Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 70

Search by keyword →
Critical Everest Forms Pro flaw exploited to take over WordPress sites
TI
Bleeping Computer

Critical Everest Forms Pro flaw exploited to take over WordPress sites

Hackers are actively exploiting a critical vulnerability (CVE-2026-3300) in the Everest Forms Pro plugin, which lets them take complete control of a WordPress w...

6 Jun 2026
Free Apps on Samsung and LG Smart TVs Secretly Turning Your Devices Into AI Proxies
TI
Cyber Security News

Free Apps on Samsung and LG Smart TVs Secretly Turning Your Devices Into AI Proxies

Free apps available on Samsung, LG, Roku, and other major smart TV platforms have been quietly enrolling millions of living room devices into a commercial resid...

6 Jun 2026
New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
TI
The Hacker News

New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration

OpenAI has begun rolling out a new Lockdown Mode to ChatGPT for eligible personal accounts to reduce the risk of data exfiltration arising from prompt injection...

6 Jun 2026
Opal Security Raises $23 Million for AI-Native Identity Governance
TI
Security Week

Opal Security Raises $23 Million for AI-Native Identity Governance

Raising $59 million to date, Opal also announced five senior leadership appointments. The post Opal Security Raises $23 Million for AI-Native Identity Governanc...

6 Jun 2026
Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI
TI
The Hacker News

Free Apps Are Quietly Turning Smart TVs Into Web-Scraping Proxies for AI

A researcher has reverse-engineered the iOS SDK that Bright Data embeds in consumer apps and documented how it turns devices, including always-on smart TVs, int...

6 Jun 2026
CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog
TI
The Hacker News

CISA Adds Actively Exploited SolarWinds Serv-U DoS Flaw to KEV Catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity security flaw impacting SolarWinds Serv-U multi-protocol file server...

6 Jun 2026
AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs
TI
The Hacker News

AI Agent Uncovers 21 Zero-Days in FFmpeg; Chrome Patches Record 429 Bugs

Two things landed within days of each other this week. A security startup reported 21 previously unknown vulnerabilities in FFmpeg, the media library inside alm...

6 Jun 2026
TI
Cyber Security News

CISA Warns of SolarWinds Serv-U Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical SolarWinds Serv-U vulnerability to its Known Exploited Vulnerabilities (KE...

6 Jun 2026
Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack
TI
The Hacker News

Miasma Worm Hits 73 Microsoft GitHub Repositories in Major Supply Chain Attack

Microsoft's GitHub repositories have become the latest to fall victim to the ongoing Miasma self-replicating supply chain attack campaign. The incident impacte...

6 Jun 2026
Top 5 Best Tools for Simulated DDoS Attacks in 2026
TI
Cyber Security News

Top 5 Best Tools for Simulated DDoS Attacks in 2026

Last year, a botnet hurled 31.4 Tbps of junk traffic at a single target—enough data to stream every Netflix movie at once. The record-shattering flood forced bo...

6 Jun 2026
Critical Vulnerability in Hugging Face Transformers Enables Remote Code Execution Attacks
TI
Cyber Security News

Critical Vulnerability in Hugging Face Transformers Enables Remote Code Execution Attacks

A newly disclosed critical vulnerability in the HuggingFace Transformers library, tracked as CVE-2026-4372, allows attackers to achieve remote code execution (R...

6 Jun 2026
Critical Hugging Face Transformers Vulnerability Enables Remote Code Execution Attacks
TI
Cyber Security News

Critical Hugging Face Transformers Vulnerability Enables Remote Code Execution Attacks

A newly disclosed critical vulnerability in the HuggingFace Transformers library, tracked as CVE-2026-4372, allows attackers to achieve remote code execution (R...

6 Jun 2026
Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available
TI
The Hacker News

Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available

Cisco has warned that a high-severity security flaw impacting Catalyst SD-WAN Manager has come under active exploitation. The vulnerability, tracked as CVE-202...

6 Jun 2026
OWASP CVE Lite CLI – New Tool to Scan for Vulnerabilities in Your Projects
TI
Cyber Security News

OWASP CVE Lite CLI – New Tool to Scan for Vulnerabilities in Your Projects

CVE Lite CLI is a free, open-source vulnerability scanner officially recognized as an OWASP Incubator Project, designed to bring dependency security directly in...

6 Jun 2026
Anthropic’s Claude Services Down — claude.ai, Claude Code, and Cowork Affected [Updated]
TI
Cyber Security News

Anthropic’s Claude Services Down — claude.ai, Claude Code, and Cowork Affected [Updated]

Anthropic’s Claude platform suffered a significant service disruption on June 5, 2026, with elevated error rates impacting multiple frontier AI models and...

6 Jun 2026
Suspicious Polyfill login prompts pop up on Toshiba, Muji websites
TI
Bleeping Computer

Suspicious Polyfill login prompts pop up on Toshiba, Muji websites

Tech giant Toshiba and mega-retailer Muji warned visitors that suspicious sign-in screens popping up on their websites could collect credentials. [...]...

5 Jun 2026
TI
Cyber Security News

Hackers Publish Malicious Python Package Mimicking Legitimate Parsimonious Parser

A deceptive Python package quietly made its way into the PyPI repository, putting thousands of developers at risk before it was caught and removed. The package,...

5 Jun 2026
Hackers are Increasingly Weaponizing Trusted Tools to Deploy Notorious Malware
TI
Cyber Security News

Hackers are Increasingly Weaponizing Trusted Tools to Deploy Notorious Malware

Cybercriminals have found a clever and dangerous new way to slip past defenses. Instead of building custom attack tools that security software can flag, they ar...

5 Jun 2026
TI
Cyber Security News

New Magecart Attack Turns Stripe into a Malware Command Server

A new form of credit card skimming malware has been discovered hiding inside one of the most trusted payment platforms on the internet. Researchers have found a...

5 Jun 2026
TI
Cyber Security News

Hola Browser for Windows Delivery Pipeline Compromised to Deliver Cryptominer

A trusted browser application has landed at the center of a supply chain security incident after researchers discovered that its official delivery pipeline had ...

5 Jun 2026
← PreviousNext →