Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligenceVulnerabilitiesPage 17

Search by keyword →
New “RedSun” Windows Defender zero-day exploited in the wild
TI
Cyber Insider

New “RedSun” Windows Defender zero-day exploited in the wild

A newly disclosed Windows zero-day vulnerability dubbed “RedSun” is being actively exploited in the wild, allowing attackers to gain SYSTEM privileges by abusin...

28 Apr 2026
Microsoft: Some Windows servers enter reboot loops after April patches
TI
Bleeping Computer

Microsoft: Some Windows servers enter reboot loops after April patches

Microsoft warns that some Windows domain controllers are entering restart loops after installing the April 2026 security updates. [...]...

28 Apr 2026
Critical flaw in Protobuf library enables JavaScript code execution
TI
Bleeping Computer

Critical flaw in Protobuf library enables JavaScript code execution

Proof-of-concept exploit code has been published for a critical remote code execution flaw in protobuf.js, a widely used JavaScript implementation of Google's P...

28 Apr 2026
TI
CIS Advisories

Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web b...

28 Apr 2026
Actively exploited Apache ActiveMQ flaw impacts 6,400 servers
TI
Bleeping Computer

Actively exploited Apache ActiveMQ flaw impacts 6,400 servers

Nonprofit security organization Shadowserver found that over 6,400 Apache ActiveMQ servers exposed online are vulnerable to ongoing attacks exploiting a high-se...

28 Apr 2026
Robinhood account creation flaw abused to send phishing emails
TI
Bleeping Computer

Robinhood account creation flaw abused to send phishing emails

Online trading platform Robinhood's account creation process was exploited by threat actors to inject phishing messages into legitimate emails, tricking users i...

28 Apr 2026
CISA flags new SD-WAN flaw as actively exploited in attacks
TI
Bleeping Computer

CISA flags new SD-WAN flaw as actively exploited in attacks

​CISA has given U.S. government agencies four days to secure their systems against another Catalyst SD-WAN Manager vulnerability it flagged as actively exploite...

28 Apr 2026
Hackers exploit file upload bug in Breeze Cache WordPress plugin
TI
Bleeping Computer

Hackers exploit file upload bug in Breeze Cache WordPress plugin

Hackers are actively exploiting a critical vulnerability in the Breeze Cache plugin for WordPress that allows uploading arbitrary files on the server without au...

28 Apr 2026
Firefox flaw enables cross-site tracking, undermines Tor Browser defenses
TI
Cyber Insider

Firefox flaw enables cross-site tracking, undermines Tor Browser defenses

A newly disclosed vulnerability in Firefox and Tor Browser allowed websites to generate a stable, process-level identifier using IndexedDB, undermining private ...

28 Apr 2026
Multiple OpenClaw Vulnerabilities Enables Policy Bypass and Host Override
TI
Cyber Security News

Multiple OpenClaw Vulnerabilities Enables Policy Bypass and Host Override

Cybersecurity researchers have recently disclosed three moderate-severity vulnerabilities in OpenClaw, an AI agent framework previously known as Clawdbot and Mo...

28 Apr 2026
Notepad++ Vulnerability Allows Attackers to Crash Application, Leak Memory Data
TI
Cyber Security News

Notepad++ Vulnerability Allows Attackers to Crash Application, Leak Memory Data

A security vulnerability has been identified in Notepad++, one of the most widely used open-source text editors among developers and IT professionals. The vulne...

27 Apr 2026
TI
Dark Reading

Unpatched 'PhantomRPC' Flaw in Windows Enables Privilege Escalation

A researcher discovered five different exploit paths that stem from an architectural weakness in how Windows' Remote Procedure Call (RPC) mechanism handles conn...

27 Apr 2026
Critical Gemini CLI Vulnerability Enables Remote Code Execution Attacks
TI
Cyber Security News

Critical Gemini CLI Vulnerability Enables Remote Code Execution Attacks

Google has fixed a critical security flaw in the Gemini CLI that could allow attackers to execute remote code in certain automated workflows. The issue affects ...

27 Apr 2026
Incomplete Windows Patch Opens Door to Zero-Click Attacks
TI
Security Week

Incomplete Windows Patch Opens Door to Zero-Click Attacks

The initial vulnerability was exploited by Russia-linked APT28 in attacks against Ukraine and EU countries. The post Incomplete Windows Patch Opens Door to Zero...

27 Apr 2026
EU Proposes Requiring Google to Share User Search Data with Rival Search Engines
TI
Cyber Security News

EU Proposes Requiring Google to Share User Search Data with Rival Search Engines

The European Commission has formally proposed measures requiring Google to share anonymized user search data with rival search engines and AI chatbots, marking ...

27 Apr 2026
Malicious AI Prompt Injection Attacks Increasing, but Sophistication Still Low: Google
TI
Security Week

Malicious AI Prompt Injection Attacks Increasing, but Sophistication Still Low: Google

The tech giant found that many indirect prompt injection attempts are harmless, but some malicious exploits have also been identified. The post Malicious AI Pro...

27 Apr 2026
Easily Exploitable ‘Pack2TheRoot’ Linux Vulnerability Leads to Root Access
TI
Security Week

Easily Exploitable ‘Pack2TheRoot’ Linux Vulnerability Leads to Root Access

A race condition in PackageKit allows unprivileged users to escalate privileges when installing packages. The post Easily Exploitable ‘Pack2TheRoot’...

27 Apr 2026
US Launches Sweeping Crackdown on Southeast Asia Cyberscams and Sanctions Cambodian Senator
TI
Security Week

US Launches Sweeping Crackdown on Southeast Asia Cyberscams and Sanctions Cambodian Senator

U.S. officials have announced a sweeping crackdown on Southeast Asian cyberscam operations as part of what U.S. Attorney Jeanine Pirro characterized Friday as a...

27 Apr 2026
Firefox Vulnerability Allows Tor User Fingerprinting
TI
Security Week

Firefox Vulnerability Allows Tor User Fingerprinting

The vulnerability is tracked as CVE-2026-6770 and it has been patched with the release of Firefox 150 and Tor 15.0.10. The post Firefox Vulnerability Allows Tor...

27 Apr 2026
pentest-ai-agents – 28 Claude Code Subagents for Penetration Testing
TI
Cyber Security News

pentest-ai-agents – 28 Claude Code Subagents for Penetration Testing

A new open-source toolkit called pentest-ai-agents is redefining how security professionals leverage AI in penetration testing workflows, transforming Anthropic...

27 Apr 2026
← PreviousNext →