Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceVulnerabilitiesPage 2

Search by keyword →
Nissan discloses employee data breach linked to Oracle zero-day attacks
TI
Bleeping Computer

Nissan discloses employee data breach linked to Oracle zero-day attacks

Nissan is warning that it suffered a data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft vulnerability in data...

29 Jun 2026
NAIC says public data stolen in ShinyHunters' PeopleSoft breach
TI
Bleeping Computer

NAIC says public data stolen in ShinyHunters' PeopleSoft breach

The National Association of Insurance Commissioners (NAIC) says the ShinyHunters extortion group stole only publicly available data, outdated logs, and configur...

29 Jun 2026
Nissan hit by Oracle PeopleSoft cyberattack exposing internal data
TI
Cyber Insider

Nissan hit by Oracle PeopleSoft cyberattack exposing internal data

Nissan North America has informed employees that a cyberattack targeting Oracle PeopleSoft systems exposed sensitive personnel records, making the automaker one...

29 Jun 2026
Microsoft extends Windows Server 2022 hotpatching until October 2027
TI
Bleeping Computer

Microsoft extends Windows Server 2022 hotpatching until October 2027

Microsoft has extended Windows Server 2022 hotpatching until October 2027, one year after the mainstream end date of October 2026. [...]...

29 Jun 2026
Critical SimpleHelp flaw exploited to deploy new stealer malware
TI
Bleeping Computer

Critical SimpleHelp flaw exploited to deploy new stealer malware

Hackers are exploiting a recently disclosed critical vulnerability (CVE-2026-48558) in SimpleHelp to deploy Djinn Stealer, a previously undocumented cross-platf...

29 Jun 2026
Hackers now exploit critical Oracle E-Business flaw in attacks
TI
Bleeping Computer

Hackers now exploit critical Oracle E-Business flaw in attacks

Attackers have begun exploiting a critical vulnerability (CVE-2026-46817) in the Oracle E-Business Suite (EBS) financial application, according to threat intell...

29 Jun 2026
CISA sets urgent deadline to fix Cisco flaw exploited in attacks
TI
Bleeping Computer

CISA sets urgent deadline to fix Cisco flaw exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is giving federal agencies until Sunday to patch a vulnerability in Cisco Unified Communication...

26 Jun 2026
Unpatched macOS bug could allow tampering trusted applications
TI
Cyber Insider

Unpatched macOS bug could allow tampering trusted applications

Security duo Mysk has disclosed an unpatched macOS vulnerability that they say allows web-installed applications to silently modify other apps' binaries, potent...

26 Jun 2026
Japanese telco suffers breach exposing 14.2 million email passwords
TI
Cyber Insider

Japanese telco suffers breach exposing 14.2 million email passwords

KDDI has disclosed that an email system it operates for internet service providers (ISPs) was breached in a cyberattack, potentially exposing email account info...

26 Jun 2026
TI
CIS Advisories

Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of th...

26 Jun 2026
Japan’s army used USB drives with Chinese malware for a year
TI
Cyber Insider

Japan’s army used USB drives with Chinese malware for a year

Japan's Ground Self-Defense Force (JGSDF) reportedly used counterfeit USB flash drives infected with malware linked to previously identified Chinese threat acti...

25 Jun 2026
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access
TI
Bleeping Computer

Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access

New details have been revealed on how hackers exploited a Cisco Catalyst SD-WAN vulnerability tracked as CVE-2026-20245 in zero-day attacks to create rogue root...

24 Jun 2026
Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks
TI
Bleeping Computer

Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks

A high-severity SSRF vulnerability, tracked as CVE-2026-20230, in Cisco Unified Communications Manager Server is now being exploited in attacks. [...]...

23 Jun 2026
The Exploit Doesn't Exist. You Can Still Prove It Works Against You
TI
Bleeping Computer

The Exploit Doesn't Exist. You Can Still Prove It Works Against You

Attackers can now weaponize newly disclosed vulnerabilities far faster than most organizations can patch them. Picus Security explains how security teams can va...

23 Jun 2026
LastPass confirms data breach in Klue supply chain attack
TI
Bleeping Computer

LastPass confirms data breach in Klue supply chain attack

LastPass announced that hackers accessed customer data from its Salesforce environment after stealing the company's OAuth tokens in the Klue supply chain attack...

23 Jun 2026
FFmpeg fixes PixelSmash flaw in widely used video decoder
TI
Bleeping Computer

FFmpeg fixes PixelSmash flaw in widely used video decoder

A newly disclosed FFmpeg flaw dubbed 'PixelSmash' could be exploited for remote code execution on Jellyfin servers under certain conditions, and can also trigge...

22 Jun 2026
FFmpeg ‘PixelSmash’ bug triggers code execution on media file open
TI
Cyber Insider

FFmpeg ‘PixelSmash’ bug triggers code execution on media file open

A critical vulnerability in FFmpeg, the widely used open-source multimedia framework, can be exploited through a specially crafted video file to achieve remote ...

22 Jun 2026
Microsoft fixes AutoGen Studio flaw that enabled code execution
TI
Bleeping Computer

Microsoft fixes AutoGen Studio flaw that enabled code execution

A vulnerability chain dubbed AutoJack in Microsoft's AutoGen Studio interface for prototyping AI agents could let attackers manipulate an agent into executing a...

22 Jun 2026
Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin
TI
Bleeping Computer

Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin

Threat actors are exploiting an unauthenticated information disclosure vulnerability in the WordPress plugin Gravity SMTP, active on 100,000 sites. [...]...

19 Jun 2026
Unpatchable BootROM exploit for Apple A12-A13 chips now public
TI
Cyber Insider

Unpatchable BootROM exploit for Apple A12-A13 chips now public

Security researchers at Paradigm Shift have disclosed usbliter8, a new SecureROM exploit affecting Apple's A12 and A13 chipsets. The proof-of-concept exploit ac...

19 Jun 2026
← PreviousNext →