Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
237
75
32
11
14
1
High
145
184
63
21
44
4
Medium
78
82
49
13
44
11
Low
16
21
14
10
Hover to preview · click to filter
All-time · 2295 totalintensity = volume
LIVE
Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·Critical Vulnerabilities Patched in Fortinet, Ivanti Products·Hackers Deploy MLTBackdoor Malware via Multi-Stage ClickFix Infection Chain·Hackers Abuse TikTok and Instagram Reels to Spread Malware via Fake Free Software Tutorials·ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact·Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards·ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances·No Patch Planned for Exploited Arista EOS Vulnerability·Ivanti: Max severity Sentry flaw allows code execution as root·Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature·Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows·Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS·Anthropic Released Claude Fable 5, the First Model in the Mythos Class·Anthropic Released Claude Fable 5, the First Model in Mythos Class·New Windows Defender 0-Day Exploit “RoguePlanet” Lets Attackers Gain SYSTEM-level Access·New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers·

Latest IntelligencePage 90

Search by keyword →
New Windows Shell 0-Click Vulnerability Exploited to Bypass Defender SmartScreen
TI
Cyber Security News

New Windows Shell 0-Click Vulnerability Exploited to Bypass Defender SmartScreen

A critical zero-click authentication coercion vulnerability, tracked as CVE-2026-32202, stemming from an incomplete patch for a Windows Shell security feature b...

28 Apr 2026
TI
Cyber Security News

New Silver Fox Campaign Uses Fake Tax Audit Alerts and Software Updates to Deliver Malware

Silver Fox, a China-based threat group has launched a new wave of attacks targeting businesses and individuals across Asia, using fake tax audit notifications a...

28 Apr 2026
No Patch for New PhantomRPC Privilege Escalation Technique in Windows
TI
Security Week

No Patch for New PhantomRPC Privilege Escalation Technique in Windows

A fake RPC server can be used to listen for RPC requests and impersonate the target service to elevate privileges to System. The post No Patch for New PhantomRP...

28 Apr 2026
TI
Cyber Security News

Chinese-Backed Smishing Services Use OTT Messaging and SMS to Scale Credential Theft

A wave of large-scale phishing campaigns backed by Chinese-language services is quietly targeting people around the world, using everyday messaging apps to stea...

28 Apr 2026
Microsoft Launches Copilot Agent Mode for Outlook, Inbox and Calendar Functions
TI
Cyber Security News

Microsoft Launches Copilot Agent Mode for Outlook, Inbox and Calendar Functions

Microsoft has officially launched its new “agentic” capabilities for Copilot in Outlook, transforming the AI from a basic drafting assistant into an...

28 Apr 2026
New Sandworm Tradecraft Uses SSH-over-Tor Tunnel for Long-Term Hidden Persistence
TI
Cyber Security News

New Sandworm Tradecraft Uses SSH-over-Tor Tunnel for Long-Term Hidden Persistence

A state-sponsored threat group, Sandworm (also tracked as APT-C-13 and FROZENBARENTS), has launched a targeted cyberattack campaign using a combined SSH and Tor...

28 Apr 2026
Germany Suspects Russia Is Behind Signal Phishing That Targeted Top Officials
TI
Security Week

Germany Suspects Russia Is Behind Signal Phishing That Targeted Top Officials

Federal prosecutors have been conducting a preliminary investigation since mid-February 2026 into alleged cyberattacks on Signal accounts. The post Germany Susp...

28 Apr 2026
Microsoft releases emergency patches for critical ASP.NET flaw
TI
Bleeping Computer

Microsoft releases emergency patches for critical ASP.NET flaw

Microsoft has released out-of-band (OOB) security updates to patch a critical ASP.NET Core privilege escalation vulnerability. [...]...

28 Apr 2026
Firewall Bug Under Active Attack Triggers CISA Warning
TI
Threatpost

Firewall Bug Under Active Attack Triggers CISA Warning

CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP....

28 Apr 2026
TI
CISA

Immediate Action Required: CISA Issues Emergency Directive to Secure Cisco SD-WAN Systems

28 Apr 2026
Payouts King ransomware uses QEMU VMs to bypass endpoint security
TI
Bleeping Computer

Payouts King ransomware uses QEMU VMs to bypass endpoint security

The Payouts King ransomware is using the QEMU emulator as a reverse SSH backdoor to run hidden virtual machines on compromised systems and bypass endpoint secur...

28 Apr 2026
TI
Dark Reading

Critical MCP Integration Flaw Puts NGINX at Risk

Attackers can abuse the near-maximum severity flaw in nginx-ui to restart, create, modify, and delete NGINX configuration files....

28 Apr 2026
Firestarter malware survives Cisco firewall updates, security patches
TI
Bleeping Computer

Firestarter malware survives Cisco firewall updates, security patches

Cybersecurity agencies in the U.S. and U.K. are warning about a custom malware called Firestarter persisting on Cisco Firepower and Secure Firewall devices runn...

28 Apr 2026
Mozilla says Claude’s Mythos AI helped uncover 271 flaws in Firefox
TI
Cyber Insider

Mozilla says Claude’s Mythos AI helped uncover 271 flaws in Firefox

Mozilla says it has fixed 271 previously unknown security vulnerabilities in Firefox 150 after testing an experimental AI model from Anthropic, marking a dramat...

28 Apr 2026
PyPI package with 1.1M monthly downloads hacked to push infostealer
TI
Bleeping Computer

PyPI package with 1.1M monthly downloads hacked to push infostealer

An attacker pushed a malicious version of the popular elementary-data package Python Package Index (PyPI) to steal sensitive developer data and cryptocurrency w...

28 Apr 2026
TI
The Hacker News

April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and More

A number of critical vulnerabilities impacting products from Adobe, Fortinet, Microsoft, and SAP have taken center stage in April's Patch Tuesday releases. Topp...

28 Apr 2026
TI
CISA

CISA, UK NCSC, FBI Unveil Principles to Combat Cyber Risks in OT

28 Apr 2026
TI
CISA

CISA Releases Guide to Help Critical Infrastructure Users Adopt More Secure Communication

28 Apr 2026
Most "AI SOCs" Are Just Faster Triage. That's Not Enough.
TI
Bleeping Computer

Most "AI SOCs" Are Just Faster Triage. That's Not Enough.

AI-powered SOC tools promise automation, but most only speed up triage instead of reducing real workload. Tines shows how real gains come from end-to-end workfl...

28 Apr 2026
Apple account change alerts abused to send phishing emails
TI
Bleeping Computer

Apple account change alerts abused to send phishing emails

Apple account change notifications are being abused to send fake iPhone purchase phishing scams within legitimate emails sent from Apple's servers, increasing l...

28 Apr 2026
← PreviousNext →