Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 50

Search by keyword →
Ransomware gang abuses Microsoft Teams relays to hide malicious traffic
TI
Bleeping Computer

Ransomware gang abuses Microsoft Teams relays to hide malicious traffic

DragonForce ransomware used a custom malware named 'Backdoor.Turn' to hide command-and-control traffic inside Microsoft Teams relay infrastructure. [...]...

16 Jun 2026
PRC-Nexus Hackers Exploit REDCap Servers to Spy on US Medical Research Institutions
TI
Cyber Security News

PRC-Nexus Hackers Exploit REDCap Servers to Spy on US Medical Research Institutions

Google’s Threat Intelligence Group (GTIG) uncovered a long-running Chinese cyber-espionage campaign targeting North American medical, academic, and milita...

16 Jun 2026
China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth
TI
The Hacker News

China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth

Cybersecurity researchers have flagged two previously undocumented Windows variants of what was believed to be a Linux-only backdoor called SprySOCKS. "The Win...

16 Jun 2026
Tech Coalition ‘Athena’ Targets OSS Vulnerabilities Ahead of Disclosure
TI
Security Week

Tech Coalition ‘Athena’ Targets OSS Vulnerabilities Ahead of Disclosure

Over two dozen organizations built a shared platform to triage vulnerabilities, fix them, and secure the software before patches arrive. The post Tech Coalition...

16 Jun 2026
Critical Fortinet FortiSandbox flaws now exploited in attacks
TI
Bleeping Computer

Critical Fortinet FortiSandbox flaws now exploited in attacks

Attackers are now exploiting several critical vulnerabilities in Fortinet's FortiSandbox cyber threat detection platform, according to threat intelligence compa...

16 Jun 2026
ESET discovers Windows SprySOCKS variant with rootkit capabilities
TI
Cyber Insider

ESET discovers Windows SprySOCKS variant with rootkit capabilities

ESET researchers have uncovered two previously undocumented Windows variants of SprySOCKS, a backdoor previously known only as a Linux threat and linked to the ...

16 Jun 2026
Windows version of SprySOCKS Linux malware used to attack govt orgs
TI
Bleeping Computer

Windows version of SprySOCKS Linux malware used to attack govt orgs

Windows variants for the SprySOCKS Linux malware have been used in attacks targeting government organizations in at least four countries. [...]...

16 Jun 2026
Infinite Campus Data Breach Exposes 137,000 Users Personal Details
TI
Cyber Security News

Infinite Campus Data Breach Exposes 137,000 Users Personal Details

Infinite Campus, a widely used student information system in U.S. K-12 schools, has disclosed a data breach affecting approximately 137,000 individuals. The inc...

16 Jun 2026
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware
TI
The Hacker News

Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware

The North Korean state-sponsored hacking group known as ScarCruft (aka APT37) has been observed using spear-phishing messages impersonating Microsoft Account se...

16 Jun 2026
OptinMonster Plugin Hack Exposes 1.2 Million WordPress Sites to Cyberattack
TI
Cyber Security News

OptinMonster Plugin Hack Exposes 1.2 Million WordPress Sites to Cyberattack

A large-scale supply chain attack targeting widely used WordPress plugins has exposed more than 1.2 million websites to potential compromise after attackers inj...

16 Jun 2026
TI
Cyber Security News

Ransomware Ecosystem Consolidates Around LockBit Alumni, Qilin, Hyflock, and The Gentlemen

The global ransomware landscape shifted noticeably in the first quarter of 2026, as former operators from well-known criminal groups began launching their own c...

16 Jun 2026
Hackers Abuse Legitimate RMM Tools in The Quarry IRS and SSA Phishing Campaigns
TI
Cyber Security News

Hackers Abuse Legitimate RMM Tools in The Quarry IRS and SSA Phishing Campaigns

A wave of phishing campaigns targeting American taxpayers has been traced back to a single, highly organized cybercrime operation known as The Quarry. What appe...

16 Jun 2026
iRhythm discloses data breach, says hackers stole patient info
TI
Bleeping Computer

iRhythm discloses data breach, says hackers stole patient info

Digital healthcare company iRhythm Holdings has disclosed a data breach after hackers stole patients' personal and health information stored on third-party-host...

16 Jun 2026
Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks
TI
Security Week

Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks

Cisco recently became aware of the exploitation of CVE-2026-20262, a Catalyst SD-WAN Manager zero-day that allows arbitrary file write. The post Cisco Patches A...

16 Jun 2026
LiteSpeed cPanel Plugin 0-Day Vulnerability Actively Exploited in the Wild
TI
Cyber Security News

LiteSpeed cPanel Plugin 0-Day Vulnerability Actively Exploited in the Wild

A critical zero-day vulnerability in the LiteSpeed cPanel user-end plugin is being actively exploited in the wild, posing a serious threat to shared hosting env...

16 Jun 2026
Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw
TI
The Hacker News

Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw

Cisco has released security updates for a medium-severity security flaw in Catalyst SD-WAN Manager that has come under active exploitation in the wild. The vul...

16 Jun 2026
CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation
TI
The Hacker News

CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a security flaw impacting LiteSpeed cPanel Plugin to its Known Exploited Vulnerabilit...

16 Jun 2026
Cisco SD-WAN vManage Vulnerability Exploited in Zero-Day Attacks
TI
Cyber Security News

Cisco SD-WAN vManage Vulnerability Exploited in Zero-Day Attacks

Cisco has disclosed a critical security issue in its Catalyst SD-WAN Manager (formerly vManage) that is now being actively exploited in zero-day attacks, raisin...

16 Jun 2026
Nearly 14,000 SimpleHelp Servers Exposed Amid Critical Authentication Bypass Disclosure
TI
Cyber Security News

Nearly 14,000 SimpleHelp Servers Exposed Amid Critical Authentication Bypass Disclosure

Nearly 14,000 internet-facing SimpleHelp servers are exposed following the disclosure of a critical authentication bypass vulnerability tracked as CVE-2026-4855...

16 Jun 2026
DOJ seizes CFAKE, SOCFAKE deepfake nude sites under TAKE IT DOWN Act
TI
Bleeping Computer

DOJ seizes CFAKE, SOCFAKE deepfake nude sites under TAKE IT DOWN Act

The U.S. Department of Justice announced Friday that it has seized the CFAKE.com and SOCFAKE.com websites, which allegedly hosted nonconsensual AI-generated nud...

15 Jun 2026
← PreviousNext →