Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceVulnerabilitiesPage 3

Search by keyword →
CISA: Splunk Enterprise flaw actively exploited, patch by Sunday
TI
Bleeping Computer

CISA: Splunk Enterprise flaw actively exploited, patch by Sunday

CISA has urged U.S. federal agencies to secure their systems by Sunday against a critical Splunk Enterprise vulnerability that is being exploited in attacks. [....

19 Jun 2026
Apple fixes Beats Studio Buds flaw that allowed nearby attackers to eavesdrop
TI
Cyber Insider

Apple fixes Beats Studio Buds flaw that allowed nearby attackers to eavesdrop

Apple has released Beats Firmware Update 1B211 to address a Bluetooth vulnerability affecting Beats Studio Buds that could allow a nearby attacker to listen thr...

18 Jun 2026
Apple fixes Beats Studio Buds flaw that let hackers spy on conversations
TI
Bleeping Computer

Apple fixes Beats Studio Buds flaw that let hackers spy on conversations

Apple has released security updates to patch a high-severity flaw affecting the Beats Studio Buds wireless earbuds that could allow attackers in Bluetooth range...

18 Jun 2026
F5 issues out-of-band patches for critical NGINX vulnerabilities
TI
Bleeping Computer

F5 issues out-of-band patches for critical NGINX vulnerabilities

Cybersecurity company F5 has released out-of-band security updates to address multiple NGINX web server vulnerabilities, including two critical-severity flaws t...

18 Jun 2026
Firefox AI Chatbot feature exposed users to email theft risk
TI
Cyber Insider

Firefox AI Chatbot feature exposed users to email theft risk

A vulnerability in Firefox's AI chatbot integration could allow malicious websites to inject hidden instructions into AI prompts and extract data from connected...

17 Jun 2026
CISA orders feds to patch max severity Joomla plugin flaw by Friday
TI
Bleeping Computer

CISA orders feds to patch max severity Joomla plugin flaw by Friday

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity flaw in the Widget Factory Joomla Cont...

17 Jun 2026
Microsoft working on Defender patch for RoguePlanet zero-day
TI
Bleeping Computer

Microsoft working on Defender patch for RoguePlanet zero-day

Microsoft confirmed that it's working on a security patch for a Defender zero-day vulnerability named "RoguePlanet," disclosed one week ago. [...]...

17 Jun 2026
TI
CIS Advisories

Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web b...

16 Jun 2026
TI
CIS Advisories

A Vulnerability in SimpleHelp Could Allow for Authentication Bypass

A vulnerability has been discovered in SimpleHelp, which could allow for authentication bypass. SimpleHelp is a self-hosted remote support, access, and monitori...

16 Jun 2026
Session avoids shutdown as community donations save the project
TI
Cyber Insider

Session avoids shutdown as community donations save the project

Session, the decentralized encrypted messaging platform that warned earlier this year it could shut down due to a funding crisis, will continue operating after ...

16 Jun 2026
CISA warns of another cPanel plugin flaw exploited in attacks
TI
Bleeping Computer

CISA warns of another cPanel plugin flaw exploited in attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. government agencies three days to secure their servers against an actively explo...

16 Jun 2026
Critical Fortinet FortiSandbox flaws now exploited in attacks
TI
Bleeping Computer

Critical Fortinet FortiSandbox flaws now exploited in attacks

Attackers are now exploiting several critical vulnerabilities in Fortinet's FortiSandbox cyber threat detection platform, according to threat intelligence compa...

16 Jun 2026
SimpleHelp bug lets hackers create rogue remote support accounts
TI
Bleeping Computer

SimpleHelp bug lets hackers create rogue remote support accounts

A vulnerability in the SimpleHelp remote management software allows unauthenticated attackers to create privileged technician accounts on servers using the Open...

15 Jun 2026
Cisco fixes SD-WAN vManage flaw exploited in zero-day attacks
TI
Bleeping Computer

Cisco fixes SD-WAN vManage flaw exploited in zero-day attacks

Cisco has released security updates to address a vulnerability in the Catalyst SD-WAN Manager, tracked as CVE-2026-20262, that was exploited in attacks to escal...

15 Jun 2026
phpBB forum fixes auth bypass bug lurking for a decade
TI
Bleeping Computer

phpBB forum fixes auth bypass bug lurking for a decade

A 10-year-old authentication bypass vulnerability discovered in the phpBB forum software allows an attacker to log in as any user, including administrators. [.....

12 Jun 2026
Google warns of Oracle PeopleSoft attacks hitting universities
TI
Cyber Insider

Google warns of Oracle PeopleSoft attacks hitting universities

Google's Mandiant and Google Threat Intelligence Group (GTIG) say the ShinyHunters extortion group exploited a critical Oracle PeopleSoft vulnerability as a zer...

12 Jun 2026
CISA orders feds to patch actively exploited Ivanti flaw by Sunday
TI
Bleeping Computer

CISA orders feds to patch actively exploited Ivanti flaw by Sunday

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered government agencies to patch an actively exploited Ivanti Sentry flaw within three days...

12 Jun 2026
Oracle mitigates PeopleSoft zero-day exploited in data theft attacks
TI
Bleeping Computer

Oracle mitigates PeopleSoft zero-day exploited in data theft attacks

Oracle is warning about a critical PeopleSoft Suite zero-day vulnerability tracked as CVE-2026-35273 that allows unauthenticated remote code execution, with the...

11 Jun 2026
TI
CIS Advisories

A Vulnerability in Oracle PeopleSoft PeopleTools Could Allow for Remote Code Execution

A vulnerability has been discovered in the Updates Environment Management component of PeopleSoft Enterprise PeopleTools that could allow an attacker with netwo...

11 Jun 2026
Coupang hit by massive $456 million fine for 2025 data breach incident
TI
Cyber Insider

Coupang hit by massive $456 million fine for 2025 data breach incident

South Korea's Personal Information Protection Commission (PIPC) has fined e-commerce giant Coupang 624.68 billion won ($456 million) after concluding that poor ...

11 Jun 2026
← PreviousNext →