Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligencePage 23

Search by keyword →
OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
TI
The Hacker News

OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack

Cybersecurity researchers have disclosed details of a new malicious supply chain campaign that's targeting developers using OpenAI Codex through a legitimate-lo...

1 Jun 2026
Dashlane hit by brute-force campaign triggering account suspensions
TI
Cyber Insider

Dashlane hit by brute-force campaign triggering account suspensions

Dashlane has confirmed that a brute-force attack over the weekend triggered a wave of account suspension emails, unusual login notifications, and authentication...

1 Jun 2026
Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts
TI
The Hacker News

Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts

Threat actors are attempting to actively exploit a critical security flaw impacting WP Maps Pro, a WordPress plugin that has had over 15,000 sales on the Envato...

1 Jun 2026
Microsoft Tightens Entra ID Password Resets With New Authentication Change
TI
Cyber Security News

Microsoft Tightens Entra ID Password Resets With New Authentication Change

Microsoft has announced a significant security update to its Entra ID Self-Service Password Reset (SSPR) feature, introducing stricter authentication requiremen...

1 Jun 2026
Famous Chollima Hackers Target PHP Developers Using Compromised Packagist Package
TI
Cyber Security News

Famous Chollima Hackers Target PHP Developers Using Compromised Packagist Package

A well-known North Korean threat actor has been caught hiding malware inside a legitimate PHP package available through Packagist, the main package repository f...

1 Jun 2026
Hackers Attacking Signal Users to Steal Backups in New Wave of Attacks
TI
Cyber Security News

Hackers Attacking Signal Users to Steal Backups in New Wave of Attacks

A new wave of phishing attacks is targeting users of Signal, the encrypted messaging app trusted by journalists, activists, and privacy-conscious individuals wo...

1 Jun 2026
Microsoft Clarifies It Won’t Sue Security Researchers Amid  Nightmare-Eclipse Controversy
TI
Cyber Security News

Microsoft Clarifies It Won’t Sue Security Researchers Amid Nightmare-Eclipse Controversy

Microsoft has clarified its stance, reducing perceived legal threats and reaffirming its commitment to coordinated vulnerability disclosure, following significa...

1 Jun 2026
Instagram Meta AI Vulnerability Allegedly Enables Password Reset for Accounts
TI
Cyber Security News

Instagram Meta AI Vulnerability Allegedly Enables Password Reset for Accounts

A critical flaw in Meta’s AI-powered account recovery tool on Instagram allowed attackers to hijack high-value accounts by tricking the chatbot into forwa...

1 Jun 2026
Windows Netlogon 0-Click RCE Vulnerability Now Actively Exploited In The Wild
TI
Cyber Security News

Windows Netlogon 0-Click RCE Vulnerability Now Actively Exploited In The Wild

The critical Windows Netlogon remote code execution (RCE) vulnerability tracked as CVE-2026-41089 is now under active exploitation in the wild, significantly ra...

1 Jun 2026
WP Maps Pro bug exploited to create admin accounts on WordPress sites
TI
Bleeping Computer

WP Maps Pro bug exploited to create admin accounts on WordPress sites

Hackers are targeting WordPress websites running a vulnerable version of the WP Maps Pro plugin, which allows creating rogue administrator accounts without auth...

31 May 2026
Dutch Authorities Dismantle Botnet Linked to 17 Million Infected Devices
TI
The Hacker News

Dutch Authorities Dismantle Botnet Linked to 17 Million Infected Devices

Dutch authorities have announced the takedown of a botnet that enslaved millions of infected devices, including computers, tablets, smartphones, and IoT devices...

31 May 2026
Microsoft Releases KB5089573 for Windows 11 to Fix Patch Tuesday Install Issues
TI
Cyber Security News

Microsoft Releases KB5089573 for Windows 11 to Fix Patch Tuesday Install Issues

Microsoft has rolled out a new cumulative update, KB5089573, for Windows 11 versions 25H2 and 24H2, targeting a critical installation failure that affected user...

31 May 2026
Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks
TI
Bleeping Computer

Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks

Palo Alto Networks is warning that hackers are now exploiting a PAN-OS GlobalProtect authentication bypass flaw, tracked as CVE-2026-0257, in attacks attempting...

30 May 2026
GitLab Patches Multiple Duo AI, DoS, and Authorization Flaws in Community and Enterprise Edition
TI
Cyber Security News

GitLab Patches Multiple Duo AI, DoS, and Authorization Flaws in Community and Enterprise Edition

GitLab has released emergency security updates for both Community Edition (CE) and Enterprise Edition (EE), addressing multiple Duo AI, denial‑of‑service, and a...

30 May 2026
Russian Spies Are Aggressively Seeking Western Technology as Sanctions Bite, Officials Say
TI
Security Week

Russian Spies Are Aggressively Seeking Western Technology as Sanctions Bite, Officials Say

Moscow’s agents are building fake companies, recruiting middlemen and deploying cyber spies and hackers who gather information that could be used to attack key ...

30 May 2026
Exploit Code Published for Critical Flowise RCE Vulnerability
TI
Security Week

Exploit Code Published for Critical Flowise RCE Vulnerability

The one-click vulnerability allows attackers to execute arbitrary code on self-hosted Flowise servers by tricking users into importing a malicious chatflow. The...

30 May 2026
New CIFSwitch Linux flaw gives root on multiple distributions
TI
Bleeping Computer

New CIFSwitch Linux flaw gives root on multiple distributions

A newly discovered local privilege escalation vulnerability dubbed 'CIFSwitch' in the Linux kernel could allow attackers to forge CIFS authentication key descri...

30 May 2026
Pentest Swarm AI Tool With Live Access to nmap, sqlmap, Burp, Metasploit, and Others
TI
Cyber Security News

Pentest Swarm AI Tool With Live Access to nmap, sqlmap, Burp, Metasploit, and Others

Pentest Swarm AI is the first open-source autonomous penetration testing platform built on a swarm intelligence architecture, not just multiple agents firing in...

30 May 2026
PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
TI
The Hacker News

PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation

Palo Alto Networks has warned that a recently disclosed medium-severity security flaw impacting PAN-OS and Prisma Access has come under active exploitation in t...

30 May 2026
Google Chrome’s Device-Bound Session Credentials Now GA to Block Account Takeovers
TI
Cyber Security News

Google Chrome’s Device-Bound Session Credentials Now GA to Block Account Takeovers

Google has officially moved Device Bound Session Credentials (DBSC) to general availability in the Chrome browser on Windows, delivering a powerful defense agai...

30 May 2026
← PreviousNext →