Threat Intelligence Feed

Real-Time Cyber Threat Data

Vulnerability intelligence, CVE tracking, and threat actor analysis — powered by OpenCTI and curated for cyber insurance professionals.

179 threats
Critical 24
High 155
Medium 0
Low 0
179
Total Threats
24
Critical
155
High
166
Vulnerabilities
Known Exploited

Last updated: May 6, 2026

Sort:
high Yesterday

🔍 CVE-2023-1888: CVE-2023-1888

CVE CVE-2023-1888 with CVSS 8.8. The Directorist plugin for WordPress is vulnerable to an arbitrary user password reset in versions up to, and including, 7.5.4. This is due to a lack of validation checks within login.php. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to reset the p

cve CVE-2023-1888 cvss-8
CVSS
high Yesterday

🔍 CVE-2023-2237: CVE-2023-2237

CVE CVE-2023-2237 with CVSS 8.8. The WP Replicate Post plugin for WordPress is vulnerable to SQL Injection via the post_id parameter in versions up to, and including, 4.0.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for contributo

cve CVE-2023-2237 cvss-8
CVSS
high Yesterday

🔍 CVE-2023-2249: CVE-2023-2249

CVE CVE-2023-2249 with CVSS 8.8. The wpForo Forum plugin for WordPress is vulnerable to Local File Include, Server-Side Request Forgery, and PHAR Deserialization in versions up to, and including, 2.1.7. This is due to the insecure use of file_get_contents without appropriate verification of the data being supplied to the function.

cve CVE-2023-2249 cvss-8
CVSS
high Yesterday

🔍 CVE-2023-1895: CVE-2023-1895

CVE CVE-2023-1895 with CVSS 8.5. The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Server Side Request Forgery via the get_remote_content REST API endpoint in versions up to, and including, 1.8.3. This can allow authenticated attackers with subscriber-level permissions or above to make web requests to arbitrary lo

cve CVE-2023-1895 cvss-8
CVSS
high Yesterday

🔍 CVE-2023-2484: CVE-2023-2484

CVE CVE-2023-2484 with CVSS 7.2. The Active Directory Integration plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and order parameters in versions up to, and including, 4.1.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This

cve CVE-2023-2484 cvss-7
CVSS
high Yesterday

🔍 CVE-2023-2607: CVE-2023-2607

CVE CVE-2023-2607 with CVSS 7.2. The Multiple Page Generator Plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and order parameters in versions up to, and including, 3.3.17 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This make

cve CVE-2023-2607 cvss-7
CVSS
high Yesterday

📄 Not-so-SimpleHelp exploits enabling deployment of Sliver backdoor

Threat report published 2025-02-07T00:08:41.573Z. Types: threat-report. A sophisticated breach was identified where threat actors exploited vulnerabilities in SimpleHelp's Remote Monitoring and Management client to infiltrate a network. The attack involved post-compromise

threat-report
CVSS
high Yesterday

📄 Russian State Actors: Development in Group Attributions

Threat report published 2025-03-08T11:40:18.794Z. Types: threat-report. This analysis explores the evolution of Russian state-backed cyber actors and their operations. It highlights the activities of several prominent groups, including UNC2589, APT44 (Sandworm), APT29, an

threat-report
CVSS
high Yesterday

📄 Desert Dexter.Attacks on Middle Eastern Countries

Threat report published 2025-03-11T16:42:12.802Z. Types: threat-report. A malicious campaign targeting residents of Middle East and North Africa has been discovered, active since September 2024. The attackers create fake news groups on social media and publish posts with

threat-report
CVSS
high Yesterday

📄 Camera off: Akira deploys ransomware via webcam

Threat report published 2025-03-11T14:20:07.740Z. Types: threat-report. Akira, a prominent ransomware group, accounted for 15% of incidents in 2024, showcasing novel evasion techniques. In a recent attack, Akira circumvented an Endpoint Detection and Response (EDR) tool b

threat-report
CVSS
high Yesterday

📄 Analysis of Lazarus Group's Attack Targeting Windows Web Servers

Threat report published 2025-03-11T14:20:42.819Z. Types: threat-report. The Lazarus group has been targeting Windows web servers, particularly in South Korea, installing webshells and C2 scripts to use compromised servers as proxies. The attacks involve multiple stages, i

threat-report
CVSS
high Yesterday

📄 Trump Cryptocurrency Delivers ConnectWise RAT

Threat report published 2025-03-11T17:34:55.389Z. Types: threat-report. An email campaign impersonating Binance is offering fake TRUMP coins to lure victims into downloading a malicious 'Binance Desktop' application, which actually installs ConnectWise RAT. The attackers

threat-report
CVSS

Weekly Digest

Get the week's top threats in 5 minutes

Every Monday: curated vulnerability analysis, insurance impact assessment, and actionable risk insights — delivered to your inbox.