Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligencePage 37

Search by keyword →
MiniUpdate RAT Uses Azure-Hosted C2 Domains for Targeted Espionage Campaigns
TI
Cyber Security News

MiniUpdate RAT Uses Azure-Hosted C2 Domains for Targeted Espionage Campaigns

A new wave of targeted espionage attacks has put technology professionals across the United States, Israel, and the United Arab Emirates on high alert. The thre...

25 May 2026
DocketWise Data Breach Impacts 143,000
TI
Security Week

DocketWise Data Breach Impacts 143,000

Hackers accessed names, addresses, Social Security numbers, financial information, and medical data from third-party partner repositories. The post DocketWise D...

25 May 2026
Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms
TI
The Hacker News

Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms

Cybersecurity researchers have shed light on a cross-platform malware called RemotePE that has been put to use by the North Korea-linked Lazarus Group in attack...

25 May 2026
WhatsApp Chat Histories Stored Unencrypted on macOS and iOS
TI
Cyber Security News

WhatsApp Chat Histories Stored Unencrypted on macOS and iOS

Security researchers have revealed that WhatsApp chat histories may be stored unencrypted on both macOS and iOS devices, raising fresh concerns about local data...

25 May 2026
Authorities Seized 800 Servers of Hosting Company Used to Launch Cyberattacks
TI
Cyber Security News

Authorities Seized 800 Servers of Hosting Company Used to Launch Cyberattacks

Dutch authorities have seized more than 800 servers and arrested two individuals as part of a major investigation into a hosting infrastructure allegedly used t...

25 May 2026
Over 5,500 GitHub Repositories Infected in ‘Megalodon’ Supply Chain Attack
TI
Security Week

Over 5,500 GitHub Repositories Infected in ‘Megalodon’ Supply Chain Attack

Fake automated commits injected GitHub Actions workflows containing payloads to steal credentials, CI secrets, keys, and tokens. The post Over 5,500 GitHub Repo...

25 May 2026
CISA Warns of Drupal Core SQL Injection Vulnerability Exploited in Attacks
TI
Cyber Security News

CISA Warns of Drupal Core SQL Injection Vulnerability Exploited in Attacks

CISA has issued an urgent alert regarding a critical SQL injection vulnerability in Drupal Core, tracked as CVE-2026-9082, which is now being actively exploited...

25 May 2026
GitHub Adds Staged Publishing to npm to Block Automated Supply Chain Attacks
TI
Cyber Security News

GitHub Adds Staged Publishing to npm to Block Automated Supply Chain Attacks

GitHub has introduced a major security upgrade to the npm ecosystem with the general availability of staged publishing and new install-time controls, aimed at r...

25 May 2026
Hackers Use Browser-Locking CypherLoc Kit to Push Fake Microsoft Support Calls
TI
Cyber Security News

Hackers Use Browser-Locking CypherLoc Kit to Push Fake Microsoft Support Calls

A newly identified scareware kit called CypherLoc is locking victims’ browsers and tricking them into calling fake Microsoft support lines. The kit has be...

25 May 2026
TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO
TI
The Hacker News

TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO

A new coordinated cross-ecosystem software supply chain attack campaign has targeted npm, PyPI, and Crates.io to distribute credential-stealing malware. The ca...

25 May 2026
Pentest Agent Suite – Bug Bounty Framework for Claude Code and 6 AI Coding Tools
TI
Cyber Security News

Pentest Agent Suite – Bug Bounty Framework for Claude Code and 6 AI Coding Tools

A fully autonomous bug-bounty framework called Pentest Agent Suite has been open-sourced, delivering 50 specialized security agents, 26 slash commands, 19 CLI t...

25 May 2026
Wireshark 4.6.6 Released With Fix for Dissector Crash via Malformed Packet Injection
TI
Cyber Security News

Wireshark 4.6.6 Released With Fix for Dissector Crash via Malformed Packet Injection

The Wireshark Foundation has released Wireshark 4.6.6, addressing a critical security vulnerability in the ROHC (Robust Header Compression) protocol dissector t...

25 May 2026
Hackers Compromised 34 Packages in npm, PyPI, and Crates in New Supply Chain Attack
TI
Cyber Security News

Hackers Compromised 34 Packages in npm, PyPI, and Crates in New Supply Chain Attack

New TrapDoor supply chain campaign, an active attack deploying 34 malicious packages and over 384 related versions across npm, PyPI, and Crates.io to steal deve...

25 May 2026
Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign
TI
Bleeping Computer

Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign

A large-scale campaign is exploiting a critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript code that triggers Clic...

24 May 2026
Top 10 Best Malware Sandbox Tools for Security Teams in 2026
TI
Cyber Security News

Top 10 Best Malware Sandbox Tools for Security Teams in 2026

The cybersecurity landscape in 2026 is defined by unprecedented sophistication. Threat actors are leveraging generative AI, highly evasive polymorphic code, and...

24 May 2026
PyrsistenceSniper – Tool that Detects 117 Persistence Malware Techniques on Windows, Linux, and macOS
TI
Cyber Security News

PyrsistenceSniper – Tool that Detects 117 Persistence Malware Techniques on Windows, Linux, and macOS

PyrsistenceSniper is an advanced tool for detecting offline persistence, enabling cybersecurity analysts to identify 117 separate persistence mechanisms across ...

24 May 2026
Charter Communications confirms data breach as hackers threaten leak of 42 million records
TI
Cyber Insider

Charter Communications confirms data breach as hackers threaten leak of 42 million records

Charter Communications has confirmed a cybersecurity incident after the ShinyHunters extortion group claimed it breached the telecommunications giant and stole ...

23 May 2026
Laravel Lang packages hijacked to deploy credential-stealing malware
TI
Bleeping Computer

Laravel Lang packages hijacked to deploy credential-stealing malware

A supply chain attack targeting the Laravel Lang localization packages has exposed developers to a sophisticated credential-stealing malware campaign after atta...

23 May 2026
npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain Attacks
TI
The Hacker News

npm Adds 2FA-Gated Publishing and Package Install Controls Against Supply Chain Attacks

GitHub has rolled out new controls for npm to improve the security of the software supply chain, giving maintainers the ability to explicitly approve a release ...

23 May 2026
Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux Malware
TI
The Hacker News

Packagist Supply Chain Attack Infects 8 Packages Using GitHub-Hosted Linux Malware

A new "coordinated" supply chain attack campaign has impacted eight packages on Packagist including malicious code designed to run a Linux binary retrieved from...

23 May 2026
← PreviousNext →