ervik.as
Free · Live · No Signup Required

Real-Time Cyber
Threat Intelligence

The same live CVE, zero-day, and ransomware data enterprise platforms charge for — free, with no account and no paywall. Updated continuously, not on a delay.

CVEs, zero-days, ransomware campaigns, threat actors, OT/ICS advisories, and global attack activity from a single platform.

Subscribe via RSS — get every update the moment it's published
Global Cyber Threat Intelligence
Live intelligence from
0+
CVEs
0+
Threat Actors
0
Active Zero Days
0+
Ransomware Victims
Updated every 15 minutes · running totals tracked since this dashboard went live
[The Hacker News]Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data[Dark Reading]Threat Actor Generates 1M Personalized Fraud Emails in 3 Days[Krebs on Security]Microsoft Plugs Nearly 1,000 Security Holes[The Hacker News]CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV[Dark Reading]CISA Calls for More Guidance, Less Spin, as Cyber Outages Escalate[Krebs on Security]FBI Probes Service Selling 153M+ Drivers Licenses[The Hacker News]When the Whole Company Adopts AI: What It Does to Your SOC[Dark Reading]Why AI Is So Good at Scamming Humans[Krebs on Security]Two Alleged ‘TeamPCP’ Hackers Arrested in Australia[The Hacker News]OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers[Dark Reading]AI Governance Can't Wait[Krebs on Security]Who’s Tracking You? Use This New Service to Find Out[The Hacker News]GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure[Dark Reading]Papercut AI Swarm Attack Heralds Changes for Cyber Kill Chain[Krebs on Security]Microsoft Plugs Nearly 400 Security Holes[The Hacker News]Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks[Dark Reading]Indonesia Hit by Android Banking App-Cloning Campaign[Krebs on Security]Canadian Man Pleads Guilty in Snowflake Extortions[The Hacker News]Claude Used to Automate Exploitation and Data Theft Across Multiple Victims[Dark Reading]Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data[Krebs on Security]Read This Before You Buy That TV Streaming Stick[The Hacker News]Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection[Dark Reading]Nightmare-Eclipse Strikes Again With 'ShieldCrash' Windows Exploit[Krebs on Security]LG to Ban Residential Proxies from Smart TV Apps[The Hacker News]Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data[Dark Reading]Threat Actor Generates 1M Personalized Fraud Emails in 3 Days[Krebs on Security]Microsoft Plugs Nearly 1,000 Security Holes[The Hacker News]CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV[Dark Reading]CISA Calls for More Guidance, Less Spin, as Cyber Outages Escalate[Krebs on Security]FBI Probes Service Selling 153M+ Drivers Licenses[The Hacker News]When the Whole Company Adopts AI: What It Does to Your SOC[Dark Reading]Why AI Is So Good at Scamming Humans[Krebs on Security]Two Alleged ‘TeamPCP’ Hackers Arrested in Australia[The Hacker News]OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers[Dark Reading]AI Governance Can't Wait[Krebs on Security]Who’s Tracking You? Use This New Service to Find Out[The Hacker News]GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure[Dark Reading]Papercut AI Swarm Attack Heralds Changes for Cyber Kill Chain[Krebs on Security]Microsoft Plugs Nearly 400 Security Holes[The Hacker News]Anthropic Says Seven China-Based AI Labs Ran Industrial-Scale Claude Distillation Attacks[Dark Reading]Indonesia Hit by Android Banking App-Cloning Campaign[Krebs on Security]Canadian Man Pleads Guilty in Snowflake Extortions[The Hacker News]Claude Used to Automate Exploitation and Data Theft Across Multiple Victims[Dark Reading]Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data[Krebs on Security]Read This Before You Buy That TV Streaming Stick[The Hacker News]Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection[Dark Reading]Nightmare-Eclipse Strikes Again With 'ShieldCrash' Windows Exploit[Krebs on Security]LG to Ban Residential Proxies from Smart TV Apps

Global Threat Map

Live attack telemetry from the SANS ISC DShield sensor network.

Open full map

Latest CVEs

Newly disclosed vulnerabilities ranked by exploitability.

Full database
CVE-2026-90615medium · 4.3

A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file…

A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /subject1.php. Such manipulation of the argument subject leads to cross site scripting. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.

· · 9/14/2026
CVE-2026-90614medium · 6.3

A weakness has been identified in FedML-AI FedML up to 0.9.6. Affected by this issue is the function S3Storage.read_model of the file fedml/…

A weakness has been identified in FedML-AI FedML up to 0.9.6. Affected by this issue is the function S3Storage.read_model of the file fedml/core/distributed/communication/s3/remote_storage.py of the component MQTT+S3 Communication Backend. This manipulation of the argument s3_key_str causes deserialization. Remote exploitation of the attack is possible. The project was informed of the problem early through an issue report but has not responded yet.

· · 9/14/2026
CVE-2026-90613low · 3.3

A security flaw has been discovered in GPAC up to f1219cde. Affected by this vulnerability is the function stbl_GetSampleInfos of the file i…

A security flaw has been discovered in GPAC up to f1219cde. Affected by this vulnerability is the function stbl_GetSampleInfos of the file isomedia/stbl_read.c of the component MP4Box. The manipulation results in reachable assertion. The attack must be initiated from a local position. The exploit has been released to the public and may be used for attacks. Upgrading to version abi-16.23 addresses this issue. The patch is identified as 49dee5cad329cfed310c1682703df7daa47df31a. It is advisable to upgrade the affected component.

· · 9/14/2026
CVE-2026-90612low · 3.3

A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the file scene_manager/scene_dump…

A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the file scene_manager/scene_dump.c of the component MP4Box. The manipulation leads to reachable assertion. The attack must be carried out locally. The exploit is publicly available and might be used. Upgrading to version abi-16.23 is able to address this issue. The identifier of the patch is afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is advised.

· · 9/14/2026

OT & ICS Security

Industrial control system advisories from CISA's official CSAF repository.

All advisories

Active Zero-Days

Vulnerabilities being weaponized before patches are available.

All zero-days
CVE-2026-42016actively exploited

JFrog Artifactory Incorrect Authorization Vulnerability

JFrog Artifactory contains an incorrect authorization vulnerability that allows leads to privilege escalation attack due to a validation check of the token signature/issuer and not the token’s scope.

JFrog Artifactory
CVE-2026-42018actively exploited

JFrog Artifactory Improper Authentication Vulnerability

JFrog Artifactory contains an improper authentication vulnerability that could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.

JFrog Artifactory
CVE-2026-84869actively exploited

ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability

ConnectWise ScreenConnect contains both an improper privilege management and missing authorization vulnerability that may allow an attacker to file transfer and execution through an active remote sessions without authorization or host confirmation.

ConnectWise ScreenConnect

Latest Ransomware Victims

Fresh victim disclosures from active ransomware campaigns.

All victims

Threat Intel Briefings

Active campaigns from tracked actors over the last 72 hours.

All briefings
threatfox-1917070Miraipayload — c277e70f886e3172f2e8b8bd6a83313552cceb29f949cc4c2afa1a0e19ac2ce9Opportunistic / untargetedGlobal9/14/2026
threatfox-1917068Miraipayload — d67aa0999565f6a528f5dc624ff18feeb7c45525ebcf0ee07b491fb2e7586014Opportunistic / untargetedGlobal9/14/2026
threatfox-1917067Miraipayload — 03e2f013429e8d6e5a7ec62d6a7f421c5cd5cc770b051fdaccc11f453e58a7aeOpportunistic / untargetedGlobal9/14/2026
threatfox-1917066Miraipayload — abacc0fbfcb50f16fbe843e0b7dcd2708c07d0b0d5da16e99dcf22e25f3ca758Opportunistic / untargetedGlobal9/14/2026
threatfox-1917064Miraipayload — e0a2c9631991fd3b5a5b4fddc8cb9075c1f3d9823c6975fc4a5de9c3ec3cafbfOpportunistic / untargetedGlobal9/14/2026
Advertisement