Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceSocial EngineeringPage 1

Search by keyword →
Phishing poses as big-brand job interview to steal Google accounts
TI
Bleeping Computer

Phishing poses as big-brand job interview to steal Google accounts

A phishing campaign is impersonating more than 30 well-known brands, including Adobe, Netflix, Coca-Cola, and OpenAI, in fake job interviews to steal Google acc...

6 Jul 2026
Agentic AI Has an Identity Problem and Attackers Know It
TI
Bleeping Computer

Agentic AI Has an Identity Problem and Attackers Know It

AI agents can access data, trigger workflows, and take action across enterprise systems. Token Security explains why governing these privileged identities is be...

29 Jun 2026
Order-tracking app Shop abused to push callback phishing attacks
TI
Bleeping Computer

Order-tracking app Shop abused to push callback phishing attacks

Threat actors are increasingly abusing Shop, the order-tracking app from Shopify, by adding fake purchase receipts in users' order histories to trick them into ...

25 Jun 2026
Webinar: Why email security teams are drowning in alerts
TI
Bleeping Computer

Webinar: Why email security teams are drowning in alerts

Phishing, BEC, and account takeover attacks continue to overwhelm security teams with alerts and investigations. This webinar explores how behavioral AI can hel...

23 Jun 2026
Every AI Agent Is an Identity. Most Organizations Don't Treat Them That Way
TI
Bleeping Computer

Every AI Agent Is an Identity. Most Organizations Don't Treat Them That Way

AI agents can access data, trigger workflows, deploy code, and interact with critical business systems, often with little oversight. Token Security breaks down ...

19 Jun 2026
Why Account Takeovers Are Rising and How to Stop Them
TI
Bleeping Computer

Why Account Takeovers Are Rising and How to Stop Them

Account takeovers are rising as attackers bypass traditional defenses through phishing, session hijacking, and MFA fatigue. Specops Software explores how device...

17 Jun 2026
Webinar: How behavioral AI stops phishing and account takeovers
TI
Bleeping Computer

Webinar: How behavioral AI stops phishing and account takeovers

Modern phishing, BEC, and account takeover attacks increasingly bypass traditional email defenses and create operational strain for security teams. This webinar...

15 Jun 2026
The 5 Best Practices for Secure Identity Verification
TI
Bleeping Computer

The 5 Best Practices for Secure Identity Verification

Attackers are increasingly bypassing weak authentication through phishing, MFA fatigue, and service desk social engineering. Specops Software breaks down five b...

10 Jun 2026
WhatsApp says it disrupted new NSO spyware phishing attacks
TI
Bleeping Computer

WhatsApp says it disrupted new NSO spyware phishing attacks

WhatsApp has detected and stopped spear-phishing campaigns allegedly conducted by the NSO Group after investigating user reports of social engineering attacks. ...

8 Jun 2026
What 2026 DBIR Confirms: Attacks Are Living in the Browser
TI
Bleeping Computer

What 2026 DBIR Confirms: Attacks Are Living in the Browser

Phishing, shadow AI, malicious extensions, and credential theft increasingly happen inside the browser. Keep Aware explains what the 2026 Verizon DBIR reveals a...

5 Jun 2026
Why the browser is now the front line for AI security
TI
Bleeping Computer

Why the browser is now the front line for AI security

AI-powered attacks and shadow AI adoption are creating new security risks inside the browser. Push Security explains why browser visibility is becoming critical...

2 Jun 2026
Inside a Crypto Drainer: How to Spot it Before it Empties Your Wallet
TI
Bleeping Computer

Inside a Crypto Drainer: How to Spot it Before it Empties Your Wallet

Modern crypto drainers don't hack wallets. They trick users into approving malicious transactions. Flare explores how the Lucifer DaaS platform scales wallet t...

21 May 2026
Tycoon2FA hijacks Microsoft 365 accounts via device-code phishing
TI
Bleeping Computer

Tycoon2FA hijacks Microsoft 365 accounts via device-code phishing

The Tycoon2FA phishing kit now supports device-code phishing attacks and abuses Trustifi click-tracking URLs to hijack Microsoft 365 accounts. [...]...

17 May 2026
TI
Dark Reading

SecurityScorecard Snags Driftnet to Level Up Threat Intelligence

The acquisition looks to boost visibility into third-party ecosystems, which are becoming a bigger concern as vectors for supply chain attacks....

14 May 2026
New Phishing-to-RMM Attacks: How Analysts Can Detect Trusted-Tool Abuse Early
TI
Cyber Security News

New Phishing-to-RMM Attacks: How Analysts Can Detect Trusted-Tool Abuse Early

ANY.RUN researchers uncovered a phishing-to-RMM campaign in which attackers use fake Microsoft, Adobe, and OneDrive pages to deliver legitimate remote managemen...

6 May 2026
TI
Dark Reading

RMM Tools Fuel Stealthy Phishing Campaign

Attackers are abusing two remote monitoring and management (RMM) tools to evade detection in a campaign that has impacted over 80 organizations so far....

4 May 2026
Researchers report Amazon SES abused in phishing to evade detection
TI
Bleeping Computer

Researchers report Amazon SES abused in phishing to evade detection

Cybersecurity firm Kaspersky reports that the Amazon Simple Email Service (SES) is being increasingly abused to send convincing phishing emails that can bypass ...

4 May 2026
Amazon SES increasingly abused in phishing to evade detection
TI
Bleeping Computer

Amazon SES increasingly abused in phishing to evade detection

The Amazon Simple Email Service (SES) is being increasingly abused to send convincing phishing emails that can bypass standard security filters and render reput...

4 May 2026
Breaking encryption with quantum computing — Interview with Chris Peikert
TI
Cyber Insider

Breaking encryption with quantum computing — Interview with Chris Peikert

The idea that quantum computers could one day break today’s encryption has moved from theory into serious discussion. In practical terms, it means that the math...

1 May 2026
German MPs advised to drop Signal in favor of Wire over security concerns
TI
Cyber Insider

German MPs advised to drop Signal in favor of Wire over security concerns

Germany’s Bundestag is moving to standardize on the Wire messaging platform following a wave of phishing attacks targeting politicians, with President Julia Klö...

1 May 2026
Next →