Every Old Vulnerability Is Now an AI Exploitability
Live threat intelligence feed

Targeted
Threat Intelligence

Aggregated threat intelligence from CISA, NVD, and leading security publications. AI-curated. Updated every 30 minutes.

Threat Matrix — All Time
Vuln
Malware
Intel
Advisory
Breach
APT
Critical
274
90
32
12
17
1
High
165
226
71
23
58
4
Medium
87
94
58
14
63
12
Low
20
22
14
12
Hover to preview · click to filter
All-time · 3529 totalintensity = volume
LIVE
PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·PoC and Technical Details Released for SharePoint Remote Code Execution Vulnerability·Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations·DuckDuckGo browser now blocks YouTube video ads·GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures·First-Ever 1- Click Android 17 Exploit Allows Attackers to Gain Full Control Over Your Android Phone·The Verification Step Is the New ATO Battleground in 2026·Telco giant KDDI says data breach affects over 12 million people·GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code·New Bit2Watt attack uses AI GPU workloads to destabilize power grids·CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws·Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection·CISA Warns of Adobe ColdFusion Path Traversal Vulnerability Exploited in Attacks·EU now one step away from reviving private message scanning rules·CISA orders feds to prioritize patching Langflow auth bypass flaw·70% of WordPress Sites Running Outdated PHP Versions Exposed to Cyberattacks·

Latest IntelligencePage 97

Search by keyword →
CISA orders feds to patch actively exploited Drupal vulnerability
TI
Bleeping Computer

CISA orders feds to patch actively exploited Drupal vulnerability

CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management ...

26 May 2026
Phishing Services Use RCS and iMessage to Bypass Traditional SMS Security Filters
TI
Cyber Security News

Phishing Services Use RCS and iMessage to Bypass Traditional SMS Security Filters

A new wave of phishing operations is quietly changing the way cybercriminals steal financial data from everyday people. Rather than relying on traditional SMS m...

26 May 2026
Payload Ransomware Uses ChaCha20 and Curve25519 ECDH to Encrypt Windows Files
TI
Cyber Security News

Payload Ransomware Uses ChaCha20 and Curve25519 ECDH to Encrypt Windows Files

A dangerous new ransomware strain called Payload has been quietly building a global victim list since it first appeared in February 2026. The group launched its...

26 May 2026
PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw
TI
Cyber Security News

PuTTY 0.84 Released With Fix for SSH KEX Crashes and Telnet Prompt Spoofing Flaw

PuTTY 0.84 has been released with fixes for multiple minor security flaws, including issues that could trigger SSH key exchange crashes and a Telnet prompt spoo...

26 May 2026
Microsoft: Domain Controller lookup may fail on Windows Server 2016
TI
Bleeping Computer

Microsoft: Domain Controller lookup may fail on Windows Server 2016

Microsoft has confirmed a new known issue affecting Windows Server 2016 systems that causes domain controller lookups to fail after installing the KB5087537 May...

26 May 2026
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning
TI
The Hacker News

Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning

The Iranian state-sponsored threat actor known as Nimbus Manticore (aka Screening Serpens and UNC1549) has been attributed to a fresh campaign using lures imper...

26 May 2026
7-Eleven data breach exposes personal information of 185,000 people
TI
Bleeping Computer

7-Eleven data breach exposes personal information of 185,000 people

The ShinyHunters extortion gang stole the personal information of over 183,000 people after hacking the systems of convenience store chain giant 7-Eleven in Apr...

26 May 2026
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
TI
The Hacker News

KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike

A now-patched high-severity security flaw affecting Digital Knowledge KnowledgeDeliver, a Learning Management System (LMS) popular in Japan, was exploited as a ...

26 May 2026
TI
Cyber Security News

New 7-Zip Vulnerabilities Let Attackers Execute Arbitrary Code and Compromise Systems

A critical heap buffer overflow vulnerability has been disclosed in 7-Zip version 26.00, enabling attackers to achieve arbitrary code execution via a vtable hij...

26 May 2026
TI
Cyber Security News

Anthropic’s Restricted Claude Mythos Moves Toward Public Release via Claude Code and Security

Anthropic appears to be loosening its grip on Claude Mythos, the company’s most powerful and previously restricted AI model, with new signals pointing to ...

26 May 2026
Megalodon campaign compromises over 5,500 GitHub repositories with malicious commits
TI
Cyber Insider

Megalodon campaign compromises over 5,500 GitHub repositories with malicious commits

Security researchers have uncovered a large-scale supply chain attack dubbed “Megalodon” that injected malicious GitHub Actions workflows into more than 5,500 r...

25 May 2026
InvisibleFerret Malware Now Ships as .pyd and .so Files to Evade Script Detection
TI
Cyber Security News

InvisibleFerret Malware Now Ships as .pyd and .so Files to Evade Script Detection

A North Korea-linked hacker group has quietly upgraded one of its most dangerous tools, making it harder for security software to detect. InvisibleFerret, an in...

25 May 2026
Cloud Atlas APT Group Modifies termsrv.dll to Enable Multiple RDP Sessions on Victim Hosts
TI
Cyber Security News

Cloud Atlas APT Group Modifies termsrv.dll to Enable Multiple RDP Sessions on Victim Hosts

A well-known advanced persistent threat group called Cloud Atlas has been caught using a dangerous technique to hijack Windows systems without alerting anyone o...

25 May 2026
Cybercriminals Use Telegram Channels to Sell Verified Bank and Fintech Mule Accounts
TI
Cyber Security News

Cybercriminals Use Telegram Channels to Sell Verified Bank and Fintech Mule Accounts

Cybercriminals are openly selling verified bank accounts, fintech wallets, and cryptocurrency exchange accounts through Telegram channels, turning money launder...

25 May 2026
Hackers Hide Linux Payload Under SSH-Like Filename During Package Installation
TI
Cyber Security News

Hackers Hide Linux Payload Under SSH-Like Filename During Package Installation

A new supply chain attack campaign is quietly targeting developers through a method most would never think to look for. Hidden inside software packages on GitHu...

25 May 2026
Russian Hacker Used Jailbroken Gemini to Steal Admin Credentials and Drain Crypto Wallets
TI
Cyber Security News

Russian Hacker Used Jailbroken Gemini to Steal Admin Credentials and Drain Crypto Wallets

A solo Russian-speaking threat actor leveraged a jailbroken instance of Google Gemini to run a five-year MAGA-themed influence operation, crack WordPress admini...

25 May 2026
TI
Cyber Security News

Hackers Abuse Shared CDN Infrastructure to Bypass Domain Reputation Security Controls

Hackers are actively abusing a flaw in shared Content Delivery Network (CDN) infrastructure to hide malicious traffic behind trusted, high-reputation domains, e...

25 May 2026
Anthropic’s restricted Claude Mythos model may be coming to Claude Code
TI
Bleeping Computer

Anthropic’s restricted Claude Mythos model may be coming to Claude Code

Anthropic appears to be preparing for the public rollout of the Mythos model, which was announced in April as a restricted model that poses major security risks...

25 May 2026
Drupal warns of active exploitation attempts targeting critical SQL injection flaw
TI
Cyber Insider

Drupal warns of active exploitation attempts targeting critical SQL injection flaw

Drupal is warning administrators that attackers are already attempting to exploit a newly disclosed SQL injection vulnerability affecting the open-source conten...

25 May 2026
KnowledgeDeliver LMS Zero-Day Exploited to Deploy BLUEBEAM Web Shell
TI
Cyber Security News

KnowledgeDeliver LMS Zero-Day Exploited to Deploy BLUEBEAM Web Shell

A newly disclosed zero-day vulnerability in the KnowledgeDeliver Learning Management System (LMS) has been actively exploited in the wild to deploy the BLUEBEAM...

25 May 2026
← PreviousNext →