Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 42

Search by keyword →
USB worm spreads crypto-stealing malware via Windows shortcut files
TI
Bleeping Computer

USB worm spreads crypto-stealing malware via Windows shortcut files

Threat actors targeting cryptocurrency wallets have been distributing clipboard-stealing malware with self-spreading capabilities and using the Tor network to c...

18 Jun 2026
TI
Cyber Security News

Hackers Breached Klue Integration to Steal Salesforce CRM Data via OAuth Tokens

Threat actors exploited a trusted third-party SaaS integration to silently harvest enterprise CRM data, marking the latest chapter in an escalating wave of OAut...

18 Jun 2026
Apple fixes Beats Studio Buds flaw that allowed nearby attackers to eavesdrop
TI
Cyber Insider

Apple fixes Beats Studio Buds flaw that allowed nearby attackers to eavesdrop

Apple has released Beats Firmware Update 1B211 to address a Bluetooth vulnerability affecting Beats Studio Buds that could allow a nearby attacker to listen thr...

18 Jun 2026
ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories
TI
The Hacker News

ThreatsDay Bulletin: Claude Chat Abuse, NastyC2 npm Packages, Device-Code Phishing + 25 More Stories

The internet did not break this week. It got used exactly as designed, which is worse. Searches were siphoned through shady browser add-ons. AI chat links turn...

18 Jun 2026
Multiple Vulnerabilities in Firefox 152 Enables Remote Code Execution Attacks
TI
Cyber Security News

Multiple Vulnerabilities in Firefox 152 Enables Remote Code Execution Attacks

Mozilla has released Firefox 152 to address multiple high-severity vulnerabilities that could allow remote code execution (RCE) and sandbox escape attacks. The ...

18 Jun 2026
Hackers Can Leverage SQL Server 2025 AI Features to Exfiltrate Sensitive Data
TI
Cyber Security News

Hackers Can Leverage SQL Server 2025 AI Features to Exfiltrate Sensitive Data

Hackers are increasingly finding new ways to abuse legitimate enterprise features, and Microsoft SQL Server 2025’s newly introduced AI capabilities are now rais...

18 Jun 2026
Hackers Abuse Microsoft Fondue.exe to Side-Load APPWIZ.cpl and Execute Malware
TI
Cyber Security News

Hackers Abuse Microsoft Fondue.exe to Side-Load APPWIZ.cpl and Execute Malware

A newly uncovered attack campaign has brought a rarely scrutinized Windows executable into the spotlight. Threat actors are actively abusing Fondue.exe, a legit...

18 Jun 2026
Hackers Abuse Legitimate RMM Tools to Maintain Persistent Access and Evade Detection
TI
Cyber Security News

Hackers Abuse Legitimate RMM Tools to Maintain Persistent Access and Evade Detection

Hackers have found a new way to get AI tools to do their dirty work without paying for it. Instead of using their own resources, attackers are hijacking exposed...

18 Jun 2026
Hackers Abuse Claude.ai Shared Chat Feature to Host the ClickFix Social Engineering Instructions
TI
Cyber Security News

Hackers Abuse Claude.ai Shared Chat Feature to Host the ClickFix Social Engineering Instructions

Hackers are increasingly exploiting trusted AI platforms to deliver sophisticated social engineering attacks, with a recent campaign abusing Claude.ai’s shared ...

18 Jun 2026
Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2
TI
The Hacker News

Microsoft Details Windows Clipper Malware Campaign Using USB LNK Worm and Tor-Based C2

Microsoft has disclosed details of a Windows-based cryptocurrency clipper campaign that has targeted users since February 2026. "The clipper in this campaign r...

18 Jun 2026
Critical Cisco ISE Vulnerability Allows Attacker to Execute Malicious Code Remotely
TI
Cyber Security News

Critical Cisco ISE Vulnerability Allows Attacker to Execute Malicious Code Remotely

Cisco has disclosed critical security vulnerabilities in its Identity Services Engine (ISE) that could allow attackers to execute malicious code remotely and ac...

18 Jun 2026
Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks
TI
Bleeping Computer

Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks

Market intelligence platform Klue suffered a OAuth breach that enabled the "Icarus" threat actors to steal Salesforce CRM data from multiple organizations in an...

18 Jun 2026
FortiBleed exposed admin credentials for 75,000 Fortinet firewalls worldwide
TI
Cyber Insider

FortiBleed exposed admin credentials for 75,000 Fortinet firewalls worldwide

A newly uncovered cybercrime operation dubbed FortiBleed has exposed administrative credentials for approximately 75,000 Fortinet FortiGate firewalls, potential...

18 Jun 2026
INC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023
TI
The Hacker News

INC Ransomware Emerges as Major RaaS Threat in 2026 with 830+ Victims Since 2023

Cybersecurity researchers have charted the evolution of INC from an nascent ransomware-as-a-service (RaaS) operation to one of the most prolific cybercrime grou...

18 Jun 2026
5 reasons Microsoft 365 backup isn’t enough for business data protection
TI
Bleeping Computer

5 reasons Microsoft 365 backup isn’t enough for business data protection

Microsoft 365 helps keep services running, but protecting and recovering business data remains your responsibility. Acronis breaks down five gaps organizations ...

18 Jun 2026
DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic
TI
The Hacker News

DragonForce Hackers Abuse Microsoft Teams Relays to Hide Backdoor.Turn C2 Traffic

Threat actors associated with the DragonForce ransomware have been observed using a custom Go-based remote access trojan (RAT) called Backdoor.Turn to conceal c...

18 Jun 2026
Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp
TI
Bleeping Computer

Police cleans nearly 15,000 SocGholish-infected sites tied to Evil Corp

International law enforcement agencies cleaned nearly 15,000 malware-infected WordPress websites and took down more than 100 servers linked to the SocGholish bo...

18 Jun 2026
Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push
TI
Security Week

Accenture to Acquire Majority Stake in Dragos, All of runZero, NetRise in $4.1 Billion OT Cybersecurity Push

The deal values industrial cybersecurity giant Dragos at $3.25 billion, and runZero and NetRise will operate under Dragos. The post Accenture to Acquire Majorit...

18 Jun 2026
TI
Dark Reading

Get Out of Security Debt by Tackling the Exposure Problem

Teams digging out of security debt need to answer only two simple questions: Which vulnerabilities in our systems are exposed, and how long should they stay tha...

18 Jun 2026
ShapedPlugin update flow hacked to infect WordPress sites
TI
Bleeping Computer

ShapedPlugin update flow hacked to infect WordPress sites

Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack that distributed infected releases to paying customers via the vendor's o...

18 Jun 2026
← PreviousNext →