Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started

Threat Intelligence Dashboard

Platform overview — August 11, 2026 Live

Live
Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development · China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw · ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors · Security Hackers breached a small Polish energy plant via private APN last year · Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development · New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA · Security BdThemes plugins supply-chain hack creates rogue WordPress admins · TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore · Security OpenAI releases ChatGPT 5.6 Cyber, but it's only for approved users · Security New StormEncryptor ransomware used by former Medusa affiliate · Security CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs · Security When Credentials Are No Longer Enough: Device Trust in the AI Era · Email addresses Alcon — data breach (Alcon) · Dates of birth Brinks Home — data breach (BrinksHome) · Dates of birth Exact Sciences — data breach (ExactSciences) · Email addresses Inter-Con Security — data breach (InterConSecurity) · Device information SplitVPN — data breach (SplitVPN) · Academic records Houston City College — data breach (HoustonCityCollege) ·

Global Threat Intelligence Map

Threat actor origins and targeted countries

Drag to rotate
Threat Actor Origins
Targeted Countries
Both
18 origin countries · 89 targeted countries
Critical CVEs
CVSS 9.1 CVE-2026-44758 · Code Injection vulnerability in Manufacturing Integration and Intelligence · CVSS 9.8 CVE-2026-34265 · Memory Corruption vulnerability in Application Server ABAP for SAP NetWeaver and ABAP Platform · CVSS 9.3 CVE-2026-48161 · react18-use was vulnerable to malicious code execution via compromised commits · CVSS 9.3 CVE-2026-72904 · Firecrawl: Arbitrary file read via JSON Schema $ref expansion · CVSS 9.9 CVE-2026-18948 · Feast: feast: unsafe dill deserialization of registry-stored udfs — rce on feature server and registry server · CVSS 9.9 CVE-2026-14450 · Maas-billing: maas api: privilege escalation via forged http headers due to missing authentication · CVSS 9.9 CVE-2026-72911 · ERPNext: Possibility of server-side template injection due to missing validation · CVSS 9.9 CVE-2026-72733 · Dokploy: OS Command Injection via `databaseName` / `backupFile` in database restore · CVSS 9.1 CVE-2026-44758 · Code Injection vulnerability in Manufacturing Integration and Intelligence · CVSS 9.8 CVE-2026-34265 · Memory Corruption vulnerability in Application Server ABAP for SAP NetWeaver and ABAP Platform · CVSS 9.3 CVE-2026-48161 · react18-use was vulnerable to malicious code execution via compromised commits · CVSS 9.3 CVE-2026-72904 · Firecrawl: Arbitrary file read via JSON Schema $ref expansion · CVSS 9.9 CVE-2026-18948 · Feast: feast: unsafe dill deserialization of registry-stored udfs — rce on feature server and registry server · CVSS 9.9 CVE-2026-14450 · Maas-billing: maas api: privilege escalation via forged http headers due to missing authentication · CVSS 9.9 CVE-2026-72911 · ERPNext: Possibility of server-side template injection due to missing validation · CVSS 9.9 CVE-2026-72733 · Dokploy: OS Command Injection via `databaseName` / `backupFile` in database restore ·
View all
Leaving Threaticon

This link opens an external site that isn't part of the platform.