Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 131

Search by keyword →
Apple and Meta warn Canada’s Bill C-22 forces encryption backdoors
TI
Cyber Insider

Apple and Meta warn Canada’s Bill C-22 forces encryption backdoors

Apple and Meta are publicly opposing portions of Canada’s proposed lawful access legislation, warning that Bill C-22 could weaken encryption protections, introd...

8 May 2026
NVIDIA confirms GeForce NOW data breach affecting Armenian users
TI
Bleeping Computer

NVIDIA confirms GeForce NOW data breach affecting Armenian users

NVIDIA has confirmed in a statement for BleepingComputer that GeForce NOW user information has been exposed in a data breach. [...]...

8 May 2026
In Other News: Train Hacker Arrested, PamDOORa Linux Backdoor, New CISA Director Frontrunner
TI
Security Week

In Other News: Train Hacker Arrested, PamDOORa Linux Backdoor, New CISA Director Frontrunner

Other noteworthy stories that might have slipped under the radar: US gov targets 72-hour patch cycles, malware uses Windows Phone Link to steal OTPs, spy operat...

8 May 2026
New ZiChatBot Malware Uses Zulip REST APIs as Command and Control Server
TI
Cyber Security News

New ZiChatBot Malware Uses Zulip REST APIs as Command and Control Server

A newly discovered malware called ZiChatBot has been found quietly using the REST APIs of a legitimate team chat application called Zulip to receive and carry o...

8 May 2026
Why More Analysts Won’t Solve Your SOC’s Alert Problem
TI
Bleeping Computer

Why More Analysts Won’t Solve Your SOC’s Alert Problem

Attackers move faster than overwhelmed SOC teams can realistically investigate alerts. Prophet Security breaks down how AI can help analysts investigate alerts ...

8 May 2026
Hackers Leveraged Hugging Face and ClawHub With 575+ Malicious Skills to Deploy Malware
TI
Cyber Security News

Hackers Leveraged Hugging Face and ClawHub With 575+ Malicious Skills to Deploy Malware

An active malware distribution campaign abusing two prominent AI platforms Hugging Face and ClawHub to deliver trojans, cryptominers, and infostealers disguised...

8 May 2026
Fake Moustache Bypasses Age Verification System Raising Online Safety Act Concerns
TI
Cyber Security News

Fake Moustache Bypasses Age Verification System Raising Online Safety Act Concerns

A 12-year-old boy grabbed an eyebrow pencil, drew a moustache on his face, held it up to his screen, and was verified as 15 years old. That single moment, share...

8 May 2026
Trellix source code breach claimed by RansomHouse hackers
TI
Bleeping Computer

Trellix source code breach claimed by RansomHouse hackers

The attack on the Trellix source code repository disclosed last week has been claimed by the RansomHouse threat group, which leaked a small set of images as pro...

8 May 2026
New Infostealer Campaign Uses GitHub Releases for Payload Hosting and Evasion
TI
Cyber Security News

New Infostealer Campaign Uses GitHub Releases for Payload Hosting and Evasion

A newly discovered cyberespionage campaign is using a deceptively simple tactic to slip past security defenses: disguising malware as a humanitarian aid request...

8 May 2026
Hackers Abuse Signed Logitech Installer to Deploy TCLBANKER Banking Trojan
TI
Cyber Security News

Hackers Abuse Signed Logitech Installer to Deploy TCLBANKER Banking Trojan

A new banking trojan known as TCLBANKER has been quietly making rounds, and its delivery method is as clever as it is concerning. Attackers are using a trojaniz...

8 May 2026
EU calls VPNs “a loophole that needs closing” in age verification push
TI
Cyber Insider

EU calls VPNs “a loophole that needs closing” in age verification push

The European Parliamentary Research Service (EPRS) has warned that virtual private networks (VPNs) are increasingly being used to bypass online age-verification...

8 May 2026
CISA gives feds four days to patch Ivanti flaw exploited as zero-day
TI
Bleeping Computer

CISA gives feds four days to patch Ivanti flaw exploited as zero-day

CISA has given U.S. federal agencies four days to secure their networks against a high-severity vulnerability in Ivanti Endpoint Manager Mobile (EPMM) exploited...

8 May 2026
DarkMoon AI-Powered Autonomous Penetration Testing Platform With 50+ Tools
TI
Cyber Security News

DarkMoon AI-Powered Autonomous Penetration Testing Platform With 50+ Tools

A new open-source cybersecurity platform called DarkMoon has emerged as a significant advancement in autonomous penetration testing. It provides security teams ...

8 May 2026
Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants
TI
Security Week

Polish Security Agency Reports ICS Breaches at Five Water Treatment Plants

The hackers gained the ability to modify equipment operational parameters, creating a direct risk to the public water supply. The post Polish Security Agency Re...

8 May 2026
Trellix Breach – RansomHouse Claims Access to Parts of Source Code
TI
Cyber Security News

Trellix Breach – RansomHouse Claims Access to Parts of Source Code

Trellix, the global cybersecurity firm formed from the merger of McAfee Enterprise and FireEye, has confirmed unauthorized access to a portion of its source cod...

8 May 2026
AI Firm Braintrust Prompts API Key Rotation After Data Breach
TI
Security Week

AI Firm Braintrust Prompts API Key Rotation After Data Breach

Hackers accessed one of the company’s AWS accounts and compromised AI provider secrets stored in Braintrust. The post AI Firm Braintrust Prompts API Key Rotatio...

8 May 2026
Former IT contractor convicted for wiping 96 US government databases
TI
Cyber Insider

Former IT contractor convicted for wiping 96 US government databases

A federal jury has convicted a Virginia man for his role in a retaliatory cyberattack that wiped dozens of US government databases after he and his twin brother...

8 May 2026
Cyberattack Hits Canvas System Used by Thousands of Schools as Finals Loom
TI
Security Week

Cyberattack Hits Canvas System Used by Thousands of Schools as Finals Loom

A system that thousands of schools and universities use went offline due to a cyberattack, creating chaos as students tried to study for finals. The post Cybera...

8 May 2026
Zara data breach exposed personal information of 197,000 people
TI
Bleeping Computer

Zara data breach exposed personal information of 197,000 people

Hackers who gained access to the databases of Spanish fast-fashion retailer Zara stole data belonging to more than 197,000 customers, according to data breach n...

8 May 2026
New PCPJack Worm Targets Docker, Kubernetes, Redis, and MongoDB for Credential Theft
TI
Cyber Security News

New PCPJack Worm Targets Docker, Kubernetes, Redis, and MongoDB for Credential Theft

A sophisticated new malware framework called PCPJack has been found actively targeting cloud environments across the internet, hunting for exposed services and ...

8 May 2026
← PreviousNext →