Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligencePage 49

Search by keyword →
Compromised GitHub Action Exfiltrates Workflow Credentials to Attacker Domain
TI
Cyber Security News

Compromised GitHub Action Exfiltrates Workflow Credentials to Attacker Domain

A widely used GitHub Action called actions-cool/issues-helper has been compromised, with every version tag in the repository silently redirected to a malicious ...

19 May 2026
Critical Apache Flink Vulnerability Enables Remote code execution Attacks
TI
Cyber Security News

Critical Apache Flink Vulnerability Enables Remote code execution Attacks

A newly disclosed critical vulnerability in Apache Flink, tracked as CVE-2026-35194, exposes distributed data processing environments to remote code execution (...

19 May 2026
DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability
TI
The Hacker News

DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability

Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local privilege escalati...

19 May 2026
Microsoft Edge Stops Loading Saved Passwords Into Memory at Startup
TI
Cyber Security News

Microsoft Edge Stops Loading Saved Passwords Into Memory at Startup

Microsoft has announced a significant security improvement in its Edge browser, eliminating the practice of loading saved passwords into process memory at start...

19 May 2026
New Shai-Hulud malware wave compromises 600 npm packages
TI
Bleeping Computer

New Shai-Hulud malware wave compromises 600 npm packages

Threat actors earlier today published more than 600 malicious packages to the Node Package Manager (npm) index as part of a new Shai-Hulud supply-chain campaign...

19 May 2026
7-Eleven confirms data breach claimed by the ShinyHunters gang
TI
Bleeping Computer

7-Eleven confirms data breach claimed by the ShinyHunters gang

Convenience store chain giant 7-Eleven confirmed that its systems were breached in a cyberattack claimed by the ShinyHunters extortion group last month. [...]...

19 May 2026
Attackers Use Cloudflare Storage Endpoint to Exfiltrate Files From Compromised Networks
TI
Cyber Security News

Attackers Use Cloudflare Storage Endpoint to Exfiltrate Files From Compromised Networks

Attackers have found a new way to quietly steal data from compromised networks, and this time, they are hiding behind a familiar face. Security researchers have...

19 May 2026
Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation
TI
Bleeping Computer

Critical Microsoft Vulnerabilities Doubled: From Exposure to Escalation

Microsoft's total vulnerability count stayed steady in 2025, but critical flaws surged year over year. BeyondTrust breaks down why attackers are increasingly fo...

19 May 2026
TI
Dark Reading

Looking Back, Looking Forward: Digesting a Dynamic Bouillabaisse of Cyber Evolution

Dark Reading editors reflect on two decades of dramatic change — from perimeter defense to assume-breach strategies — and warn that while AI, cloud, and COVID-1...

19 May 2026
Microsoft’s legacy MSHTA tool heavily abused in malware attacks
TI
Cyber Insider

Microsoft’s legacy MSHTA tool heavily abused in malware attacks

Microsoft’s legacy mshta.exe utility remains widely abused in malware campaigns despite the retirement of Internet Explorer and Microsoft’s ongoing deprecation ...

19 May 2026
Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks
TI
Security Week

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks

Attackers are increasingly abusing Microsoft’s decades-old MSHTA utility to stealthily deliver stealers, loaders, and persistent malware through phishing, fake ...

19 May 2026
Unpatched ChromaDB Vulnerability Can Lead to Server Takeover
TI
Security Week

Unpatched ChromaDB Vulnerability Can Lead to Server Takeover

The security defect can be exploited remotely, without authentication, to execute arbitrary code and leak sensitive information. The post Unpatched ChromaDB Vul...

19 May 2026
New VoidStealer Malware Bypasses Chrome’s App-Bound Encryption to Steal Passwords and Cookies
TI
Cyber Security News

New VoidStealer Malware Bypasses Chrome’s App-Bound Encryption to Steal Passwords and Cookies

A newly discovered malware called VoidStealer has emerged as a serious threat to Chrome users on Windows, using a clever technique to bypass one of the browser&...

19 May 2026
New VoidStealer Malware Bypasses Chrome’s Protection to Steal User Data
TI
Cyber Security News

New VoidStealer Malware Bypasses Chrome’s Protection to Steal User Data

A newly discovered malware called VoidStealer has emerged as a serious threat to Chrome users on Windows, using a clever technique to bypass one of the browser&...

19 May 2026
Webinar: The hidden bottlenecks in network incident response
TI
Bleeping Computer

Webinar: The hidden bottlenecks in network incident response

IT teams are increasingly overwhelmed by alerts from disconnected systems, forcing responders to manually coordinate investigations during network incidents. Th...

19 May 2026
B1ack’s Stash Marketplace Gives Away 4.6 Million Stolen Credit Cards
TI
Security Week

B1ack’s Stash Marketplace Gives Away 4.6 Million Stolen Credit Cards

The stolen credit card data was released as a free download, allegedly in response to seller misconduct. The post B1ack’s Stash Marketplace Gives Away 4.6...

19 May 2026
Nx Console VS Code Extension Compromised to Steal Developer and Cloud Secrets
TI
Cyber Security News

Nx Console VS Code Extension Compromised to Steal Developer and Cloud Secrets

A widely used Visual Studio Code extension was quietly turned into a credential-stealing tool in May 2026, putting millions of developers at serious risk withou...

19 May 2026
The New Phishing Click: How OAuth Consent Bypasses MFA
TI
The Hacker News

The New Phishing Click: How OAuth Consent Bypasses MFA

In February 2026, a phishing-as-a-service (PhaaS) platform called EvilTokens went live. Within five weeks, it had compromised more than 340 Microsoft 365 organi...

19 May 2026
Cyber Resilience is the New Business Continuity Plan
TI
Security Week

Cyber Resilience is the New Business Continuity Plan

The organizations best prepared to face disruption are those that align security, continuity and risk management around what the business cannot afford to lose....

19 May 2026
Microsoft confirms patching issues in restricted Windows networks
TI
Bleeping Computer

Microsoft confirms patching issues in restricted Windows networks

Microsoft says customers in restricted network environments may encounter Windows Update failures after installing the January 2026 optional non-security previe...

19 May 2026
← PreviousNext →