Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceMalwarePage 3

Search by keyword →
New macOS ClickFix attack silently mounts DMGs to push infostealer
TI
Bleeping Computer

New macOS ClickFix attack silently mounts DMGs to push infostealer

A new macOS ClickFix campaign is using Terminal commands to silently download, mount, and launch info-stealing malware from malicious disk image (DMG) files. [....

23 Jun 2026
GIGABYTE confirms UEFI password bypass possible, calls it a design issue
TI
Cyber Insider

GIGABYTE confirms UEFI password bypass possible, calls it a design issue

A security issue in the Microsoft Windows Recovery Environment (WinRE) could allow attackers to bypass administrator-configured UEFI or BIOS passwords on GIGABY...

23 Jun 2026
WhatsApp phishing attack uses fake business docs to hack PCs
TI
Bleeping Computer

WhatsApp phishing attack uses fake business docs to hack PCs

An ongoing malware campaign is targeting WhatsApp users in multiple countries with deceptive messages that push VBScript files, leading to remote system access....

22 Jun 2026
AryStinger botnet infected thousands of D-Link routers worldwide
TI
Bleeping Computer

AryStinger botnet infected thousands of D-Link routers worldwide

A previously undocumented malware botnet named AryStinger has compromised more than 4,000 outdated routers to turn them into proxies for malicious traffic. [......

21 Jun 2026
New Prinz Eugen ransomware prioritizes recent files for encryption
TI
Bleeping Computer

New Prinz Eugen ransomware prioritizes recent files for encryption

A new ransomware operation named 'Prinz Eugen' prioritizes recently modified files for encryption and leaves no ransom note on the system. [...]...

20 Jun 2026
Webinar: How attackers bypass MFA and how defenders can respond
TI
Bleeping Computer

Webinar: How attackers bypass MFA and how defenders can respond

Modern phishing attacks, including Device Code phishing, can undermine MFA protections and grant attackers access to corporate accounts without stealing passwor...

19 Jun 2026
NY man charged after harassing college student with AI-generated nudes
TI
Bleeping Computer

NY man charged after harassing college student with AI-generated nudes

A New York man faces cyberstalking charges after allegedly sharing AI-generated nude images and fabricated racist messages using fake social media profiles to h...

19 Jun 2026
Gentlemen ransomware uses multiple EDR killers to disable defenses
TI
Bleeping Computer

Gentlemen ransomware uses multiple EDR killers to disable defenses

The Gentlemen ransomware-as-a-service (RaaS) is actively developing and maintaining a suite of endpoint detection and response (EDR) killers to help affiliates ...

18 Jun 2026
USB worm spreads crypto-stealing malware via Windows shortcut files
TI
Bleeping Computer

USB worm spreads crypto-stealing malware via Windows shortcut files

Threat actors targeting cryptocurrency wallets have been distributing clipboard-stealing malware with self-spreading capabilities and using the Tor network to c...

18 Jun 2026
Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp
TI
Bleeping Computer

Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp

International law enforcement agencies cleaned nearly 15,000 malware-infected WordPress websites and took down more than 100 servers linked to the SocGholish bo...

18 Jun 2026
Telegram admits it couldn't police exam-leak channels, India tells court
TI
Bleeping Computer

Telegram admits it couldn't police exam-leak channels, India tells court

India's government has told the Delhi High Court that Telegram was warned about two weeks before it was blocked, and that the platform admitted it could not pro...

18 Jun 2026
Moody Bible Institute investigates potential data breach incident
TI
Cyber Insider

Moody Bible Institute investigates potential data breach incident

Moody Bible Institute (MBI) says it is investigating claims that its systems were breached after the institution appeared on the dark web extortion site operate...

18 Jun 2026
Microsoft warns of USB worm-like malware using Tor for stealth
TI
Cyber Insider

Microsoft warns of USB worm-like malware using Tor for stealth

Microsoft has identified a cryptocurrency clipper malware campaign, active since February 2026, that combines USB-based propagation, a Tor-hidden command-and-co...

18 Jun 2026
Supply-chain attack injects backdoor on ShapedPlugin WordPress software
TI
Cyber Insider

Supply-chain attack injects backdoor on ShapedPlugin WordPress software

A supply-chain attack targeted ShapedPlugin, a WordPress plugin developer with more than 400,000 active installations across its free products. The backdoored p...

17 Jun 2026
Apple’s Hide My Email service will soon be easier to identify and block
TI
Cyber Insider

Apple’s Hide My Email service will soon be easier to identify and block

Apple has announced plans to consolidate the email domains used by Sign in with Apple and iCloud+ Hide My Email under a new shared domain, private.icloud.com, l...

17 Jun 2026
New Rokarolla Android malware targets 217 banking, crypto apps
TI
Bleeping Computer

New Rokarolla Android malware targets 217 banking, crypto apps

A new Android banking trojan named Rokarolla is targeting 217 banking and cryptocurrency applications using an extensive set of 137 commands. [...]...

16 Jun 2026
Steam Workshop abused to spread malware via Wallpaper Engine app
TI
Bleeping Computer

Steam Workshop abused to spread malware via Wallpaper Engine app

Threat actors are abusing Steam Workshop, Valve's community hub for downloading game-related content, to push various malware hidden in wallpaper packages. [......

16 Jun 2026
GhostTree Attack Abused Recursive Windows Junctions to Hide Malware
TI
Bleeping Computer

GhostTree Attack Abused Recursive Windows Junctions to Hide Malware

GhostTree uses recursive NTFS junctions to generate vast numbers of valid Windows file paths. Varonis explains how the technique could cause Microsoft Defender ...

16 Jun 2026
Ransomware gang abuses Microsoft Teams relays to hide malicious traffic
TI
Bleeping Computer

Ransomware gang abuses Microsoft Teams relays to hide malicious traffic

DragonForce ransomware used a custom malware named 'Backdoor.Turn' to hide command-and-control traffic inside Microsoft Teams relay infrastructure. [...]...

16 Jun 2026
ESET discovers Windows SprySOCKS variant with rootkit capabilities
TI
Cyber Insider

ESET discovers Windows SprySOCKS variant with rootkit capabilities

ESET researchers have uncovered two previously undocumented Windows variants of SprySOCKS, a backdoor previously known only as a Linux threat and linked to the ...

16 Jun 2026
← PreviousNext →