Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligencePage 78

Search by keyword →
Critical, High-Severity Vulnerabilities Patched in Apache MINA, HTTP Server
TI
Security Week

Critical, High-Severity Vulnerabilities Patched in Apache MINA, HTTP Server

The most severe of these security defects could allow remote attackers to execute arbitrary code. The post Critical, High-Severity Vulnerabilities Patched in Ap...

5 May 2026
Attackers Abuse Amazon SES to Send Authenticated Phishing Emails That Bypass Security
TI
Cyber Security News

Attackers Abuse Amazon SES to Send Authenticated Phishing Emails That Bypass Security

Threat actors are increasingly turning to Amazon’s own cloud email infrastructure to deliver phishing messages that look completely genuine, passing every...

5 May 2026
PoC tool extracts cleartext passwords from Microsoft Edge memory
TI
Cyber Insider

PoC tool extracts cleartext passwords from Microsoft Edge memory

A newly released proof-of-concept (PoC) tool shows how Microsoft Edge handles saved credentials, demonstrating that passwords may be exposed in cleartext within...

5 May 2026
Karakurt Ransomware Negotiator Sentenced to Prison
TI
Security Week

Karakurt Ransomware Negotiator Sentenced to Prison

Deniss Zolotarjovs was directly involved in extortion strategies and in negotiations with victim companies. The post Karakurt Ransomware Negotiator Sentenced to...

5 May 2026
FTC orders Kochava to stop selling people’s location data
TI
Cyber Insider

FTC orders Kochava to stop selling people’s location data

The US Federal Trade Commission (FTC) has moved to permanently restrict data broker Kochava and its subsidiary from selling precise location data. This resolves...

5 May 2026
Karakurt extortion gang ‘cold case’ negotiator gets 8.5 years in prison
TI
Bleeping Computer

Karakurt extortion gang ‘cold case’ negotiator gets 8.5 years in prison

A Latvian national extradited to the United States was sentenced to 8.5 years in prison for his "cold case" negotiator role in the Russian Karakurt ransomware g...

5 May 2026
New Attribution Framework Connects APT Campaigns Through Strategic, Operational, and Technical Layers
TI
Cyber Security News

New Attribution Framework Connects APT Campaigns Through Strategic, Operational, and Technical Layers

Tracking Advanced Persistent Threat (APT) groups has never been a simple task. For years, security organizations have relied on identifying consistent behaviors...

5 May 2026
CloudZ malware hijacks Microsoft Phone Link to intercept SMS and OTPs
TI
Cyber Insider

CloudZ malware hijacks Microsoft Phone Link to intercept SMS and OTPs

A new malware campaign abuses Microsoft’s Phone Link app to intercept sensitive mobile data, including one-time passwords (OTPs), without compromising the phone...

5 May 2026
CloudZ malware abuses Microsoft Phone Link to steal SMS and OTPs
TI
Bleeping Computer

CloudZ malware abuses Microsoft Phone Link to steal SMS and OTPs

A new version of the CloudZ remote access tool (RAT) is deploying a previously unseen malicious plugin called Pheno that hijacks the Microsoft Phone Link connec...

5 May 2026
WhatsApp Vulnerability Lets Attackers Leverage Instagram Reels to Execute Malicious URLs
TI
Cyber Security News

WhatsApp Vulnerability Lets Attackers Leverage Instagram Reels to Execute Malicious URLs

Meta has disclosed a medium-severity security vulnerability in WhatsApp that could allow threat actors to exploit Instagram Reels integration to trigger arbitra...

5 May 2026
MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs
TI
Security Week

MetInfo, Weaver E-cology Vulnerabilities in Attackers’ Crosshairs

The security defects allow unauthenticated, remote attackers to execute arbitrary code through crafted requests. The post MetInfo, Weaver E-cology Vulnerabiliti...

5 May 2026
Instagram’s to End Encrypted Chats for Direct Messages
TI
Cyber Security News

Instagram’s to End Encrypted Chats for Direct Messages

Meta has announced that Instagram will officially discontinue its optional end-to-end encrypted direct message feature on May 8, 2026. The feature was initially...

5 May 2026
APT37 hacks gaming platform to spread new BirdCall Android spyware
TI
Cyber Insider

APT37 hacks gaming platform to spread new BirdCall Android spyware

North Korean hackers compromised a gaming platform in a supply-chain attack, using trojanized Windows and Android games to deploy a previously undocumented mobi...

5 May 2026
ScarCruft hackers push BirdCall Android malware via game platform
TI
Bleeping Computer

ScarCruft hackers push BirdCall Android malware via game platform

The North Korean hacker group APT37 has been delivering an Android version of a backdoor called BirdCall in a supply-chain attack through a video game platform....

5 May 2026
WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities
TI
Security Week

WhatsApp Discloses File Spoofing, Arbitrary URL Scheme Vulnerabilities

The vulnerabilities were reported to Meta through its bug bounty program and were patched with updates released earlier this year. The post WhatsApp Discloses F...

5 May 2026
Beware of Fake ‘Notepad++ for Mac’ Website, Possibly Could Harm your Machine
TI
Cyber Security News

Beware of Fake ‘Notepad++ for Mac’ Website, Possibly Could Harm your Machine

A fake website claiming to offer an official macOS version of the popular text editor Notepad++ has been making rounds online, raising serious cybersecurity con...

5 May 2026
Critical Android Zero-Click Vulnerability Grants Remote Shell Access
TI
Cyber Security News

Critical Android Zero-Click Vulnerability Grants Remote Shell Access

Google has published the May 2026 Android Security Bulletin, alerting the ecosystem to a highly severe remote code execution (RCE) flaw. Tracked as CVE-2026-007...

5 May 2026
pnpm 11 Turns On Minimum Release Age by Default to Reduce npm Supply Chain Risk
TI
Cyber Security News

pnpm 11 Turns On Minimum Release Age by Default to Reduce npm Supply Chain Risk

The npm ecosystem has long been a target for supply chain attacks, where threat actors exploit the open nature of public package registries to push malicious co...

5 May 2026
Microsoft Edge Stores All Saved Passwords in Cleartext Process Memory at Launch
TI
Cyber Security News

Microsoft Edge Stores All Saved Passwords in Cleartext Process Memory at Launch

A security researcher has discovered that Microsoft Edge decrypts every stored password into process memory the moment the browser launches and keeps them there...

5 May 2026
Apache HTTP Server Exposes Millions of Servers to Remote Code Execution Attacks
TI
Cyber Security News

Apache HTTP Server Exposes Millions of Servers to Remote Code Execution Attacks

The Apache Software Foundation has released a critical security update for Apache HTTP Server, patching five vulnerabilities, including a dangerous double-free ...

5 May 2026
← PreviousNext →