Threat Landscape
Real-time data from CISA and NIST demonstrates why continuous information security is not optional — it is a necessity.
Global threat activity
Real-time data from multiple open threat databases shows where cyber attacks originate and how they target European countries.
Threat source summary
Aggregated statistics from the six threat databases visualised on the map.
Threat sources – geographic spread
Top 5 source countries
Total indicator count aggregated across all sources.
1,674
Actively exploited vulnerabilities
21
New in the last 30 days
3,524
New CVEs in the last 7 days
14
Critical (CVSS 9.0+)
26
High (CVSS 7.0–8.9)
Vendors with active remediation deadlines
Ransomware share
352 / 1,674
Critical CVEs in the last 7 days
The five most severe new vulnerabilities with a CVSS score of 9.0 or higher.
16 Aug 2026
The Contact Form, Survey, Quiz & Popup Form Builder – ARForms plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.8.5 via deserialization of untrusted...
16 Aug 2026
Joomla Extension - phoca.cz - Unauthenticated SQL injection via attribute filter in Phoca Cart 5.0.0-6.1.6 - The a[] (attribute) and s[] (specification) GET array parameters on Phoca Cart's public...
16 Aug 2026
Lemonldap::NG::Portal versions from 2.0.0 before 2.16.9, from 2.17.0 before 2.21.5, from 2.22.0 before 2.23.3 for Perl allow authentication bypass via an OAuth2 state parameter stored as an SSO ses...
16 Aug 2026
Net::OAuth::Client versions before 0.32 for Perl allow the service provider to silently downgrade OAuth 1.0a to OAuth 1.0 in get_request_token. Passing a callback to the constructor selects OAuth ...
16 Aug 2026
SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api....
Latest exploited vulnerabilities
| CVE ID | Vendor | Product | Date added | Ransomware |
|---|---|---|---|---|
| CVE-2026-73570 | Synacor | Zimbra Collaboration Suite (ZCS) | 21 Aug 2026 | Unknown |
| CVE-2026-72530 | TrueConf | Server | 20 Aug 2026 | Unknown |
| CVE-2026-72529 | TrueConf | Server | 20 Aug 2026 | Unknown |
| CVE-2026-64849 | MLflow | MLflow | 19 Aug 2026 | Unknown |
| CVE-2026-33824 | Microsoft | Internet Key Exchange (IKE) Service Extensions | 18 Aug 2026 | Unknown |
| CVE-2026-59310 | Broadcom | VMware vCenter | 18 Aug 2026 | Unknown |
| CVE-2026-55040 | Microsoft | SharePoint | 18 Aug 2026 | Unknown |
| CVE-2026-65400 | Apple | macOS | 18 Aug 2026 | Unknown |
| CVE-2025-62593 | Ray-Project | Ray | 17 Aug 2026 | Unknown |
| CVE-2026-20349 | Cisco | Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) | 11 Aug 2026 | Unknown |
Synacor
Zimbra Collaboration Suite (ZCS)
21 Aug 2026
TrueConf
Server
20 Aug 2026
TrueConf
Server
20 Aug 2026
MLflow
MLflow
19 Aug 2026
Microsoft
Internet Key Exchange (IKE) Service Extensions
18 Aug 2026
Broadcom
VMware vCenter
18 Aug 2026
Microsoft
SharePoint
18 Aug 2026
Apple
macOS
18 Aug 2026
Ray-Project
Ray
17 Aug 2026
Cisco
Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD)
11 Aug 2026
Why it matters
The threat landscape changes daily
The data above comes directly from the US agencies CISA and NIST. It clearly shows that new threats and vulnerabilities are discovered continuously — and that attackers are actively exploiting them.
New vulnerabilities every day
Hundreds of new CVEs are published every week. Without systematic monitoring, you risk missing critical updates.
Ransomware-linked threats are growing
A significant share of actively exploited vulnerabilities have known links to ransomware campaigns.
Regulatory requirements are tightening
NIS2 and the Cybersecurity Act require organisations to work continuously on risk management and incident preparedness.
Ready to strengthen your cybersecurity?
Book a free meeting and we will discuss how we can help your organisation meet the new requirements.
Book a meeting