Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 47

Search by keyword →
Critical LiteLLM Flaw Allows Authentication Bypass via Host Header Injection
TI
Cyber Security News

Critical LiteLLM Flaw Allows Authentication Bypass via Host Header Injection

A critical security vulnerability has been disclosed in LiteLLM, an increasingly popular proxy used for managing large language model (LLM) APIs. The flaw, trac...

17 Jun 2026
Critical Chrome Vulnerabilities Allow Attackers to Execute Arbitrary Code – Update Now!
TI
Cyber Security News

Critical Chrome Vulnerabilities Allow Attackers to Execute Arbitrary Code – Update Now!

Google has released a critical security update for its Chrome browser, addressing multiple high-severity vulnerabilities that could allow attackers to execute a...

17 Jun 2026
Hackers Use Rokarolla Android Malware to Disable Google Play Protect and Control Devices
TI
Cyber Security News

Hackers Use Rokarolla Android Malware to Disable Google Play Protect and Control Devices

A newly discovered Android banking trojan called Rokarolla is making waves in the cybersecurity world, and it is more dangerous than most threats we have seen l...

17 Jun 2026
Kodak confirms data breach claimed by ShinyHunters extortion gang
TI
Bleeping Computer

Kodak confirms data breach claimed by ShinyHunters extortion gang

Kodak has confirmed that it's working with external cybersecurity experts to investigate a security breach after hackers gained access to some of the company's ...

17 Jun 2026
Deno-Based RAT Uses Microsoft Teams Impersonation and Mailbombing to Target Employees
TI
Cyber Security News

Deno-Based RAT Uses Microsoft Teams Impersonation and Mailbombing to Target Employees

A new strain of malware has emerged that combines two well-known social engineering tactics into one effective attack chain. Researchers have uncovered a Remote...

17 Jun 2026
Hackers Abuse Steam Workshop Application Wallpapers to Hijack Active Steam Sessions
TI
Cyber Security News

Hackers Abuse Steam Workshop Application Wallpapers to Hijack Active Steam Sessions

Threat actors have been abusing Valve’s Steam Workshop since late 2025, embedding malware inside Wallpaper Engine application wallpapers to hijack active ...

17 Jun 2026
3 Recently Patched Fortinet FortiSandbox Vulnerabilities in Hacker Crosshairs
TI
Security Week

3 Recently Patched Fortinet FortiSandbox Vulnerabilities in Hacker Crosshairs

SOCRadar has detected 30,000 compromised Fortinet firewalls that expose networks to hacking.  The post 3 Recently Patched Fortinet FortiSandbox Vulnerabilities ...

17 Jun 2026
Hackers Using Claude and OpenAI’s Codex for Exploitation, and Data Exfiltration Activities
TI
Cyber Security News

Hackers Using Claude and OpenAI’s Codex for Exploitation, and Data Exfiltration Activities

Hackers are increasingly abusing Anthropic’s Claude and OpenAI’s Codex agents to automate reconnaissance, exploitation, and data exfiltration, often by disguisi...

17 Jun 2026
Using Real-Time Network Monitoring to Spot Suspicious Application Behavior on macOS
TI
Cyber Security News

Using Real-Time Network Monitoring to Spot Suspicious Application Behavior on macOS

In this guide, we will see how real-time network monitoring helps you spot suspicious application behavior on macOS, why traditional defenses leave a visibility...

17 Jun 2026
CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution
TI
The Hacker News

CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting Widget Factory Joomla Content Edito...

17 Jun 2026
UNC3753 Uses Screen-Sharing Sessions and RMM Tools to Exfiltrate Sensitive Legal Data
TI
Cyber Security News

UNC3753 Uses Screen-Sharing Sessions and RMM Tools to Exfiltrate Sensitive Legal Data

A sophisticated cybercriminal group has been quietly targeting law firms and professional services organizations across the United States since the beginning of...

17 Jun 2026
New OnionDrop Loader Campaign Uses gainmsg C2 to Deliver LegionLoader Payloads
TI
Cyber Security News

New OnionDrop Loader Campaign Uses gainmsg C2 to Deliver LegionLoader Payloads

A newly identified loader campaign is raising serious concerns across the cybersecurity community. Threat researchers have uncovered an active operation using a...

17 Jun 2026
ClickFix Campaign Uses EtherHiding and GULoader to Infect Windows Users via Fake CAPTCHA
TI
Cyber Security News

ClickFix Campaign Uses EtherHiding and GULoader to Infect Windows Users via Fake CAPTCHA

A new cyberattack campaign is targeting Windows users through fake CAPTCHA pages, combining three techniques to slip past standard security defenses without rai...

17 Jun 2026
Ghostwriter Hackers Abuse Gmail Admin-Themed Emails to Steal Credentials and 2FA Codes
TI
Cyber Security News

Ghostwriter Hackers Abuse Gmail Admin-Themed Emails to Steal Credentials and 2FA Codes

A state-linked hacker group known as Ghostwriter has launched a wave of targeted phishing attacks aimed at Gmail users, disguising malicious emails as official ...

17 Jun 2026
TI
Dark Reading

Fileless Phantom Stealer Targets Browser Credentials

In addition to executing entirely in memory, the malware's infection chain incorporates other anti-analysis techniques designed to frustrate detection....

16 Jun 2026
TI
Dark Reading

Security Community Slams US Ban on Exporting Mythos, Fable

An open letter signed by dozens of security experts asked the government to reverse export restrictions on Anthropic's Claude Fable 5 and Mythos 5 models....

16 Jun 2026
Malicious JetBrains Marketplace plugins steal AI API keys from developers
TI
Bleeping Computer

Malicious JetBrains Marketplace plugins steal AI API keys from developers

At least 15 malicious plugins found on the JetBrains Marketplace were designed to steal AI API keys from developers. [...]...

16 Jun 2026
New Rokarolla Android malware targets 217 banking, crypto apps
TI
Bleeping Computer

New Rokarolla Android malware targets 217 banking, crypto apps

A new Android banking trojan named Rokarolla is targeting 217 banking and cryptocurrency applications using an extensive set of 137 commands. [...]...

16 Jun 2026
TI
CIS Advisories

Multiple Vulnerabilities in Mozilla Products Could Allow for Arbitrary Code Execution

Multiple vulnerabilities have been discovered in Mozilla products, the most severe of which could allow for arbitrary code execution. Mozilla Firefox is a web b...

16 Jun 2026
TI
CIS Advisories

A Vulnerability in SimpleHelp Could Allow for Authentication Bypass

A vulnerability has been discovered in SimpleHelp, which could allow for authentication bypass. SimpleHelp is a self-hosted remote support, access, and monitori...

16 Jun 2026
← PreviousNext →