Threat Intelligence Overview

Aggregated from Reddit, HackerNews, GitHub Advisories, NVD, and 12 RSS feeds

Total Articles

377

All sources

Zero-Days

65

Critical severity

AI / Agentic

78

LLM & agent threats

Active Sources

13

Scraped sources

By Category

Vulnerability103
AI / Agentic78
Zero-Day65
General56
Data Breach30
Code Injection20
Malware16
Hardening9

Top Sources

NVD/CVE100
The Hacker News50
Dark Reading50
GitHub Advisory Database50
HackerNews32
Wired Security20
BleepingComputer15
SANS Internet Stormcast10

Recent Scrape Jobs

ALL

+0 added · 3/2/2026

running

Latest Articles

View all →
VulnerabilityNVD/CVECVE-2026-28270

CVE-2026-28270: Kiteworks is a private data network (PDN). Prior to version 9.2.0, a vulnerability in Kiteworks configuration allows uploading of arbitrary files without proper validation. Malicious administrators co

2/28/2026
Zero-DayNVD/CVECVE-2026-28268

CVE-2026-28268: Vikunja is an open-source self-hosted task management platform. Versions prior to 2.1.0 have a business logic vulnerability exists in the password reset mechanism of vikunja/api that allows password r

2/28/2026
VulnerabilityNVD/CVECVE-2018-25160

CVE-2018-25160: HTTP::Session2 versions through 1.09 for Perl does not validate the format of user provided session ids, enabling code injection or other impact depending on session backend. For example, if an appli

2/28/2026
VulnerabilityNVD/CVECVE-2026-3255

CVE-2026-3255: HTTP::Session2 versions before 1.12 for Perl for Perl may generate weak session ids using the rand() function. The HTTP::Session2 session id generator returns a SHA-1 hash seeded with the built-in ra

2/28/2026
VulnerabilityNVD/CVECVE-2026-28354

CVE-2026-28354: ClipBucket v5 is an open source video sharing platform. Prior to version 5.5.3 #59, collection item operations are vulnerable to authorization flaws, allowing a normal authenticated user to modify ano

2/28/2026
VulnerabilityNVD/CVECVE-2026-28231

CVE-2026-28231: pillow_heif is a Python library for working with HEIF images and plugin for Pillow. Prior to version 1.3.0, an integer overflow in the encode path buffer validation of `_pillow_heif.c` allows an attac

2/28/2026
VulnerabilityNVD/CVECVE-2026-27947

CVE-2026-27947: Group-Office is an enterprise customer relationship management and groupware tool. Versions prior to 26.0.9, 25.0.87, and 6.8.154 have an authenticated Remote Code Execution vulnerability in the TNEF

2/28/2026
VulnerabilityNVD/CVECVE-2026-27836

CVE-2026-27836: phpMyFAQ is an open source FAQ web application. Prior to version 4.0.18, the WebAuthn prepare endpoint (`/api/webauthn/prepare`) creates new active user accounts without any authentication, CSRF prote

2/28/2026