Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceVulnerabilitiesPage 20

Search by keyword →
Microsoft releases emergency patches for critical ASP.NET flaw
TI
Bleeping Computer

Microsoft releases emergency patches for critical ASP.NET flaw

Microsoft has released out-of-band (OOB) security updates to patch a critical ASP.NET Core privilege escalation vulnerability. [...]...

28 Apr 2026
Firestarter malware survives Cisco firewall updates, security patches
TI
Bleeping Computer

Firestarter malware survives Cisco firewall updates, security patches

Cybersecurity agencies in the U.S. and U.K. are warning about a custom malware called Firestarter persisting on Cisco Firepower and Secure Firewall devices runn...

28 Apr 2026
TI
The Hacker News

April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and More

A number of critical vulnerabilities impacting products from Adobe, Fortinet, Microsoft, and SAP have taken center stage in April's Patch Tuesday releases. Topp...

28 Apr 2026
Windows Update gets new controls to reduce forced restarts
TI
Bleeping Computer

Windows Update gets new controls to reduce forced restarts

Microsoft is rolling out Windows Update improvements that give users more control over how updates are installed while reducing disruption from frequent or poor...

28 Apr 2026
Firefox is quietly experimenting with Brave’s ad-blocking engine
TI
Cyber Insider

Firefox is quietly experimenting with Brave’s ad-blocking engine

Mozilla has quietly begun experimenting with Brave’s Rust-based ad-blocking engine in Firefox, signaling a potential shift in how the browser handles ads and tr...

28 Apr 2026
Microsoft now lets admins uninstall Copilot on enterprise devices
TI
Bleeping Computer

Microsoft now lets admins uninstall Copilot on enterprise devices

Microsoft says IT administrators can now uninstall the AI-powered Copilot digital assistant from enterprise devices using a new policy setting, which has become...

28 Apr 2026
New Microsoft Defender “RedSun” zero-day PoC grants SYSTEM privileges
TI
Bleeping Computer

New Microsoft Defender “RedSun” zero-day PoC grants SYSTEM privileges

A researcher known as "Chaotic Eclipse" has published a proof-of-concept exploit for a second Microsoft Defender zero-day, dubbed "RedSun," in the past two week...

28 Apr 2026
EU’s official age verification app found exposing sensitive user data
TI
Cyber Insider

EU’s official age verification app found exposing sensitive user data

The European Commission has unveiled its official age-verification app, presenting it as a privacy-preserving, open-source solution to protect minors online. Wi...

28 Apr 2026
Microsoft Teams to get efficiency mode on PCs with limited resources
TI
Bleeping Computer

Microsoft Teams to get efficiency mode on PCs with limited resources

Microsoft is preparing to roll out a new Efficiency Mode for Microsoft Teams for systems with limited CPU and memory resources to improve app responsiveness. [....

28 Apr 2026
Sony to enforce age checks for PlayStation users in the UK starting in June
TI
Cyber Insider

Sony to enforce age checks for PlayStation users in the UK starting in June

Sony has announced that UK-based PlayStation users will soon need to verify their age to maintain access to key social features, with enforcement set to begin i...

28 Apr 2026
New “RedSun” Windows Defender zero-day exploited in the wild
TI
Cyber Insider

New “RedSun” Windows Defender zero-day exploited in the wild

A newly disclosed Windows zero-day vulnerability dubbed “RedSun” is being actively exploited in the wild, allowing attackers to gain SYSTEM privileges by abusin...

28 Apr 2026
Microsoft: Some Windows servers enter reboot loops after April patches
TI
Bleeping Computer

Microsoft: Some Windows servers enter reboot loops after April patches

Microsoft warns that some Windows domain controllers are entering restart loops after installing the April 2026 security updates. [...]...

28 Apr 2026
Critical flaw in Protobuf library enables JavaScript code execution
TI
Bleeping Computer

Critical flaw in Protobuf library enables JavaScript code execution

Proof-of-concept exploit code has been published for a critical remote code execution flaw in protobuf.js, a widely used JavaScript implementation of Google's P...

28 Apr 2026
TI
CIS Advisories

Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web b...

28 Apr 2026
Actively exploited Apache ActiveMQ flaw impacts 6,400 servers
TI
Bleeping Computer

Actively exploited Apache ActiveMQ flaw impacts 6,400 servers

Nonprofit security organization Shadowserver found that over 6,400 Apache ActiveMQ servers exposed online are vulnerable to ongoing attacks exploiting a high-se...

28 Apr 2026
Robinhood account creation flaw abused to send phishing emails
TI
Bleeping Computer

Robinhood account creation flaw abused to send phishing emails

Online trading platform Robinhood's account creation process was exploited by threat actors to inject phishing messages into legitimate emails, tricking users i...

28 Apr 2026
CISA flags new SD-WAN flaw as actively exploited in attacks
TI
Bleeping Computer

CISA flags new SD-WAN flaw as actively exploited in attacks

​CISA has given U.S. government agencies four days to secure their systems against another Catalyst SD-WAN Manager vulnerability it flagged as actively exploite...

28 Apr 2026
Hackers exploit file upload bug in Breeze Cache WordPress plugin
TI
Bleeping Computer

Hackers exploit file upload bug in Breeze Cache WordPress plugin

Hackers are actively exploiting a critical vulnerability in the Breeze Cache plugin for WordPress that allows uploading arbitrary files on the server without au...

28 Apr 2026
Firefox flaw enables cross-site tracking, undermines Tor Browser defenses
TI
Cyber Insider

Firefox flaw enables cross-site tracking, undermines Tor Browser defenses

A newly disclosed vulnerability in Firefox and Tor Browser allowed websites to generate a stable, process-level identifier using IndexedDB, undermining private ...

28 Apr 2026
Multiple OpenClaw Vulnerabilities Enables Policy Bypass and Host Override
TI
Cyber Security News

Multiple OpenClaw Vulnerabilities Enables Policy Bypass and Host Override

Cybersecurity researchers have recently disclosed three moderate-severity vulnerabilities in OpenClaw, an AI agent framework previously known as Clawdbot and Mo...

28 Apr 2026
← PreviousNext →