Threat Intelligence
A live, filtered feed of the most dangerous and urgent items, grouped by threat type.
// 44 ACTIVE THREATS · 4 IN THE LAST 24H
CRITICAL 2 Critical severity · CVSS ≥ 9.0 or pipeline-flagged
ZERO-DAY 9 Actively exploited zero-days
ZERO-DAY
FalconFlank PoC: Zero-Day Privilege Escalation in CrowdStrike Falcon Sensor
ZERO-DAYOpenAI's Astra Crosses the Critical Threshold: AI That Finds Zero-Days Without Guidance
ZERO-DAYSonicWall SMA1000: Active Zero-Days Enable Lateral Movement Without VPN
ZERO-DAYZDI-26-614: 0-day in PDF Architect Enables Remote Code Execution
ZERO-DAYJFrog Artifactory Authentication Bug Exposes Supply Chain, Zeroes Defenses
ZERO-DAYHardBreacher Breaches the Kaspersky Perimeter: When the Protector Becomes the Gatekeeper
ZERO-DAYKEV Beats CVSS: The Framework CISOs Use When Scores Lie
ZERO-DAYPaperCut Issues Back-to-Back Emergency Patches for Actively Exploited Zero-Days
ZERO-DAYZBT Routers Ship With Two Factory Firmware Implants Granting Unauthenticated Remote Root. No Patch Available
CVE 14 Advisories and patches with an assigned CVE
CVE
Autonomous AI Delivers Full Ransomware Attack in 10 Hours — and an 80-Page Audit for the Victim
CVEPublic Exploit for CVE-2026-84115 Puts Cleo Harmony at Immediate Risk
CVESonicWall SMA1000: Active Zero-Days Enable Lateral Movement Without VPN
CVECVE-2026-0768: Active Exploitation of Langflow, 360+ Attacks in Hours
CVEHoneypot Confirms Active Exploitation of Sangoma Switchvox RCE
CVEJFrog Artifactory Authentication Bug Exposes Supply Chain, Zeroes Defenses
CVERussian Hackers of UAC-0099 Weaponize AI Guardrails as Evasion Tactic
CVEKEV Beats CVSS: The Framework CISOs Use When Scores Lie
CVEAttacker's Own Infostealer Infection Exposes Full Arsenal of Colombian Blind Eagle Campaign
CVEFive Critical Flaws Hit WordPress Plugins and Theme: The GiveWP Case
CVECVE-2026-65643: The Domain Parking Bug That Turns Any cPanel Account Into Root
CVEZBT Routers Ship With Two Factory Firmware Implants Granting Unauthenticated Remote Root. No Patch Available
EXPLOIT 18 PoC and exploits in the wild
EXPLOIT
FalconFlank PoC: Zero-Day Privilege Escalation in CrowdStrike Falcon Sensor
EXPLOITPublic Exploit for CVE-2026-84115 Puts Cleo Harmony at Immediate Risk
EXPLOITOpenAI's Astra Crosses the Critical Threshold: AI That Finds Zero-Days Without Guidance
EXPLOITSonicWall SMA1000: Active Zero-Days Enable Lateral Movement Without VPN
EXPLOITZDI-26-614: 0-day in PDF Architect Enables Remote Code Execution
EXPLOITWith $500 and Claude, Researchers Cloned a PLC Exploit From One Model to Another
EXPLOITCVE-2026-0768: Active Exploitation of Langflow, 360+ Attacks in Hours
EXPLOITHoneypot Confirms Active Exploitation of Sangoma Switchvox RCE
EXPLOITJFrog Artifactory Authentication Bug Exposes Supply Chain, Zeroes Defenses
EXPLOITCronos Restarts With Rollback: $74M DeFi Exploit, $6M Unrecoverable on Ethereum
EXPLOITHardBreacher Breaches the Kaspersky Perimeter: When the Protector Becomes the Gatekeeper
EXPLOITValleyRAT Backdoor Hides in Signed Adware, Bypasses AV via DLL Sideloading
ADVISORY 1 CISA, CERT-AgID and vendor advisories