βŒ‚
ThreatFeed Logo

ThreatFeed Dashboard

by Jerry Craft, ALM-MIS, CISSP, GSEC, GPEN, GCFE

🌍 Timezone not configured. You're using UTC. Set your timezone to see "today's" articles in your local time.
CVE Search Breaches Trends Industries Vendors MITRE ATT&CK MITRE ATLAS Threat Actors Attack-Tools Alerts Investigations Options Login
🎯 Executive Threat Briefings

Daily Digest

24-hour intelligence digest 50 articles β€’ 1 CVEs β€’ 10 breaches

Weekly Digest

2026-09-28 to 2026-10-04 270 articles β€’ 31 CVEs β€’ 43 breaches

Monthly Digest

September 2026 1472 articles β€’ 506 CVEs β€’ 163 breaches

Quarterly Digest

Q3 2026 3 months analyzed

Annual Digest

2025 Pending
πŸ“ˆ Where to Concentrate Your Security Effort

Focus Areas

1 Patch vulnerabilities
2 Identity & access control
3 Software supply chain
4 Detection & monitoring
5 AI system controls

Persistent Trends

1 Supply chain compromise
2 Nation-state activity
3 Ransomware
4 Zero-day exploitation
5 Extortion & data leak

Sectors Targeted

1 Financial services
2 Government
3 Healthcare
4 Cryptocurrency
5 Critical infrastructure

Vendors to Watch

1 Microsoft
2 Cisco
3 Linux kernel
4 Oracle
5 WordPress
Ranked by how many of the last 26 weekly briefings raised each item. Bars are scaled within their column.
πŸ•΅οΈ Attacker Trends

πŸ“Š Breach Metrics

Last 365 days: 2056 breaches (5.6/day), 28.1B records + 4.83PB data exposed, $99.1B in total loss costs (avg $376.6M across 263 breaches reporting costs)

πŸ€– MITRE ATLAS Metrics

Attacks on AI systems,
and attacks carried out with AI
Top 10:
AML.T0051 LLM Prompt Injection (277)
AML.T0043 Craft Adversarial Data (17)
AML.T0049 Exploit Public-Facing Application (16)
AML.T0034 Cost Harvesting (14)
AML.T0046 Spamming AI System with Chaff Data (14)
AML.T0048 External Harms (14)
AML.T0036 Data from Information Repositories (12)
AML.T0037 Data from Local System (12)
AML.T0017 Develop Capabilities (11)
AML.T0024 Exfiltration via AI Inference API (11)

βš”οΈ MITRE ATT&CK Metrics

587 unique techniques observed
πŸ”₯ = Observed in Nth RRA
πŸ₯· = Observed in Nth Pentesting
Top 10:
T1566 Phishing (1722) πŸ₯·
T1059 Command and Scripting Interpreter (996) πŸ”₯ πŸ₯·
T1078 Valid Accounts (943) πŸ”₯ πŸ₯·
T1190 Exploit Public-Facing Application (824) πŸ₯·
T1566.002 Spearphishing Link (394) πŸ₯·
T1071 Application Layer Protocol (387)
T1068 Exploitation for Privilege Escalation (370) πŸ₯·
T1203 Exploitation for Client Execution (303)
T1071.001 Web Protocols (278)
T1082 System Information Discovery (254) πŸ₯·

πŸ› οΈ Attacker Tools

2764 unique tools tracked: 2290 malware families, 132 attack frameworks
🌍 Top Nation-State Activity (90 Days) View Actors
▲ Trending Up ▼ Cooling Off ■ Stable
πŸ€– AI Investigation Types View Investigations
πŸ” Recent AI Investigations View All
HIGH A critical arbitrary file access vulnerability in 8 Atlassian Data Center products (CVE-2026-21589) has been disclosed, rated CVSS 9.3 by Atlassian
2026-10-06
HIGH The UK fashion retailer ASOS confirmed a data breach after hackers sent unauthorized 'HACKED' push notifications to customers
2026-10-06
HIGH ShinyHunters, a digital extortion group, has executed a multi-vector campaign targeting the U.S
2026-10-06
HIGH The City of Vicksburg, Mississippi, fell victim to a disruptive ransomware attack on October 2, 2026, forcing a system shutdown that impacted utility payments while emergency services continued
2026-10-06
HIGH ASOS, a major online fashion retailer, experienced an incident where customers received push notifications via the official app claiming hackers had compromised their Snowflake data environment and threatened to leak data unless contacted
2026-10-06
πŸ”Ž Article Filters
Clear

Showing 1 articles.

Articles Today

SecurityWeek (1)
SecurityWeek
Published: 2026-10-07T01:32:58+00:00 | Fetched: 2026-10-07T02:00:15+00:00
The Arizona Supreme Court said the information was copied for people dating back as far as 30 years. The post Personal Information for Over 1 Million People Stolen in a Cyberattack on Arizona’s Court System appeared first on SecurityWeek.