Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 11

Search by keyword →
Claude Cowork’s Sandbox Vulnerability Allows Attackers to Run Arbitrary Commands as Root
TI
Cyber Security News

Claude Cowork’s Sandbox Vulnerability Allows Attackers to Run Arbitrary Commands as Root

A vulnerability chain in Anthropic’s Claude Cowork allows an attacker with local code execution to escalate privileges and run arbitrary commands as root ...

2 Jul 2026
Google loses final appeal against €4.1 billion Android antitrust fine
TI
Cyber Insider

Google loses final appeal against €4.1 billion Android antitrust fine

The European Union's highest court has upheld a €4.125 billion ($4.8 billion) antitrust fine against Google, bringing to an end the company's appeal over allega...

2 Jul 2026
Scattered Spider member extradited to the U.S. facing cybercrime charges
TI
Cyber Insider

Scattered Spider member extradited to the U.S. facing cybercrime charges

The U.S. Department of Justice has announced the arrest and extradition of an alleged member of the notorious cybercrime group Scattered Spider. According to th...

2 Jul 2026
CitrixBleed Vulnerability Exploited by Hackers Within 24 Hours of Public Disclosure
TI
Cyber Security News

CitrixBleed Vulnerability Exploited by Hackers Within 24 Hours of Public Disclosure

A newly disclosed CitrixBleed-class vulnerability in Citrix NetScaler appliances came under active exploitation less than a day after public disclosure, with de...

2 Jul 2026
DHS Confirms Breach of Information-Sharing Network Platform HSIN
TI
Cyber Security News

DHS Confirms Breach of Information-Sharing Network Platform HSIN

The Department of Homeland Security has confirmed that hackers breached the Homeland Security Information Network (HSIN), a sensitive but unclassified platform ...

2 Jul 2026
ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories
TI
The Hacker News

ThreatsDay: AI Compute Hijacking, Apple Email Flaw, BlueHammer Ransomware + 14 Stories

This week’s security news is mostly about weak spots. Browsers, bots, sandboxes, AI systems, and email flows all show the same problem in different ways. Every...

2 Jul 2026
ChatGPT File Download Flow Vulnerability Could Be Abused to Access System Files
TI
Cyber Security News

ChatGPT File Download Flow Vulnerability Could Be Abused to Access System Files

A proof-of-concept vulnerability chain in ChatGPT that combined a guardrail bypass with a path traversal flaw, potentially allowing attackers to access restrict...

2 Jul 2026
Google loses final appeal to overturn €4.1 billion EU fine
TI
Bleeping Computer

Google loses final appeal to overturn €4.1 billion EU fine

Court of Justice of the European Union (CJEU) has dismissed Google's final appeal against a €4.1 billion ($4.7 billion) antitrust fine over the company's use of...

2 Jul 2026
New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure
TI
Security Week

New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure

Hackers are targeting NetScaler appliances using public PoC code to retrieve arbitrary memory content in the HTTP response. The post New CitrixBleed Vulnerabili...

2 Jul 2026
900+ Oracle E-Business instances Exposed Online Amid Active Vulnerability Exploitation
TI
Cyber Security News

900+ Oracle E-Business instances Exposed Online Amid Active Vulnerability Exploitation

More than 900 Oracle E‑Business Suite instances have been found exposed on the public internet. At the same time, attackers actively exploit a critical vulnerab...

2 Jul 2026
ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds
TI
Bleeping Computer

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

ConsentFix and ClickFix attacks steal Microsoft 365 tokens in seconds using fake prompts and OAuth flows. Learn how these MFA bypass tactics work and how to def...

2 Jul 2026
Hackers Use Legitimate VLC Executable and Malicious libvlc.dll to Deploy ValleyRAT
TI
Cyber Security News

Hackers Use Legitimate VLC Executable and Malicious libvlc.dll to Deploy ValleyRAT

Cybercriminals have found a clever way to slip past security defenses by hiding malware inside a program most people trust without a second thought. Researchers...

2 Jul 2026
Hackers Use Fake VLC Executable and Malicious libvlc.dll to Deploy ValleyRAT
TI
Cyber Security News

Hackers Use Fake VLC Executable and Malicious libvlc.dll to Deploy ValleyRAT

Cybercriminals have found a clever way to slip past security defenses by hiding malware inside a program most people trust without a second thought. Researchers...

2 Jul 2026
Opera Blocks Clipboard Attacks, Including ClickFix, With New Paste Protect Feature
TI
Cyber Security News

Opera Blocks Clipboard Attacks, Including ClickFix, With New Paste Protect Feature

Opera has introduced a new built-in security feature called Paste Protect, designed to defend users against clipboard-based cyberattacks, including the increasi...

2 Jul 2026
Microsoft Outlook Bug Removes Copilot Button For Windows Users
TI
Cyber Security News

Microsoft Outlook Bug Removes Copilot Button For Windows Users

A software defect in classic Outlook for Windows caused Copilot Chat and Copilot entry points to vanish for affected users, with Microsoft confirming the issue ...

2 Jul 2026
Agentic Ransomware JADEPUFFER Uses Base64 Python Payloads to Harvest Cloud and API Keys
TI
Cyber Security News

Agentic Ransomware JADEPUFFER Uses Base64 Python Payloads to Harvest Cloud and API Keys

Ransomware has always needed a human at the keyboard or writing the script behind it. That assumption no longer holds. Researchers have documented what appears ...

2 Jul 2026
Cisco Catalyst Center Vulnerability Allows Remote Attackers to Read Arbitrary Files
TI
Cyber Security News

Cisco Catalyst Center Vulnerability Allows Remote Attackers to Read Arbitrary Files

Cisco has disclosed a high-severity vulnerability in its Catalyst Center platform that could allow unauthenticated remote attackers to read arbitrary files from...

2 Jul 2026
Hackers Use Mapbox Dead-Drop C2 and Python RAT to Target Vulnerability Researchers
TI
Cyber Security News

Hackers Use Mapbox Dead-Drop C2 and Python RAT to Target Vulnerability Researchers

Security researchers have uncovered a long-running campaign that turns trusted proof-of-concept exploits into weapons against the very people who study vulnerab...

2 Jul 2026
How to Conduct a Successful Audit of AI-Driven Software Development
TI
Security Week

How to Conduct a Successful Audit of AI-Driven Software Development

As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks befo...

2 Jul 2026
ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API
TI
The Hacker News

ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API

The threat actor known as ToddyCat has been attributed to a new malware called Umbrij that's designed to gain surreptitious access to a victim's email correspon...

2 Jul 2026
← PreviousNext →