Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 41

Search by keyword →
Node.js Fixes 12 Vulnerabilities, Including 2 High-Severity Authentication Bypasses
TI
Cyber Security News

Node.js Fixes 12 Vulnerabilities, Including 2 High-Severity Authentication Bypasses

Node.js has released a new round of security updates addressing 12 vulnerabilities across its supported release lines, including two high-severity flaws that co...

19 Jun 2026
Hackers Use Weaponized Windows Shortcuts to Spread Crypto Clipper Across USB Drives
TI
Cyber Security News

Hackers Use Weaponized Windows Shortcuts to Spread Crypto Clipper Across USB Drives

A newly discovered cryptocurrency clipper malware has been quietly stealing digital assets from victims since February 2026, spreading through a trick that most...

19 Jun 2026
Cisco to Acquire WideField Security to Boost Splunk’s Agentic SOC
TI
Security Week

Cisco to Acquire WideField Security to Boost Splunk’s Agentic SOC

WideField will accelerate Agentic SOC capabilities by expanding the lens on threat investigation to include identity, credentials, sessions, and blast radius. T...

19 Jun 2026
CISA warns Fortinet users to secure devices after FortiBleed leak
TI
Bleeping Computer

CISA warns Fortinet users to secure devices after FortiBleed leak

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) urged Fortinet customers to secure their devices after nearly 74,000 firewall and VPN credentia...

19 Jun 2026
15,000 WordPress Websites Cleaned Up in SocGholish Botnet Takedown
TI
Security Week

15,000 WordPress Websites Cleaned Up in SocGholish Botnet Takedown

Law enforcement and private partners took down 106 SocGholish C&C servers and domains as part of Operation Endgame. The post 15,000 WordPress Websites Clea...

19 Jun 2026
AI-Powered Public Surveillance and Biometric Data Collection Expand Government Monitoring
TI
Cyber Security News

AI-Powered Public Surveillance and Biometric Data Collection Expand Government Monitoring

Governments are expanding their digital reach in ways unimaginable just a decade ago. A growing wave of AI-powered surveillance, biometric data collection, and ...

19 Jun 2026
Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone
TI
The Hacker News

Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone

Apple has updated its Beats Studio Buds wireless earbuds to patch a high-severity vulnerability that could be exploited by nearby hackers to eavesdrop on users....

19 Jun 2026
Splunk Enterprise Vulnerability Exploited in Attacks Days After Disclosure
TI
Security Week

Splunk Enterprise Vulnerability Exploited in Attacks Days After Disclosure

CISA has given federal agencies only three days to patch CVE-2026-20253, which can be exploited for unauthenticated remote code execution. The post Splunk Enter...

19 Jun 2026
Authorities Dismantle SocGholish Malware Network — 106 Servers and 101 Domains Seized
TI
Cyber Security News

Authorities Dismantle SocGholish Malware Network — 106 Servers and 101 Domains Seized

Authorities have dismantled the criminal infrastructure behind SocGholish, one of the most persistent malware frameworks active since 2017, seizing 106 servers ...

18 Jun 2026
Gentlemen ransomware uses multiple EDR killers to disable defenses
TI
Bleeping Computer

Gentlemen ransomware uses multiple EDR killers to disable defenses

The Gentlemen ransomware-as-a-service (RaaS) is actively developing and maintaining a suite of endpoint detection and response (EDR) killers to help affiliates ...

18 Jun 2026
TI
Dark Reading

Novo Nordisk Breach Highlights Software Development Pipeline Risk

A leaked GitHub token underscores what most organizations get wrong: Treating secrets management as a tooling problem rather than an identity problem....

18 Jun 2026
TI
Dark Reading

Novo Nordisk Breach Exposes Software Development Pipeline Risk

A leaked GitHub token underscores what most organizations get wrong: Treating secrets management as a tooling problem rather than an identity problem....

18 Jun 2026
TI
Dark Reading

Operation Escaneo Signals Shift in LatAm Threat Landscape

The threat group's curious business model may combine opportunistic monetization alongside intel collection, without much coordination between the two....

18 Jun 2026
TI
Bleeping Computer

Nintendo confirms data stolen in WebMD subsidiary cyberattack

Nintendo of America has confirmed to BleepingComputer that threat actors stole survey data from the third-party TinyPulse service used internally, but its syste...

18 Jun 2026
TI
Dark Reading

FIFA Bug Exposes World Cup Streams to Remote Takeover

A hacker could have "Rickrolled" the World Cup — or worse — thanks to FIFA's unenforced Entra access controls....

18 Jun 2026
TI
Dark Reading

FIFA Bug Exposed World Cup Streams to Remote Takeover

A hacker could have "Rickrolled" the World Cup — or worse — thanks to FIFA's unenforced Entra access controls....

18 Jun 2026
F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution
TI
The Hacker News

F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution

F5 has released security updates to address two critical security flaws in NGINX Open Source that could be exploited to achieve code execution on affected syste...

18 Jun 2026
New iPhone BootROM Vulnerability Exposes Apple SoCs to Full Chain-of-Trust Compromise
TI
Cyber Security News

New iPhone BootROM Vulnerability Exposes Apple SoCs to Full Chain-of-Trust Compromise

A novel BootROM vulnerability, dubbed usbliter8, affects Apple devices powered by A12, S4/S5, and A13 SoCs. The exploit chains a hardware-level bug in the Synop...

18 Jun 2026
Majority of Internet-Accessible REDCap Servers Outdated
TI
Security Week

Majority of Internet-Accessible REDCap Servers Outdated

These servers are regularly targeted by China-linked UNC6508 for initial access and backdoor deployment. The post Majority of Internet-Accessible REDCap Servers...

18 Jun 2026
TI
Dark Reading

Salesforce Data Thefts Continue via Klue App Compromise

Klue's Battlecards is now the third integrated application that has been compromised to steal customers' Salesforce data, and victims include Huntress, the cybe...

18 Jun 2026
← PreviousNext →