Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligencePage 85

Search by keyword →
Jenkins Patches High-Severity Plugin Flaws Including Path Traversal and Stored XSS
TI
Cyber Security News

Jenkins Patches High-Severity Plugin Flaws Including Path Traversal and Stored XSS

Jenkins project published a security advisory detailing patches for seven plugin vulnerabilities, including high-severity path traversal and Stored Cross-Site S...

30 Apr 2026
“Copy Fail” gives root access to all Linux systems via 732-byte exploit
TI
Cyber Insider

“Copy Fail” gives root access to all Linux systems via 732-byte exploit

A new Linux kernel vulnerability dubbed “Copy Fail” enables unprivileged users to gain root access across nearly all major distributions using a tiny, highly re...

30 Apr 2026
WordPress Plugin Hacked Since 2020 to Inject Malicious Code Silently
TI
Cyber Security News

WordPress Plugin Hacked Since 2020 to Inject Malicious Code Silently

A massive supply chain attack has been uncovered in the Quick Page/Post Redirect Plugin, a popular WordPress plugin with over 70,000 active installations. Secur...

30 Apr 2026
Critical Gemini CLI Flaw Enabled Host Code Execution, Supply Chain Attacks
TI
Security Week

Critical Gemini CLI Flaw Enabled Host Code Execution, Supply Chain Attacks

An attacker could have planted a malicious configuration to execute commands outside the sandbox. The post Critical Gemini CLI Flaw Enabled Host Code Execution,...

30 Apr 2026
EnOcean SmartServer Flaws Expose Buildings to Remote Hacking
TI
Security Week

EnOcean SmartServer Flaws Expose Buildings to Remote Hacking

Claroty researchers discovered two vulnerabilities that can be exploited for security bypass and remote code execution. The post EnOcean SmartServer Flaws Expos...

30 Apr 2026
Critical cPanel and WHM bug exploited as a zero-day, PoC now available
TI
Bleeping Computer

Critical cPanel and WHM bug exploited as a zero-day, PoC now available

The critical CVE-2026-41940 authentication bypass vulnerability in cPanel, WHM, and WP Squared is being actively exploited in the wild and has been leveraged in...

30 Apr 2026
Police dismantles 9 crypto scam centers, arrests 276 suspects
TI
Bleeping Computer

Police dismantles 9 crypto scam centers, arrests 276 suspects

A joint international operation involving U.S. and Chinese authorities arrested at least 276 suspects and shut down nine cryptocurrency investment fraud centers...

30 Apr 2026
Critical cPanel & WHM Vulnerability Exploited as Zero-Day for Months
TI
Security Week

Critical cPanel & WHM Vulnerability Exploited as Zero-Day for Months

The authentication bypass flaw allows attackers to gain administrative access to vulnerable servers. The post Critical cPanel & WHM Vulnerability Exploited...

30 Apr 2026
‘Copy Fail’ Logic Flaw in Linux Kernel Enables System Takeover
TI
Security Week

‘Copy Fail’ Logic Flaw in Linux Kernel Enables System Takeover

Affecting the kernel’s authencesn cryptographic template, the vulnerability was introduced in 2017 and impacts all distributions. The post ‘Copy Fail&#821...

30 Apr 2026
TI
Cyber Security News

OpenAI Releases 5-Point Action Plan to Strengthen AI-Powered Cyber Defense

OpenAI has published a comprehensive cybersecurity action plan titled “Cybersecurity in the Intelligence Age: An Action Plan for Democratizing AI-Powered ...

30 Apr 2026
Critical cPanel zero-day auth bypass exploited since February
TI
Cyber Insider

Critical cPanel zero-day auth bypass exploited since February

A critical authentication bypass vulnerability in cPanel & WHM is being actively exploited, allowing remote attackers to gain full administrative access to...

30 Apr 2026
CVE MCP Server Turns Claude Into a Full-Spectrum Security Analyst With 27 Tools Across 21 APIs
TI
Cyber Security News

CVE MCP Server Turns Claude Into a Full-Spectrum Security Analyst With 27 Tools Across 21 APIs

A new open-source project called CVE MCP Server is redefining how security teams triage vulnerabilities, transforming Anthropic’s Claude AI into a fully c...

30 Apr 2026
CVE MCP Server Turns Claude Into a Fully Capable Security Analyst With 27 Tools Across 21 APIs
TI
Cyber Security News

CVE MCP Server Turns Claude Into a Fully Capable Security Analyst With 27 Tools Across 21 APIs

A new open-source project called CVE MCP Server is redefining how security teams triage vulnerabilities, transforming Anthropic’s Claude AI into a fully c...

30 Apr 2026
Claude-Generated Commit Adds PromptMink Malware to Crypto Trading Agent
TI
Cyber Security News

Claude-Generated Commit Adds PromptMink Malware to Crypto Trading Agent

A new threat has quietly taken root in the software development world, using an AI coding assistant as an unknowing participant in a supply chain attack. A mali...

30 Apr 2026
Sandhills Medical Says Ransomware Breach Affects 170,000
TI
Security Week

Sandhills Medical Says Ransomware Breach Affects 170,000

It took the healthcare organization nearly one year to publicly disclose a data breach after it was targeted by Inc Ransom. The post Sandhills Medical Says Rans...

30 Apr 2026
Qinglong Task Scheduler RCE Vulnerabilities Exploited in the Wild
TI
Cyber Security News

Qinglong Task Scheduler RCE Vulnerabilities Exploited in the Wild

In early 2026, two critical authentication bypass vulnerabilities in the popular open-source Qinglong task scheduler were actively exploited by hackers. Accordi...

30 Apr 2026
Novel KarstoRAT RAT Enables Webcam Monitoring, Audio Recording, and Remote Payload Execution
TI
Cyber Security News

Novel KarstoRAT RAT Enables Webcam Monitoring, Audio Recording, and Remote Payload Execution

A newly identified remote access trojan called KarstoRAT has been found in sandbox analyses and malware repositories since early 2026. The malware gives attacke...

30 Apr 2026
CISA Warns of ConnectWise ScreenConnect Vulnerability Exploited in Attacks
TI
Cyber Security News

CISA Warns of ConnectWise ScreenConnect Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding a severe vulnerability in ConnectWise ScreenConnect. On ...

30 Apr 2026
ProFTPD’s SQL Injection Vulnerability Enables Remote Code Execution Attacks
TI
Cyber Security News

ProFTPD’s SQL Injection Vulnerability Enables Remote Code Execution Attacks

A critical SQL injection vulnerability in ProFTPD, one of the Internet’s most widely deployed FTP servers. Tracked as CVE-2026-42167, this flaw carries a ...

30 Apr 2026
Malicious npm Package Brand-Squats TanStack Exfiltrate Developer Secrets
TI
Cyber Security News

Malicious npm Package Brand-Squats TanStack Exfiltrate Developer Secrets

A fake npm package has been caught silently stealing sensitive developer credentials by impersonating the widely trusted TanStack library. The package, publishe...

30 Apr 2026
← PreviousNext →