24/7 Global Threat Monitoring Threat Feed Report an Incident
0
CVEs Tracked
0
Breaches This Year
0
Advisories Issued
0
Avg. CVSS Severity

Latest Threat Analysis

In-depth breakdowns of the incidents that defined modern cyber security.

Vulnerability Critical

Log4Shell: The Internet's Worst Day

CVE-2021-44228 10 Dec 2021

A trivially exploitable RCE in Apache Log4j put millions of Java applications at risk overnight — exploited within hours of disclosure.

Read analysis
Supply Chain Critical

SolarWinds SUNBURST Supply-Chain Attack

13 Dec 2020

A nation-state actor trojanised SolarWinds Orion updates, silently breaching ~18,000 organisations including US federal agencies.

Read analysis
Ransomware Critical

WannaCry: Ransomware Goes Global

MS17-010 12 May 2017

A self-spreading worm using the leaked EternalBlue exploit hit 200,000+ machines across 150 countries in days, crippling the NHS.

Read analysis
Vulnerability Critical

Heartbleed: Bleeding Memory from OpenSSL

CVE-2014-0160 7 Apr 2014

A missing bounds check in OpenSSL's heartbeat extension let attackers read 64KB of server memory at a time — keys, passwords and all.

Read analysis
Data Breach Critical

Equifax: 147 Million Records Exposed

CVE-2017-5638 Sep 2017

An unpatched Apache Struts flaw led to one of history's most damaging breaches of personal and financial data on 147M people.

Read analysis
Data Breach Critical

MOVEit: Cl0p's Mass-Exploitation Spree

CVE-2023-34362 May 2023

A zero-day SQL injection in MOVEit Transfer let the Cl0p gang steal data from 2,700+ organisations and 90M+ individuals.

Read analysis
Ransomware High

Colonial Pipeline: Fuel for a Crisis

7 May 2021

A single compromised VPN password let DarkSide ransomware halt the largest US fuel pipeline, triggering panic-buying across the East Coast.

Read analysis
Vulnerability Critical

ProxyLogon: Exchange Under Siege

CVE-2021-26855 2 Mar 2021

A chain of zero-days in Microsoft Exchange let attackers take over mail servers worldwide, with tens of thousands compromised in a week.

Read analysis
Supply Chain Critical

XZ Utils: The Backdoor Nearly Everyone Shipped

CVE-2024-3094 29 Mar 2024

A patient multi-year social-engineering operation planted a stealthy SSH backdoor in a core Linux compression library — caught by luck.

Read analysis

No threats match that filter or search.

The Daily Threat Brief

Get the morning's most important CVEs, breaches and advisories in your inbox — concise, analyst-curated, and free. Join 80,000+ defenders who start their day with ThreatWatch.

About ThreatWatch

Independent threat intelligence for defenders, analysts and the security-curious.

ThreatWatch tracks the vulnerabilities, breaches and adversary campaigns that matter, translating raw advisories into clear, actionable analysis. Our coverage spans critical CVEs, large-scale data breaches, ransomware operations and software supply-chain attacks — so security teams can prioritise what to patch, hunt and defend first.