Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 105

Search by keyword →
Google’s Surge in Chrome Vulnerability Discoveries Likely Driven by AI
TI
Security Week

Google’s Surge in Chrome Vulnerability Discoveries Likely Driven by AI

More than 200 vulnerabilities patched in recent Chrome releases are marked as ‘reported by Google’. The post Google’s Surge in Chrome Vulnerability Discov...

21 May 2026
Critical Cisco Secure Workload Vulnerability Enables Unauthorized API Access
TI
Cyber Security News

Critical Cisco Secure Workload Vulnerability Enables Unauthorized API Access

Cisco has disclosed a critical security vulnerability in its Secure Workload platform that could allow unauthenticated attackers to gain unauthorized access to ...

21 May 2026
Critical Drupal Core Security Vulnerability Exposes Websites to Cyberattack
TI
Cyber Security News

Critical Drupal Core Security Vulnerability Exposes Websites to Cyberattack

A highly critical security vulnerability in Drupal core is set to impact websites worldwide, with the official security release scheduled for May 20, 2026. The ...

21 May 2026
Supply Chain Security Crisis: Too Many Vulnerabilities, Too Little Visibility
TI
Security Week

Supply Chain Security Crisis: Too Many Vulnerabilities, Too Little Visibility

New vulnerabilities are being discovered too fast, the time-to-exploitation is too short, and our visibility into them is largely lacking. The post Supply Chain...

21 May 2026
TI
Cyber Security News

New NGINX 0-Day RCE “nginx-poolslip” Affects Millions of NGINX Servers

A newly disclosed zero-day remote code execution (RCE) vulnerability, dubbed nginx-poolslip, has been identified in NGINX version 1.31.0, the latest stable rele...

21 May 2026
Microsoft warns of new Defender zero-days exploited in attacks
TI
Bleeping Computer

Microsoft warns of new Defender zero-days exploited in attacks

On Wednesday, Microsoft started rolling out security patches for two Defender vulnerabilities that have been exploited in zero-day attacks. [...]...

21 May 2026
9-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major Distros
TI
The Hacker News

9-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major Distros

Cybersecurity researchers have disclosed details of a vulnerability in the Linux kernel that remained undetected for nine years. The vulnerability, tracked as ...

21 May 2026
WantToCry Ransomware Abuses SMB Services to Remotely Encrypt Files
TI
Cyber Security News

WantToCry Ransomware Abuses SMB Services to Remotely Encrypt Files

A ransomware strain called WantToCry has been targeting businesses by abusing a widely used file-sharing protocol to encrypt files without dropping any malware ...

21 May 2026
GitHub links repo breach to TanStack npm supply-chain attack
TI
Bleeping Computer

GitHub links repo breach to TanStack npm supply-chain attack

GitHub says the hackers who breached 3,800 internal repositories gained access via a malicious version of the Nx Console VS Code extension, compromised in last ...

21 May 2026
TI
Cyber Security News

Two U.S. Executives Plead Guilty in India-Based Tech-Support Fraud Schemes

Two former executives of a U.S.-based call routing and analytics company have pleaded guilty to federal charges for knowingly enabling India-based call centers ...

21 May 2026
GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension
TI
The Hacker News

GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension

GitHub on Wednesday officially confirmed that the breach of its internal repositories was the result of a compromise of an employee device involving a poisoned ...

21 May 2026
New GhostTree Attack Causing EDR Products to Hang and Leave Files Unscanned
TI
Cyber Security News

New GhostTree Attack Causing EDR Products to Hang and Leave Files Unscanned

A novel evasion technique called GhostTree, which exploits NTFS junctions to create recursive directory loops. Uncovered by Varonis Threat Labs, this method tra...

21 May 2026
Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks
TI
The Hacker News

Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks

Drupal has released security updates for a "highly critical" security vulnerability in Drupal Core that could be exploited by attackers to achieve remote code e...

21 May 2026
Claude Code’s Network Sandbox Vulnerability Exposes User Credentials and Source Code
TI
Cyber Security News

Claude Code’s Network Sandbox Vulnerability Exposes User Credentials and Source Code

Anthropic’s Claude Code AI coding assistant harbored a critical network sandbox bypass for over five months, allowing attackers to exfiltrate credentials,...

21 May 2026
Gremlin Stealer Stores C2 URLs and Exfiltration Paths in Encrypted Resource Sections
TI
Cyber Security News

Gremlin Stealer Stores C2 URLs and Exfiltration Paths in Encrypted Resource Sections

A newly analyzed variant of the Gremlin stealer malware has raised alarms by hiding its command-and-control (C2) addresses and data exfiltration paths inside en...

21 May 2026
Dark Web Brokers Repackage Old Breaches as Fresh Corporate Data Leaks
TI
Cyber Security News

Dark Web Brokers Repackage Old Breaches as Fresh Corporate Data Leaks

A wave of fake data leak claims is flooding dark web forums, and most of what is being sold turns out to be recycled material from old breaches. Threat actors o...

21 May 2026
Hackers Use Fake Income Tax Assessment Pages to Infect Windows Systems
TI
Cyber Security News

Hackers Use Fake Income Tax Assessment Pages to Infect Windows Systems

A new threat campaign is targeting Windows users in India by disguising malicious files as official income tax documents. Researchers have tracked the operation...

20 May 2026
Void Botnet Uses Ethereum Smart Contracts for Seizure-Resistant C2 Infrastructure
TI
Cyber Security News

Void Botnet Uses Ethereum Smart Contracts for Seizure-Resistant C2 Infrastructure

A new botnet called Void has emerged on the cybercrime underground, bringing a troubling twist to how attackers manage their operations remotely. Instead of rel...

20 May 2026
Ukraine identifies infostealer operator tied to 28,000 stolen accounts
TI
Bleeping Computer

Ukraine identifies infostealer operator tied to 28,000 stolen accounts

The Ukrainian cyberpolice, working in conjunction with U.S. law enforcement, has identified an 18-year-old man from Odesa suspected of running an infostealer ma...

20 May 2026
Hackers bypass SonicWall VPN MFA due to incomplete patching
TI
Bleeping Computer

Hackers bypass SonicWall VPN MFA due to incomplete patching

Threat actors brute-forced VPN credentials and bypassed multi-factor authentication (MFA) on SonicWall Gen6 SSL-VPN appliances to deploy tools used in ransomwar...

20 May 2026
← PreviousNext →