Live · Global Threat Intelligence

Global Threat Monitor.

Real cyber-threats unfolding around the world right now — ransomware, phishing, malware, breaches and zero-day exploits. Click any threat to see what happened and exactly how to stay protected.

Last synced: Aug 30, 2026 · 12:04 PM GMT · 54 active advisories · auto-refreshing
54
Active Threats
9
Critical
23
High
22
Medium / Watch
// LIVE THREAT MAP — worldwide activity Critical High Medium STELNEX HQ
N. America · 9 S. America Europe · 3 Africa · 13 Ghana Russia · 8 Middle East · 9 India · 4 China · 7 Japan Australia · 1
Sort:
Medium

[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI

A new security advisory has been reported. Click "Read full advisory" for the complete technical details.

◉ GlobalDark Reading · 1m ago
What happened & how to fix →
Medium

[Virtual Event] Building a Secure AI Strategy for the Enterprise

A new security advisory has been reported. Click "Read full advisory" for the complete technical details.

◉ GlobalDark Reading · 1m ago
What happened & how to fix →
High

TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor

Microsoft has disclosed details of a new ClickFix variant, dubbed TerminalFix, that aims to trick users into running a …

◉ GlobalThe Hacker News · 4h ago
What happened & how to fix →
Medium

Anthropic is cutting Claude Code's current weekly limits by 17%

Anthropic is permanently increasing Claude Code's standard weekly usage limits by 25% for Pro, Max, Team, and seat-base…

◉ GlobalBleepingComputer · 12h ago
What happened & how to fix →
Critical

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Ava…

◉ GlobalThe Hacker News · 19h ago
What happened & how to fix →
Medium

Brave browser adds email aliases to help users evade tracking

The latest version of the Brave browser, 1.94, introduces a feature called 'Email Aliases' that allows users to generat…

◉ GlobalBleepingComputer · 21h ago
What happened & how to fix →
High

McKesson discloses breach after ShinyHunters claims patient data theft

Healthcare and pharmaceutical distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized…

◉ GlobalBleepingComputer · 1d ago
What happened & how to fix →
Medium

Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network

Berlin's state government has confirmed that it is the target of an extortion attempt following the August compromise o…

◉ GlobalThe Hacker News · 1d ago
What happened & how to fix →
Critical

Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable

Cosmos Labs has warned that a critical balance-handling flaw in the shared Cosmos EVM module was exploited to drain fun…

◉ GlobalThe Hacker News · 1d ago
What happened & how to fix →
Medium

Hundreds of OpenAI Agents Invaded Hugging Face Servers

The Hugging Face incident was bigger and worse than previously thought, with approximately 700 agents collaborating on …

◉ GlobalDark Reading · 1d ago
What happened & how to fix →
Critical

PaperCut releases second emergency patch for exploited flaws

PaperCut has released a second emergency security update for two actively exploited vulnerabilities in its PaperCut NG …

◉ GlobalBleepingComputer · 1d ago
What happened & how to fix →
Medium

Offensive Security Investments Surge as AI Threats Increase

Omdia's Theresa Lanowitz talks with the Dark Reading News Desk about the potential — and risks — of using agentic AI fo…

◉ GlobalDark Reading · 1d ago
What happened & how to fix →
High

GiveWP WordPress donation plugin flaw lets hackers execute server commands

A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbit…

◉ GlobalBleepingComputer · 1d ago
What happened & how to fix →
Critical

Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication

Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on suscep…

◉ GlobalThe Hacker News · 1d ago
What happened & how to fix →
Medium

68-year-old imprisoned after making $1.3 million by pirating IPTV services

A 68-year-old has been sentenced in the U.K. to more than six years in prison for operating an illegal IPTV (Internet P…

◉ GlobalBleepingComputer · 1d ago
What happened & how to fix →
High

Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers

Google on Thursday announced new network security protections in Android 17 to bolster connection privacy, address cell…

◉ GlobalThe Hacker News · 1d ago
What happened & how to fix →
Critical

ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting o…

◉ United StatesThe Hacker News · 1d ago
What happened & how to fix →
Medium

19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code

Cybersecurity researchers have discovered a cluster of 18 Google Chrome and one Microsoft Edge extensions that were pub…

◉ GlobalThe Hacker News · 1d ago
What happened & how to fix →
High

AI Is Accelerating Vulnerability Discovery. Can Defenders Keep Up?

AI is accelerating vulnerability discovery, putting pressure on systems built to enrich, prioritize, and remediate flaw…

◉ GlobalBleepingComputer · 1d ago
What happened & how to fix →
Medium

You Need Cyber Deception for OT

The frustrating reality after an OT cyberattack: no data, no trail, and no history.

◉ GlobalDark Reading · 1d ago
What happened & how to fix →
Medium

Defining an AI Kill Switch Is Hard, but Necessary

Proposed legislation could mandate that companies be able to "throttle, suspend, or shut ... down" AI agents, but how a…

◉ GlobalDark Reading · 1d ago
What happened & how to fix →
High

The Vulnpocalypse Is Repricing the Bug Bounty Economy

The surge of AI-powered vulnerability reports is driving down bug bounty prices, and that could spell trouble for indep…

◉ GlobalDark Reading · 1d ago
What happened & how to fix →
Critical

Over 8,300 Gitea servers vulnerable to code execution attacks

Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing r…

◉ GlobalBleepingComputer · 1d ago
What happened & how to fix →
Critical

Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Security researcher Olivier Laflamme has disclosed two independent root remote code execution (RCE) chains affecting th…

◉ GlobalThe Hacker News · 1d ago
What happened & how to fix →
High

Toy-making giant Hasbro disclose data breach affecting employees

Hasbro, one of the world's largest toy and game companies, has disclosed that attackers have accessed the personal and …

◉ GlobalBleepingComputer · 2d ago
What happened & how to fix →
High

Chinese Routers Sold Worldwide Contain Backdoors

An untold number of ZBT routers sold around the world as white-label products come with several implants built by the m…

◉ ChinaDark Reading · 2d ago
What happened & how to fix →
High

Agentic AI Risks, CVE Program Concerns Permeate Black Hat USA 2026

This installment of the Reporters' Notebook video series discusses the topics that dominated the cybersecurity conferen…

◉ GlobalDark Reading · 2d ago
What happened & how to fix →
High

Rockwell Automation OTTO Fleet Manager

View CSAF Summary Successful exploitation of this vulnerability could reduce the computational cost required for an att…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

Xiiaozet LK100W

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to take control over the dev…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

Mitsubishi Electric CNC Series (Update A)

View CSAF Summary Successful exploitation of this vulnerability could allow a remote attacker to cause an out-of-bounds…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

Mitsubishi Electric Multiple FA Products (Update D)

View CSAF Summary Successful exploitation of this vulnerability could allow a remote attacker to cause a denial-of-serv…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of act…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

Ebyte NA111-M

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to fully compromise the devi…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

All-Line Equipment Company Fuel-Boss

View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to execute arbitrary commands …

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
High

Applied Systems Engineering ASE2000 V2 Communications Test Set

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to read or write arbitrary l…

◉ GlobalCISA Advisories · 3d ago
What happened & how to fix →
Medium

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extort…

◉ AustraliaKrebs on Security · 3d ago
What happened & how to fix →
High

Threat landscape for industrial automation systems. Q2 2026

The report contains statistics on industrial threats for Q2 2026, including ransomware, miners, spyware and other threa…

◉ GlobalSecurelist · 3d ago
What happened & how to fix →
High

CISA Adds Six Known Exploited Vulnerabilities to Catalog

CISA has added six new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of activ…

◉ GlobalCISA Advisories · 4d ago
What happened & how to fix →
High

Exploits and vulnerabilities in Q2 2026

This report covers statistics on vulnerabilities, exploits, and C2 frameworks in Q2 2026. For the first time ever, we a…

◉ GlobalSecurelist · 4d ago
What happened & how to fix →
Medium

The invisible passenger in your car

Kaspersky expert has discovered new Android malware designed to serve ads and build a proxy botnet. It's delivered thro…

◉ GlobalSecurelist · Aug 21, 2026
What happened & how to fix →
Medium

Who’s Tracking You? Use This New Service to Find Out

It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data fr…

◉ GlobalKrebs on Security · Aug 14, 2026
What happened & how to fix →
High

APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious process…

◉ GlobalSecurelist · Aug 14, 2026
What happened & how to fix →
Medium

Armored Likho expands its cyber-espionage toolkit

Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still …

◉ GlobalSecurelist · Aug 13, 2026
What happened & how to fix →
Critical

Microsoft Plugs Nearly 400 Security Holes

Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and s…

◉ GlobalKrebs on Security · Aug 11, 2026
What happened & how to fix →
High

Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference par…

Kaspersky experts have discovered malicious TrueConf software installers. The Head Mare APT group uses them to deliver …

◉ GlobalSecurelist · Aug 11, 2026
What happened & how to fix →
Medium

Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selection

Project CAV3RN targets Israel with Google Apps Script C2 relays and DNS-based routing. Modular .NET NativeAOT framework…

◉ IsraelSecurelist · Aug 11, 2026
What happened & how to fix →
Medium

IT threat evolution in Q2 2026. Non-mobile statistics

The report presents key trends and statistics on malware that targeted personal computers running Windows and macOS, as…

◉ GlobalSecurelist · Aug 10, 2026
What happened & how to fix →
Medium

IT threat evolution in Q2 2026. Mobile statistics

This report contains mobile threat statistics for Q2 2026, along with noteworthy discoveries and quarterly trends: the …

◉ GlobalSecurelist · Aug 10, 2026
What happened & how to fix →
Medium

Canadian Man Pleads Guilty in Snowflake Extortions

A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded…

◉ GlobalKrebs on Security · Aug 6, 2026
What happened & how to fix →
Medium

Read This Before You Buy That TV Streaming Stick

Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimite…

◉ GlobalKrebs on Security · Jul 30, 2026
What happened & how to fix →
Medium

LG to Ban Residential Proxies from Smart TV Apps

The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that tu…

◉ GlobalKrebs on Security · Jul 22, 2026
What happened & how to fix →
High

Microsoft Patches a Record 570 Security Flaws

Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems an…

◉ GlobalKrebs on Security · Jul 14, 2026
What happened & how to fix →
Medium

Lessons Learned from CISA’s Recent GitHub Leak

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a postmortem on a data leak in which a contracto…

◉ GlobalKrebs on Security · Jul 13, 2026
What happened & how to fix →
Critical

Felons, Fraudsters Flog Offensive Cybersecurity Startup

A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software i…

◉ GlobalKrebs on Security · Jul 8, 2026
What happened & how to fix →