Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligenceVulnerabilitiesPage 6

Search by keyword →
Dashlane password manager users locked out by brute force attacks
TI
Bleeping Computer

Dashlane password manager users locked out by brute force attacks

Multiple Dashlane users have been locked out of their accounts following brute-force attacks that attempted logins from distant locations and unknown devices. [...

1 Jun 2026
Brave’s new AgentStop system reduces wasted AI battery drain by 23%
TI
Cyber Insider

Brave’s new AgentStop system reduces wasted AI battery drain by 23%

Brave has introduced AgentStop, a new open-source system designed to reduce the energy consumed by local AI agents running on consumer hardware. The technology ...

1 Jun 2026
Race Against Time: Why Faster Vulnerability Alerts Matter
TI
Bleeping Computer

Race Against Time: Why Faster Vulnerability Alerts Matter

Attackers are exploiting vulnerabilities faster than many organizations can identify and patch them. SecAlerts explains why faster vulnerability alerts can help...

1 Jun 2026
Critical Windows Netlogon RCE flaw now exploited in attacks
TI
Bleeping Computer

Critical Windows Netlogon RCE flaw now exploited in attacks

The Centre for Cybersecurity Belgium (CCB), the country's national authority for cybersecurity, warned on Friday that threat actors are now exploiting a recentl...

1 Jun 2026
WP Maps Pro bug exploited to create admin accounts on WordPress sites
TI
Bleeping Computer

WP Maps Pro bug exploited to create admin accounts on WordPress sites

Hackers are targeting WordPress websites running a vulnerable version of the WP Maps Pro plugin, which allows creating rogue administrator accounts without auth...

31 May 2026
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
TI
Bleeping Computer

Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks

Palo Alto Networks is warning that hackers are now exploiting a PAN-OS GlobalProtect authentication bypass flaw, tracked as CVE-2026-0257, in attacks attempting...

30 May 2026
Chrome security update addresses 22 critical severity flaws
TI
Cyber Insider

Chrome security update addresses 22 critical severity flaws

Google has released a major Chrome security update that fixes 151 vulnerabilities in the browser, including 22 critical-severity flaws. While no actively exploi...

29 May 2026
Hackers exploit FortiClient EMS flaw to push infostealer malware
TI
Bleeping Computer

Hackers exploit FortiClient EMS flaw to push infostealer malware

Hackers are exploiting an authentication bypass vulnerability (CVE-2026-35616) in FortiClient Enterprise Management Server (EMS) to deliver an undocumented cred...

28 May 2026
New Gogs zero-day flaw lets hackers get remote code execution
TI
Bleeping Computer

New Gogs zero-day flaw lets hackers get remote code execution

An unpatched zero-day vulnerability in the Gogs self-hosted Git service can allow attackers to gain remote code execution (RCE) on Internet-facing instances. [....

28 May 2026
DuckDuckGo sees 30% growth spike as Google forces AI on Search
TI
Cyber Insider

DuckDuckGo sees 30% growth spike as Google forces AI on Search

DuckDuckGo says it experienced a significant spike in users following Google’s announcement of a sweeping AI-powered overhaul of Search at Google I/O 2026. Acco...

28 May 2026
CISA orders federal agencies to patch actively exploited cPanel plugin flaw within 4 days
TI
Cyber Insider

CISA orders federal agencies to patch actively exploited cPanel plugin flaw within 4 days

The US Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a critical vulnerability in the LiteSpeed cPanel plugin tha...

27 May 2026
CISA orders federal agencies to patch actively exploited cPanel plugin flaw within 4 days
TI
Cyber Insider

CISA orders federal agencies to patch actively exploited cPanel plugin flaw within 4 days

The US Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a critical vulnerability in the LiteSpeed cPanel plugin tha...

27 May 2026
Can you enforce strong Active Directory password rules without frustrating users?
TI
Bleeping Computer

Can you enforce strong Active Directory password rules without frustrating users?

Strong Active Directory passwords don't have to come at the expense of usability. Specops Software explains how passphrases, breached password protection, and s...

27 May 2026
CISA gives feds 4 days to patch actively exploited cPanel plugin flaw
TI
Bleeping Computer

CISA gives feds 4 days to patch actively exploited cPanel plugin flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. federal agencies four days to secure their servers against a critical vulnerabil...

27 May 2026
Fake GTA 6 pre-orders and beta scams spread malware ahead of game launch
TI
Cyber Insider

Fake GTA 6 pre-orders and beta scams spread malware ahead of game launch

Cybercriminals are exploiting excitement around Grand Theft Auto 6 to spread malware, phishing pages, and fake pre-order scams ahead of the game’s official rele...

26 May 2026
KnowledgeDeliver flaw exploited as a zero-day to install web shells
TI
Bleeping Computer

KnowledgeDeliver flaw exploited as a zero-day to install web shells

Hackers exploited a critical zero-day vulnerability in a server running the KnowledgeDeliver learning management system (LMS) to deploy the Godzilla web shell. ...

26 May 2026
CISA orders feds to patch actively exploited Drupal vulnerability
TI
Bleeping Computer

CISA orders feds to patch actively exploited Drupal vulnerability

CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management ...

26 May 2026
Drupal warns of active exploitation attempts targeting critical SQL injection flaw
TI
Cyber Insider

Drupal warns of active exploitation attempts targeting critical SQL injection flaw

Drupal is warning administrators that attackers are already attempting to exploit a newly disclosed SQL injection vulnerability affecting the open-source conten...

25 May 2026
Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign
TI
Bleeping Computer

Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign

A large-scale campaign is exploiting a critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript code that triggers Clic...

24 May 2026
Trend Micro warns of Apex One zero-day exploited in the wild
TI
Bleeping Computer

Trend Micro warns of Apex One zero-day exploited in the wild

Japanese cybersecurity software company Trend Micro has addressed an Apex One zero-day vulnerability exploited in attacks targeting Windows systems. [...]...

22 May 2026
← PreviousNext →