Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
376
119
40
16
30
1
High
227
309
82
24
93
7
Medium
118
142
70
17
98
14
Low
24
31
21
—
14
—
Hover to preview · click to filter
All-time · 6526 totalintensity = volume
LIVE
Top 10 Best Patch Management Software in 2026·Top 10 Best Mobile Threat Defense (MTD) Solutions in 2026·Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners·Top 10 Best Mobile Device Management (MDM) Solutions in 2026·Top 10 Best Unified Endpoint Management (UEM) Solutions in 2026·New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access·Google warns of new Chrome zero-day bug exploited in attacks·Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild·Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days·N-able N-central Pre-Auth RCE Flaw Exploited in the Wild·FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests·Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults·Patch Tuesday Sets Another Record With 974 CVEs·Attackers Use Multi-Hop Google Redirects for Phishing Campaign·OpenAI Agents Took Over Wiki Site Before Hugging Face Attack·Top 10 Best Patch Management Software in 2026·Top 10 Best Mobile Threat Defense (MTD) Solutions in 2026·Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners·Top 10 Best Mobile Device Management (MDM) Solutions in 2026·Top 10 Best Unified Endpoint Management (UEM) Solutions in 2026·New Microsoft Defender 'ShieldCrash' zero-day grants SYSTEM access·Google warns of new Chrome zero-day bug exploited in attacks·Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild·Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days·N-able N-central Pre-Auth RCE Flaw Exploited in the Wild·FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests·Microsoft adds age-awareness APIs that can tell if users are children, teens, or adults·Patch Tuesday Sets Another Record With 974 CVEs·Attackers Use Multi-Hop Google Redirects for Phishing Campaign·OpenAI Agents Took Over Wiki Site Before Hugging Face Attack·

Latest IntelligenceVulnerabilitiesPage 3

Search by keyword →
GrapheneOS may skip Pixel 11 over missing hardware security feature
TI
Cyber Insider

GrapheneOS may skip Pixel 11 over missing hardware security feature

GrapheneOS says it may abandon support for Google’s Pixel 11 series after discovering that the new devices appear to lack usable support for ARM Memory Tagging ...

31 Aug 2026
PaperCut releases second emergency patch for exploited flaws
TI
Bleeping Computer

PaperCut releases second emergency patch for exploited flaws

PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG and MF print management software after re...

28 Aug 2026
Experiment shows AI agents can escape secure VMs using zero-days
TI
Cyber Insider

Experiment shows AI agents can escape secure VMs using zero-days

A cyber-capable AI agent could repeatedly escape a QEMU/KVM virtual machine, first using known vulnerabilities and later chaining previously unknown flaws. The ...

28 Aug 2026
GiveWP WordPress donation plugin flaw lets hackers execute server commands
TI
Bleeping Computer

GiveWP WordPress donation plugin flaw lets hackers execute server commands

A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbitrary commands on the hosting server. [......

28 Aug 2026
AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?
TI
Bleeping Computer

AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?

AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaws at a slower pace. Action1 explains why ...

28 Aug 2026
Over 8,300 Gitea servers vulnerable to code execution attacks
TI
Bleeping Computer

Over 8,300 Gitea servers vulnerable to code execution attacks

Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according t...

28 Aug 2026
ServiceNow warns of three max severity security vulnerabilities
TI
Bleeping Computer

ServiceNow warns of three max severity security vulnerabilities

ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and priv...

28 Aug 2026
PaperCut warns of NG, MF flaw exploited in zero-day attacks
TI
Bleeping Computer

PaperCut warns of NG, MF flaw exploited in zero-day attacks

PaperCut is warning that hackers are actively exploiting a vulnerability in all versions of its PaperCut NG and PaperCut MF print management software in zero-da...

27 Aug 2026
Webinar: How Google Workspace breaches happen and what to do next
TI
Bleeping Computer

Webinar: How Google Workspace breaches happen and what to do next

Google Workspace breaches can begin with social engineering or forgotten third-party integrations rather than sophisticated exploits. This webinar examines real...

27 Aug 2026
CISA orders feds to patch Citrix NetScaler RCE flaw by Saturday
TI
Bleeping Computer

CISA orders feds to patch Citrix NetScaler RCE flaw by Saturday

CISA has ordered U.S. government agencies to patch their Citrix NetScaler appliances against an actively exploited remote code execution vulnerability by Saturd...

27 Aug 2026
ATF confirms “major incident” after recent Qilin breach claims
TI
Bleeping Computer

ATF confirms “major incident” after recent Qilin breach claims

ATF, the regulatory agency that enforces federal laws governing firearms and explosives in the United States, has confirmed that one of its systems was compromi...

27 Aug 2026
Critical Avada WordPress theme flaw enables zero-click RCE
TI
Bleeping Computer

Critical Avada WordPress theme flaw enables zero-click RCE

A critical vulnerability chain in the popular Avada theme for WordPress can be exploited by an unauthenticated attacker to execute arbitrary PHP code on the ser...

26 Aug 2026
Hackers target Microsoft SharePoint RCE chain with PoC exploit
TI
Bleeping Computer

Hackers target Microsoft SharePoint RCE chain with PoC exploit

Attackers are now targeting a chain of two Microsoft SharePoint vulnerabilities that can allow them to execute arbitrary code on unpatched servers, according to...

26 Aug 2026
Ubiquiti patches three max severity security vulnerabilities
TI
Bleeping Computer

Ubiquiti patches three max severity security vulnerabilities

Ubiquiti has released security patches for three new maximum-severity vulnerabilities that threat actors can exploit remotely without privileges. [...]...

26 Aug 2026
Hackers now exploit critical Gitea flaw in code injection attacks
TI
Bleeping Computer

Hackers now exploit critical Gitea flaw in code injection attacks

Attackers are now exploiting a critical-severity vulnerability in the Gitea self-hosted Git service, according to the U.S. Cybersecurity and Infrastructure Secu...

26 Aug 2026
AnonyMousKIT service uses AI calls to unlock stolen Apple devices
TI
Cyber Insider

AnonyMousKIT service uses AI calls to unlock stolen Apple devices

A Phishing-as-a-Service (PhaaS) ecosystem dubbed AnonyMousKIT helps criminals steal Apple credentials and disable Activation Lock on stolen devices. The platfor...

25 Aug 2026
Hackers breached over 270 Zimbra servers in ongoing attacks
TI
Bleeping Computer

Hackers breached over 270 Zimbra servers in ongoing attacks

Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vul...

25 Aug 2026
Police arrests dozens of suspects in global cybercrime crackdown
TI
Bleeping Computer

Police arrests dozens of suspects in global cybercrime crackdown

Law enforcement agencies from 22 countries helped identify 263 suspects and arrested 58 individuals linked to cybercrime networks coordinated by African crime g...

25 Aug 2026
Unpatched Calix flaw lets hackers bypass NAT to expose internal devices
TI
Bleeping Computer

Unpatched Calix flaw lets hackers bypass NAT to expose internal devices

An unpatched vulnerability in Calix GS7 XGS (GS5239XG) residential routers used by multiple U.S. broadband providers allows remote, unauthenticated attackers to...

24 Aug 2026
Hackers target WordPress sites in miniOrange auth bypass attacks
TI
Bleeping Computer

Hackers target WordPress sites in miniOrange auth bypass attacks

Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be ...

24 Aug 2026
← PreviousNext →