Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 10

Search by keyword →
Microsoft Exchange SSRF Vulnerability Details Released Along With Public PoC Exploit
TI
Cyber Security News

Microsoft Exchange SSRF Vulnerability Details Released Along With Public PoC Exploit

Security researchers from HawkTrace have disclosed technical details of a high-severity server-side request forgery (SSRF) vulnerability in Microsoft Exchange, ...

3 Jul 2026
PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords
TI
The Hacker News

PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords

Cybersecurity researchers have flagged a new macOS information stealer called PamStealer that employs a series of clever tricks to infect systems and siphon sen...

3 Jul 2026
Critical Cursor AI IDE Flaws Could Lead to OS-Level Remote Code Execution
TI
Security Week

Critical Cursor AI IDE Flaws Could Lead to OS-Level Remote Code Execution

The DuneSlide vulnerabilities enable zero-click prompt injection attacks that escape Cursor's sandbox and execute arbitrary code on the underlying operating sys...

3 Jul 2026
Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution
TI
Security Week

Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution

The DuneSlide vulnerabilities enable zero-click prompt injection attacks that escape Cursor's sandbox and execute arbitrary code on the underlying operating sys...

3 Jul 2026
TI
Cyber Security News

Hacker Used Claude AI to Score Free Tickets to Nearly Every US Music Show

A critical unauthenticated SQL injection vulnerability in Front Gate Tickets (FGT), a Live Nation/Ticketmaster subsidiary that powers ticketing for major US fes...

3 Jul 2026
Anthropic Details Claude Fable 5 Cybersecurity Safeguards and Jailbreak Framework
TI
Cyber Security News

Anthropic Details Claude Fable 5 Cybersecurity Safeguards and Jailbreak Framework

Anthropic has published detailed technical documentation on the cybersecurity safeguards protecting Claude Fable 5, following the model’s global redeploym...

3 Jul 2026
Google Dismantles NetNut Residential Proxy That Hacked 2 Million Home Devices
TI
Cyber Security News

Google Dismantles NetNut Residential Proxy That Hacked 2 Million Home Devices

Google, working alongside the FBI, Lumen Technologies, and other industry partners, has taken action to dismantle the NetNut residential proxy network, also tra...

3 Jul 2026
Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic says
TI
Bleeping Computer

Claude Fable 5 isn’t permanently leaving subscriptions, Anthropic says

Anthropic says Claude Fable 5 won't be accessible via Claude subscriptions after July 7, but it's not a permanent change, and the company expects the model to r...

3 Jul 2026
Claude Fable relaunch disappoints users with nerfed performance
TI
Bleeping Computer

Claude Fable relaunch disappoints users with nerfed performance

Claude Fable, the company's most powerful model, is now available to all users, but early impressions are disappointing, as it appears to be nowhere near the or...

3 Jul 2026
TI
Dark Reading

Aussies Face Reduced Cybercrime Risk, as Pressure Shifts to SMBs

Improved institutional safeguards and stricter regulations have pushed the burdens of protection and risk reduction on to Australian businesses....

2 Jul 2026
Brave browser introduces Containers for secure account isolation
TI
Cyber Insider

Brave browser introduces Containers for secure account isolation

Brave has released version 1.92 of its privacy-focused browser, introducing built-in Containers that let users isolate browser tabs into separate identities for...

2 Jul 2026
TI
Dark Reading

Apple Reverses Age-Old Patch Policy to Keep Up With AI

Expect more compressed patching cycles from Apple going forward, as attackers leverage artificial intelligence to reduce time to exploit....

2 Jul 2026
TI
Dark Reading

FortiBleed Actors Collaborating With Inc, Lynx Ransomware Gangs

After gaining a foothold in thousands of Fortinet firewalls, the attackers are starting to monetize that access, and are also piling on a Nextcloud zero-day bug...

2 Jul 2026
Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices
TI
The Hacker News

Google Disrupts NetNut Residential Proxy Network Spanning 2 Million Home Devices

Google has significantly degraded NetNut, one of the biggest networks that turns home devices into rented relays for other people's traffic. Working with the F...

2 Jul 2026
Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials
TI
The Hacker News

Ransomware Groups Turn to Citrix Bleed 2, BYOVD, and Supply Chain Credentials

Threat actors associated with the Anubis ransomware operation have been observed exploiting the Citrix Bleed 2 (CVE-2025-5777) vulnerability to obtain initial a...

2 Jul 2026
AsyncRAT Campaign Uses DLL Sideloading and ScreenConnect for Stealthy Remote Access
TI
Cyber Security News

AsyncRAT Campaign Uses DLL Sideloading and ScreenConnect for Stealthy Remote Access

A stealthy campaign is turning trusted remote access software into a weapon against everyday users and businesses. Attackers have hidden the AsyncRAT trojan ins...

2 Jul 2026
TI
Dark Reading

Ransomware Thugs Masquerade as Interpol to Entice Small Biz

The ransomware campaign relies on basic social engineering and stretches across multiple regions, including the US, Europe, Middle East, and elsewhere....

2 Jul 2026
Microsoft 365 Phishing Panel Uses OAuth Device Code Flow to Capture Tokens and Persist Access
TI
Cyber Security News

Microsoft 365 Phishing Panel Uses OAuth Device Code Flow to Capture Tokens and Persist Access

A newly uncovered phishing panel called ARToken is giving cybercriminals an easy way to steal Microsoft 365 login sessions without ever touching a password. The...

2 Jul 2026
AsyncRAT Campaign Abuses TryCloudflare Tunnels and Python Scripts for Malware Delivery
TI
Cyber Security News

AsyncRAT Campaign Abuses TryCloudflare Tunnels and Python Scripts for Malware Delivery

AsyncRAT is back in the headlines, and the attackers behind it have found a clever way to hide in plain sight. Instead of relying on suspicious servers, they us...

2 Jul 2026
Ousaban Malware Uses Phishing PDFs and VBS Downloader to Target Iberian Banking Users
TI
Cyber Security News

Ousaban Malware Uses Phishing PDFs and VBS Downloader to Target Iberian Banking Users

A newly documented campaign is quietly hijacking online banking sessions across Spain and Portugal, and it starts with something as ordinary as a broken PDF fil...

2 Jul 2026
← PreviousNext →