaknesses, and a newly discovered batch of vulnerabilities in GitLab just handed them a dangerous roadm...

14 May 2026
G7 Countries Release AI SBOM Guidance
TI
Security Week

G7 Countries Release AI SBOM Guidance

The goal of the guidance, which outlines minimum elements, is to help organizations enhance transparency in AI systems and supply chains.  The post G7 Countries...

14 May 2026
Seedworm APT Abuses Signed Fortemedia and SentinelOne Binaries for DLL Sideloading
TI
Cyber Security News

Seedworm APT Abuses Signed Fortemedia and SentinelOne Binaries for DLL Sideloading

Iran-linked hackers have been quietly breaking into networks around the world, and their latest campaign is more calculated than anything we have seen from them...

14 May 2026
TI
Dark Reading

Attackers Weaponize RubyGems for Data Dead Drops

Threat actors are publishing RubyGems packages that include scrapers targeting public-facing UK government servers, but with no clear objective....

13 May 2026
Sweet Security Launches Agentic AI Red Teaming to Counter ‘Mythos Moment’
TI
Security Week

Sweet Security Launches Agentic AI Red Teaming to Counter ‘Mythos Moment’

New “Sweet Attack” platform uses runtime intelligence and continuous agentic red teaming to identify exploitable attack chains human teams may miss. The post Sw...

13 May 2026
How Top SOCs and MSSPs Prevent Phishing Incidents Missed by Email Filters
TI
Cyber Security News

How Top SOCs and MSSPs Prevent Phishing Incidents Missed by Email Filters

Email filters are important, but they can’t remove phishing risk on their own. Today’s campaigns are built to slip through the cracks, using fres...

13 May 2026
Webinar Today: ROI for Cyber-Physical Security Programs
TI
Security Week

Webinar Today: ROI for Cyber-Physical Security Programs

This webinar will help OT security teams and asset owners stop being cost centers and start being resilience drivers. The post Webinar Today: ROI for Cyber-Phys...

13 May 2026
ClickFix Evolves with 10-Year-Old Open-Source Python SOCKS5 Proxy
TI
Cyber Security News

ClickFix Evolves with 10-Year-Old Open-Source Python SOCKS5 Proxy

A cyberattack campaign that tricks users into running malicious commands on their own computers has taken a dangerous new turn. The technique, known as “C...

13 May 2026
Ivanti Patches Multiple Vulnerabilities in Secure Access, Xtraction, vTM and Endpoint Manager
TI
Cyber Security News

Ivanti Patches Multiple Vulnerabilities in Secure Access, Xtraction, vTM and Endpoint Manager

Ivanti has released its May 2026 Patch Tuesday security updates, disclosing vulnerabilities across four products while revealing that artificial intelligence to...

12 May 2026
No Blind Spots: How Top MSSPs Prevent Incidents withLive Threat Visibility
TI
Cyber Security News

No Blind Spots: How Top MSSPs Prevent Incidents withLive Threat Visibility

Every incident that damages a client starts with a moment of invisibility: a connection the SIEM didn’t flag, a domain the detection rules didn’t kn...

12 May 2026
Threat Actors Leverage Vercel’s AI Tools to Mass‑Produce Realistic Phishing Sites
TI
Cyber Security News

Threat Actors Leverage Vercel’s AI Tools to Mass‑Produce Realistic Phishing Sites

A new and growing wave of phishing attacks is making credential theft easier than ever before. Threat actors are now using Vercel, a legitimate AI-powered web d...

12 May 2026
New Stealthy Vidar Stealer Campaign Bypass EDR and Steal Credentials
TI
Cyber Security News

New Stealthy Vidar Stealer Campaign Bypass EDR and Steal Credentials

A new and highly stealthy campaign distributing Vidar Stealer has surfaced, targeting Windows users with a sophisticated attack chain designed to slip past endp...

12 May 2026
BWH Hotels Says Hackers Had Access to Reservation Data for 6 Months
TI
Security Week

BWH Hotels Says Hackers Had Access to Reservation Data for 6 Months

Threat actors obtained names and contact information for an unspecified number of BWH Hotels guests. The post BWH Hotels Says Hackers Had Access to Reservation...

12 May 2026
Malicious Chrome MV3 Extension Impersonates TronLink to Steal Crypto Wallet Credentials
TI
Cyber Security News

Malicious Chrome MV3 Extension Impersonates TronLink to Steal Crypto Wallet Credentials

A fake Chrome browser extension pretending to be the popular TronLink crypto wallet has been caught stealing sensitive wallet credentials from unsuspecting user...

12 May 2026
MistralAI PyPI Package Compromised to Inject Malicious Code – Microsoft Warns
TI
Cyber Security News

MistralAI PyPI Package Compromised to Inject Malicious Code – Microsoft Warns

A popular AI development library has been turned into a weapon. The mistralai PyPI package, version 2.4.6, was found to contain malicious code secretly injected...

12 May 2026
Is The SOC Obsolete, And We Just Haven’t Admitted It Yet?
TI
Security Week

Is The SOC Obsolete, And We Just Haven’t Admitted It Yet?

Many AI-first enterprises have already embraced sovereign architectures for general AI initiatives; cybersecurity—and the SOC—should be next. The post Is The SO...

12 May 2026
New ‘Shai-Hulud’ attack breached hundreds of npm and PyPI packages
TI
Cyber Insider

New ‘Shai-Hulud’ attack breached hundreds of npm and PyPI packages

A rapidly expanding supply-chain attack tied to the “Mini Shai-Hulud” malware campaign has compromised more than 400 package artifacts across npm, PyPI, and Com...

12 May 2026
TanStack, Mistral AI, UiPath Hit in Fresh Supply Chain Attack
TI
Security Week

TanStack, Mistral AI, UiPath Hit in Fresh Supply Chain Attack

Over 400 malicious versions of 170 packages were published as part of the new Mini Shai-Hulud campaign. The post TanStack, Mistral AI, UiPath Hit in Fresh Suppl...

12 May 2026
Magecart Hackers Abuse Google Tag Manager to Inject Credit Card Skimmers
TI
Cyber Security News

Magecart Hackers Abuse Google Tag Manager to Inject Credit Card Skimmers

Online shoppers have long been targets of digital theft, but a recent wave of attacks has raised the stakes in a troubling new way. Hackers tied to the notoriou...

12 May 2026
84 TanStack npm Packages Hacked in Ongoing Supply-Chain Attack Targeting CI Credentials
TI
Cyber Security News

84 TanStack npm Packages Hacked in Ongoing Supply-Chain Attack Targeting CI Credentials

A significant supply-chain compromise affecting 84 npm package artifacts across the TanStack namespace. The malicious versions, published to the npm registry at...

12 May 2026
← PreviousNext →