Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligenceMalwarePage 7

Search by keyword →
Police shut down reboot of Crimenetwork marketplace, arrest admin
TI
Bleeping Computer

Police shut down reboot of Crimenetwork marketplace, arrest admin

German authorities have shut down a relaunch version of the criminal marketplace 'Crimenetwork' that generated more than 3.6 million euros, and arrested its ope...

10 May 2026
JDownloader site hacked to replace installers with Python RAT malware
TI
Bleeping Computer

JDownloader site hacked to replace installers with Python RAT malware

The website for the popular JDownloader download manager was compromised earlier this week to distribute malicious Windows and Linux installers, with the Window...

9 May 2026
Fake OpenAI repository on Hugging Face pushes infostealer malware
TI
Bleeping Computer

Fake OpenAI repository on Hugging Face pushes infostealer malware

A malicious Hugging Face repository that reached the platform's trending list impersonated OpenAI's "Privacy Filter" project to deliver information-stealing mal...

9 May 2026
TCLBANKER Malware Targets Users Through Self-Propagating WhatsApp and Outlook Worm Modules
TI
Cyber Security News

TCLBANKER Malware Targets Users Through Self-Propagating WhatsApp and Outlook Worm Modules

A highly sophisticated Brazilian banking trojan named TCLBANKER, tracked under the campaign REF3076, this malware represents a major update to the older Maveric...

9 May 2026
Let’s Encrypt Halts Certificate Issuance After Cross-Signed Root Certificate Incident
TI
Cyber Security News

Let’s Encrypt Halts Certificate Issuance After Cross-Signed Root Certificate Incident

Let’s Encrypt temporarily suspended all certificate issuance on May 8, 2026, after engineers identified a critical issue involving a cross-signed certific...

9 May 2026
New PamDOORa Backdoor Attacking Linux Systems to Steal SSH Credentials
TI
Cyber Security News

New PamDOORa Backdoor Attacking Linux Systems to Steal SSH Credentials

A new backdoor called PamDOORa has emerged as a serious and growing threat to Linux systems, targeting one of the most trusted components of the operating syste...

8 May 2026
Hackers Deploy Modular RAT With Credential Theft and Screenshot Capture Capabilities
TI
Cyber Security News

Hackers Deploy Modular RAT With Credential Theft and Screenshot Capture Capabilities

A newly identified malware campaign is targeting senior executives and government investigators across Southeast Asia, using a modular Remote Access Trojan capa...

8 May 2026
Hackers Use Fake OpenClaw Installer to Steal Crypto Wallet and Password Manager Credentials
TI
Cyber Security News

Hackers Use Fake OpenClaw Installer to Steal Crypto Wallet and Password Manager Credentials

A dangerous new infostealer campaign is targeting some of the most sensitive data people store on their computers. Disguised as a legitimate installer for OpenC...

8 May 2026
In Other News: Train Hacker Arrested, PamDOORa Linux Backdoor, New CISA Director Frontrunner
TI
Security Week

In Other News: Train Hacker Arrested, PamDOORa Linux Backdoor, New CISA Director Frontrunner

Other noteworthy stories that might have slipped under the radar: US gov targets 72-hour patch cycles, malware uses Windows Phone Link to steal OTPs, spy operat...

8 May 2026
New ZiChatBot Malware Uses Zulip REST APIs as Command and Control Server
TI
Cyber Security News

New ZiChatBot Malware Uses Zulip REST APIs as Command and Control Server

A newly discovered malware called ZiChatBot has been found quietly using the REST APIs of a legitimate team chat application called Zulip to receive and carry o...

8 May 2026
Hackers Leveraged Hugging Face and ClawHub With 575+ Malicious Skills to Deploy Malware
TI
Cyber Security News

Hackers Leveraged Hugging Face and ClawHub With 575+ Malicious Skills to Deploy Malware

An active malware distribution campaign abusing two prominent AI platforms Hugging Face and ClawHub to deliver trojans, cryptominers, and infostealers disguised...

8 May 2026
New Infostealer Campaign Uses GitHub Releases for Payload Hosting and Evasion
TI
Cyber Security News

New Infostealer Campaign Uses GitHub Releases for Payload Hosting and Evasion

A newly discovered cyberespionage campaign is using a deceptively simple tactic to slip past security defenses: disguising malware as a humanitarian aid request...

8 May 2026
Hackers Abuse Signed Logitech Installer to Deploy TCLBANKER Banking Trojan
TI
Cyber Security News

Hackers Abuse Signed Logitech Installer to Deploy TCLBANKER Banking Trojan

A new banking trojan known as TCLBANKER has been quietly making rounds, and its delivery method is as clever as it is concerning. Attackers are using a trojaniz...

8 May 2026
Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants
TI
Security Week

Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants

The hackers gained the ability to modify equipment operational parameters, creating a direct risk to the public water supply. The post Polish Security Agency Re...

8 May 2026
Former IT contractor convicted for wiping 96 US government databases
TI
Cyber Insider

Former IT contractor convicted for wiping 96 US government databases

A federal jury has convicted a Virginia man for his role in a retaliatory cyberattack that wiped dozens of US government databases after he and his twin brother...

8 May 2026
Cyberattack Hits Canvas System Used by Thousands of Schools as Finals Loom
TI
Security Week

Cyberattack Hits Canvas System Used by Thousands of Schools as Finals Loom

A system that thousands of schools and universities use went offline due to a cyberattack, creating chaos as students tried to study for finals. The post Cybera...

8 May 2026
Ransomware Group Takes Credit for Trellix Hack
TI
Security Week

Ransomware Group Takes Credit for Trellix Hack

RansomHouse has published several screenshots to demonstrate access to internal Trellix services. The post Ransomware Group Takes Credit for Trellix Hack appear...

8 May 2026
New TCLBanker malware self-spreads over WhatsApp and Outlook
TI
Bleeping Computer

New TCLBanker malware self-spreads over WhatsApp and Outlook

A new trojan named TCLBanker, which targets 59 banking, fintech, and cryptocurrency platforms, uses a trojanized MSI installer for Logitech AI Prompt Builder to...

7 May 2026
TI
Dark Reading

After Replacing TeamPCP Malware, 'PCPJack' Steals Cloud Secrets

PCPJack makes innovative use of parquet files for stealthy, pre-validated target discovery as it canvasses multiple cloud environments....

7 May 2026
“ClaudeBleed” allows any Chrome extension to control Anthropic’s AI assistant
TI
Cyber Insider

“ClaudeBleed” allows any Chrome extension to control Anthropic’s AI assistant

A critical flaw in Anthropic’s “Claude in Chrome” browser extension allows any Chrome extension, even one with zero permissions, to hijack Claude’s AI capabilit...

7 May 2026
← PreviousNext →