Overview
Threat intelligence, unified.
HackerFeeds unifies four continuously ingested threat-intel sources — a ransomware tracker, CVE and vulnerability intelligence, web defacement records, and a data breach directory — alongside the CISA KEV catalog and a global threat map with per-country rollups. Analysts start here to scan the day's activity, then pivot into any feed to filter, track a group or country, and subscribe to what matters.
Ransomware Incidents
31,523
Defacements
1,538
CVEs (last 30d)
14,306
Last 24 Hours
29
Global threat map
Composite risk by country — hover for breakdown, click to drill in
Threat timeline
Daily activity across sources•1,169 events (14,552 incl. hidden) in last 30d•Click legend chip to toggle
Most active this week
Top actors by source — click to drill in
Stop chasing alerts. Route them.
Build watchlists by vendor, CVSS, ransomware group or country. Pipe matches to Slack, PagerDuty, Splunk, Sentinel, XSOAR — or pull raw via API & TAXII 2.1.
Custom feeds
Watchlists, dedupe, enrichment
Integrations
Slack, PagerDuty, SIEM
API + TAXII
JSON, STIX 2.1, raw archive
Live Activity
Latest events across ransomware, CVEs and defacements — interleaved by recency
- RANSOMWAREMesan USA hit by Global Secret GroupTWVzYW4gVVNBQEdsb2JhbCBTZWNyZXQgR3JvdXA=·by Global Secret Group·medium
- CVECVE-2026-88069: Pandora contains a path traversal vulnerability in its archive extraction worker. When processing a specially crafted ar…CVE-2026-88069·by NVD·unknown
- CVECVE-2026-88002: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.1, the messa…CVE-2026-88002·by NVD·medium
- CVECVE-2026-88001: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.5 until 0.11.1, server-si…CVE-2026-88001·by NVD·medium
- CVECVE-2026-88000: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.10.0 until 0.11.1, DELETE /…CVE-2026-88000·by NVD·medium
- CVECVE-2026-87999: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.11.1, POST /api/v1/retr…CVE-2026-87999·by NVD·high
- CVECVE-2026-87998: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.10.0 until 0.11.1, DELETE /…CVE-2026-87998·by NVD·high
- CVECVE-2026-87997: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.10.0 until 0.11.1, POST /ap…CVE-2026-87997·by NVD·medium
- CVECVE-2026-87996: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.1, SafePlayw…CVE-2026-87996·by NVD·high
- CVECVE-2026-87995: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.11 until 0.11.1, src/lib/…CVE-2026-87995·by NVD·high
- CVECVE-2026-87994: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.5 until 0.11.1, the chann…CVE-2026-87994·by NVD·medium
- CVECVE-2026-87922: A security flaw has been discovered in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e0…CVE-2026-87922·by NVD·high
- CVECVE-2026-87921: A vulnerability was identified in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f. A…CVE-2026-87921·by NVD·high
- CVECVE-2026-87017: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.7.0 until 0.11.1, the built…CVE-2026-87017·by NVD·medium
- CVECVE-2026-87016: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.41 until 0.11.1, get_user…CVE-2026-87016·by NVD·high
- CVECVE-2026-75308: yshopmall <=3.3 is vulnerable to Cross Site Scripting (XSS). The file upload endpoint /api/upload of the system lacks fi…CVE-2026-75308·by NVD·unknown
- CVECVE-2026-75307: zhitan-ems 1.0.0 is vulnerable to Cross Site Scripting (XSS) via SVG file upload through the /equipmentFile/upload endpo…CVE-2026-75307·by NVD·unknown
- CVECVE-2026-71807: In RuoYi-Cloud-Plus <= 2.6.2 in the ruoyi-workflow module, multiple core task APIs in FlwTaskController lack permission …CVE-2026-71807·by NVD·unknown
- CVECVE-2026-71805: An arbitrary file upload and path traversal vulnerability exists in LZ-litchi 1.0.0. Unauthenticated remote attackers ca…CVE-2026-71805·by NVD·unknown
- CVECVE-2026-15913: In versions prior to 7.10.2 a path traversal vulnerability in the /attachRemoteFiles endpoint of Fortra's GoAnywhere MFT…CVE-2026-15913·by NVD·high
- RANSOMWAREmo***al hit by AuditTeambW8qKiphbEBBdWRpdFRlYW0=·by AuditTeam·medium
- CVECVE-2026-87015: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.6.27 until 0.11.1, backend/…CVE-2026-87015·by NVD·medium
- RANSOMWAREAqualogus hit by PanzerQXF1YWxvZ3VzQFBhbnplcg==·by Panzer·medium
- RANSOMWAREgardensalive.com, bitsandpieces.com, iselinursery.local, weeksroses.org, esm.local hit by embargoZ2FyZGVuc2FsaXZlLmNvbSwgYml0c2FuZHBpZWNlcy5jb20sIGlzZWxpbnVyc2VyeS5sb2NhbCwgd2Vla3Nyb3Nlcy5vcmcsIGVzbS5sb2NhbEBlbWJhcmdv·by embargo·medium
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
CyberSecurity news
Live from BleepingComputer, Krebs, The Hacker News, Dark Reading, The Record, SecurityWeek & more.
- [Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AIDark Reading
- [Virtual Event] Building a Secure AI Strategy for the EnterpriseDark Reading
- YOntario court records accessed in cybersecurity breachHacker News·brief
- YUS airports to let some people without tickets pass through securityHacker News·brief
- YEU and Canada Plan Deal to Boost Trade, Security as US Ties FrayHacker News·brief
- CISA head says agency must change quickly to prevent the 'worst that could happen'The Record·brief
- Mythos Vulnerability Firehose Hits a Human BottleneckDark Reading·brief
- YWhat Is Messaging Layer Security (MLS)?Hacker News·brief
- YEx-Microsoft cyber security SME shares insights on Active Directory SecurityHacker News·brief
- US disrupts Xinbi Guarantee marketplace fueling the cyber scam economyThe Record·brief
- US Government Accuses Chinese AI Firms of Distilling Frontier ModelsDark Reading·brief
- U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in CryptoThe Hacker News·brief

