Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceVulnerabilitiesPage 21

Search by keyword →
Notepad++ Vulnerability Allows Attackers to Crash Application, Leak Memory Data
TI
Cyber Security News

Notepad++ Vulnerability Allows Attackers to Crash Application, Leak Memory Data

A security vulnerability has been identified in Notepad++, one of the most widely used open-source text editors among developers and IT professionals. The vulne...

27 Apr 2026
TI
Dark Reading

Unpatched 'PhantomRPC' Flaw in Windows Enables Privilege Escalation

A researcher discovered five different exploit paths that stem from an architectural weakness in how Windows' Remote Procedure Call (RPC) mechanism handles conn...

27 Apr 2026
Critical Gemini CLI Vulnerability Enables Remote Code Execution Attacks
TI
Cyber Security News

Critical Gemini CLI Vulnerability Enables Remote Code Execution Attacks

Google has fixed a critical security flaw in the Gemini CLI that could allow attackers to execute remote code in certain automated workflows. The issue affects ...

27 Apr 2026
Incomplete Windows Patch Opens Door to Zero-Click Attacks
TI
Security Week

Incomplete Windows Patch Opens Door to Zero-Click Attacks

The initial vulnerability was exploited by Russia-linked APT28 in attacks against Ukraine and EU countries. The post Incomplete Windows Patch Opens Door to Zero...

27 Apr 2026
EU Proposes Requiring Google to Share User Search Data with Rival Search Engines
TI
Cyber Security News

EU Proposes Requiring Google to Share User Search Data with Rival Search Engines

The European Commission has formally proposed measures requiring Google to share anonymized user search data with rival search engines and AI chatbots, marking ...

27 Apr 2026
Malicious AI Prompt Injection Attacks Increasing, but Sophistication Still Low: Google
TI
Security Week

Malicious AI Prompt Injection Attacks Increasing, but Sophistication Still Low: Google

The tech giant found that many indirect prompt injection attempts are harmless, but some malicious exploits have also been identified. The post Malicious AI Pro...

27 Apr 2026
Easily Exploitable ‘Pack2TheRoot’ Linux Vulnerability Leads to Root Access
TI
Security Week

Easily Exploitable ‘Pack2TheRoot’ Linux Vulnerability Leads to Root Access

A race condition in PackageKit allows unprivileged users to escalate privileges when installing packages. The post Easily Exploitable ‘Pack2TheRoot’...

27 Apr 2026
US Launches Sweeping Crackdown on Southeast Asia Cyberscams and Sanctions Cambodian Senator
TI
Security Week

US Launches Sweeping Crackdown on Southeast Asia Cyberscams and Sanctions Cambodian Senator

U.S. officials have announced a sweeping crackdown on Southeast Asian cyberscam operations as part of what U.S. Attorney Jeanine Pirro characterized Friday as a...

27 Apr 2026
Firefox Vulnerability Allows Tor User Fingerprinting
TI
Security Week

Firefox Vulnerability Allows Tor User Fingerprinting

The vulnerability is tracked as CVE-2026-6770 and it has been patched with the release of Firefox 150 and Tor 15.0.10. The post Firefox Vulnerability Allows Tor...

27 Apr 2026
pentest-ai-agents – 28 Claude Code Subagents for Penetration Testing
TI
Cyber Security News

pentest-ai-agents – 28 Claude Code Subagents for Penetration Testing

A new open-source toolkit called pentest-ai-agents is redefining how security professionals leverage AI in penetration testing workflows, transforming Anthropic...

27 Apr 2026
Litecoin Zero-Day Vulnerability Exploited in DoS Attack, Disrupts Major Mining Pools
TI
Cyber Security News

Litecoin Zero-Day Vulnerability Exploited in DoS Attack, Disrupts Major Mining Pools

A critical zero-day vulnerability in the Litecoin network was actively exploited to launch a denial-of-service (DoS) attack, temporarily disrupting operations a...

26 Apr 2026
New Windows RPC Vulnerability Lets Attackers Escalate Privileges Across All Windows Versions
TI
Cyber Security News

New Windows RPC Vulnerability Lets Attackers Escalate Privileges Across All Windows Versions

PhantomRPC, a newly identified architectural vulnerability in Windows Remote Procedure Call (RPC) that enables local privilege escalation to SYSTEM-level access...

25 Apr 2026
Hackers Can Abuse Entra Agent ID Administrator Role to Hijack Service Principals
TI
Cyber Security News

Hackers Can Abuse Entra Agent ID Administrator Role to Hijack Service Principals

A critical scope overreach vulnerability was recently identified in the Microsoft Entra Agent Identity Platform. The newly introduced Agent ID Administrator rol...

25 Apr 2026
TI
Dark Reading

Helping Romance Scam Victims Require a Proactive, Empathic Approach

People targeted by confidence schemes find getting help is a lonely road. Experts want law enforcement, financial and government institutions to work together a...

24 Apr 2026
TI
Dark Reading

Helping Romance Scam Victims Requires a Proactive, Empathic Approach

People targeted by confidence schemes find getting help is a lonely road. Experts want law enforcement, financial, and government institutions to work together ...

24 Apr 2026
Microsoft to roll out Entra passkeys on Windows in late April
TI
Bleeping Computer

Microsoft to roll out Entra passkeys on Windows in late April

Microsoft will roll out passkey support for phishing-resistant passwordless authentication to Microsoft Entra‑protected resources from Windows devices starting ...

24 Apr 2026
New ‘Pack2TheRoot’ flaw gives hackers root Linux access
TI
Bleeping Computer

New ‘Pack2TheRoot’ flaw gives hackers root Linux access

A new vulnerability dubbed Pack2TheRoot could be exploited in the PackageKit daemon to allow local Linux users to install or remove system packages and gain roo...

24 Apr 2026
Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks
TI
Bleeping Computer

Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks

Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw. [...

24 Apr 2026
Xiongmai IP Camera Vulnerability Let Attackers Bypass Authentication and have Remote Access
TI
Cyber Security News

Xiongmai IP Camera Vulnerability Let Attackers Bypass Authentication and have Remote Access

Security cameras are designed to keep commercial facilities safe. However, a newly disclosed critical vulnerability in Hangzhou Xiongmai Technology’s XM53...

24 Apr 2026
Python Vulnerability Allows Out-of-Bounds Write on Windows Systems
TI
Cyber Security News

Python Vulnerability Allows Out-of-Bounds Write on Windows Systems

A security vulnerability has been discovered in Python’s Windows asyncio implementation, allowing attackers to trigger out-of-bounds memory writes through...

24 Apr 2026
← PreviousNext →