Skip to content
Product
Use it
Threat intelligence API
Free key, 70+ endpoints, OpenAPI. The product.
Get started
Pick your stack, make your first call.
Live feed
The console: incidents, filters, entities, search.
Recipes
Runnable examples for the free key.
Free feeds
RSS, ransomware feed, IOC blocklist, MISP — no key.
CLI & agents
tc from a terminal; agent keys with scoped budgets.
The data
Incident records
900 articles a day become ~70 scored incidents.
Dark web
First-party leak-site collection: victims, groups, markets.
Validated IOCs
Indicators with a false-positive gate; STIX, MISP, CSV.
Vulnerabilities
CVEs with EPSS, KEV and exploit status.
Entity graph
Actors, malware, CVEs, companies — pivotable.
For teams
For service providers
Per-client feeds, alerts and branded digests.
Use cases
How teams and builders use the corpus.
About ThreatCluster
What it is and how it is built.
Pricing
Docs
Reference
OpenAPI (Swagger)
Every endpoint, parameter and response model.
ReDoc
The same reference, long-form.
Examples on GitHub
curl, Python and Node quickstarts; daily spec snapshot.
Guides
Quickstart & plans
Key, scopes, budgets, tiers.
Integrations
Splunk, Sentinel, Elastic, agents and terminals, step by step
Export formats
STIX 2.1, MISP, CSV, text.
CLI setup
Install, log in, wire an agent.
No results found
Sign in
Get a free key
No results found
Product
Threat intelligence API
Get started
Live feed
Recipes
Free feeds
CLI & agents
The data
Incident records
Dark web
Validated IOCs
Vulnerabilities
Entity graph
For teams
For service providers
Use cases
About ThreatCluster
Docs
OpenAPI (Swagger)
ReDoc
Examples on GitHub
Quickstart & plans
Integrations
Export formats
CLI setup
Pricing
Contact
Get a free key
Sign in
Back
CWE-122 - Heap-based Buffer Overflow
CWE Weakness
Threat entity extracted from intelligence sources
Sep 25: 1 mention
Sep 26: 1 mention
Sep 27: 1 mention
Sep 28: 2 mentions
Sep 29: 7 mentions
Sep 30: 1 mention
Oct 1: 2 mentions
Sep 25
Sep 28
Oct 1
Entities
›
cwe
›
CWE-122 - Heap-based Buffer Overflow
Frequency
727
occurrences
First Seen
April 17, 2026
Last Seen
October 1, 2026
API
Overview
Recent Events
Profile
Profile
MITRE ATT&CK
1 / 2
Tools
Nginx
Visual Studio
Openssl
Google Chrome
PivotC2
Claude
Docker
Ffmpeg
CVEs
CVE-2026-85880
CVE-2026-81963
CVE-2026-42945
CVE-2026-85103
CVE-2026-69730
CVE-2026-26986
CVE-2026-69525
CVE-2026-27951
Campaigns
HEIF Heist
-
REC
Recon
No techniques detected
-
RD
Resource Dev
No techniques detected
2
IA
Initial Access
T1190 - Exploit Public-Facing Application
T1566.001 - Spearphishing Attachment
2
EX
Execution
T1203 - Exploitation for Client Execution
T1059 - Command and Scripting Interpreter
-
PE
Persistence
No techniques detected
2
PE
Priv Esc
T1068 - Exploitation for Privilege Escalation
T1055 - Process Injection
-
DE
Defense Evasion
No techniques detected
-
CA
Cred Access
No techniques detected
-
DI
Discovery
No techniques detected
1
LM
Lateral Mov
T1021 - Remote Services
-
CO
Collection
No techniques detected
1
C2
C2
T1071 - Application Layer Protocol
-
EX
Exfil
No techniques detected
-
IM
Impact
No techniques detected
8
techniques detected across
5
tactics
Related Clusters (50)
Critical Zero-Day Vulnerability in F5 BIG-IP APM Exploited for Remote Code Execution
Sep 22
·
25 sources
82
BlueMoon Exploit Kit Targeting Chrome and Windows by Multiple State Actors
Sep 9
·
24 sources
81
SonicWall SMA1000 Faces Critical Zero-Day Exploitation
Sep 2
·
123 sources
81
F5 Issues Critical Patches for NGINX Vulnerabilities Allowing Remote Code Execution
Jun 18
·
16 sources
80
Critical Buffer Overflow Vulnerability in Silex Devices (CVE-2026-32956)
Apr 20
·
2 sources
80
Critical NGINX Vulnerability CVE-2026-42945 Exposes Millions to RCE and DoS Attacks
May 13
·
38 sources
79
CISA Alerts on Critical Flaws in SimpleHelp, Samsung MagicINFO, and D-Link Devices
Apr 26
·
3 sources
78
Operation Double Barrel: State-Sponsored Exploitation of Korean Financial Software
Jul 30
·
4 sources
76
Critical Windows DNS RCE Vulnerability CVE-2026-69730 Disclosed
Sep 11
·
1 sources
75
Multiple CVEs Exploited in Cybersecurity Threats: September 2026
Sep 8
·
57 sources
75
Multiple CVEs Disclosed on September 8, 2026, Affecting Microsoft Products
Sep 8
·
927 sources
74
July 2026 Security Update: Record CVEs and Critical Vulnerabilities
Jul 14
·
2 sources
74
Critical Heap Overflow Vulnerability in 389-ds Affects SUSE and openSUSE Systems
May 7
·
2 sources
74
Critical NASM Vulnerabilities Affecting Ubuntu 24.04 LTS
May 7
·
3 sources
74
Critical NGINX Vulnerability CVE-2026-42533 Poses RCE and DoS Risks
Jul 16
·
27 sources
74
Critical OpenVPN Vulnerabilities Affecting Ubuntu Systems
Jul 14
·
2 sources
74
Critical Buffer Overflow Vulnerabilities in glibc Affect Fedora Systems
May 3
·
2 sources
74
Critical Vulnerabilities in Rocky Linux Affecting Multiple Components
Jun 19
·
858 sources
74
Critical Vulnerabilities in dnsmasq Expose Systems to DoS and Code Execution Risks
May 13
·
29 sources
74
Citrix NetScaler Vulnerabilities Enable DoS and Memory Disclosure Attacks
Jul 1
·
47 sources
74
Critical Denial of Service Vulnerabilities in openSUSE freerdp
Apr 27
·
8 sources
74
Oracle Linux Kernel ptrace Vulnerability CVE-2026-46333 Disclosed
May 22
·
363 sources
74
Critical libpng Vulnerabilities Affecting Multiple Ubuntu Releases
May 7
·
2 sources
74
Critical Security Flaws in Chromium Affecting Fedora Users
2d ago
·
2 sources
73
Fortinet Vulnerability CVE-2025-25249 Exploited by PivotC2 RAT
Sep 9
·
8 sources
73
CISA Adds Critical Vulnerabilities to KEV Catalog Amid Active Exploitation
Sep 10
·
7 sources
73
Critical Oracle Linux Kernel Vulnerabilities Expose Admin Control Risks
Sep 14
·
4 sources
73
Microsoft September 2026 Patch Tuesday: Record 974 Vulnerabilities Addressed
Sep 8
·
61 sources
73
Critical xrdp Vulnerabilities in Fedora 44 and 42 Require Immediate Attention
Apr 28
·
2 sources
73
Critical Vulnerabilities in 7-Zip Enable Code Execution Attacks
May 26
·
5 sources
73
Critical RCE Vulnerabilities in Fedora libXfont2 Affecting Multiple CVEs
Jul 12
·
2 sources
73
Critical RCE Vulnerability in Windows HTTP.sys Patched
Jul 10
·
4 sources
73
Oracle Linux 9 Vulnerabilities Lead to Critical Security Advisories
Jun 25
·
4 sources
73
Multiple Command Injection Vulnerabilities Discovered in Vim for SUSE Linux
Jun 2
·
5 sources
73
Critical Vulnerabilities in xorg-server Affecting Slackware and SUSE Systems
Jul 8
·
5 sources
72
Critical Buffer Overflow Vulnerability in Fedora 43 ObjFW and MinGW-ObjFW
Jun 1
·
2 sources
72
Critical PostgreSQL Vulnerabilities Disclosed Affecting Multiple Versions
Aug 20
·
2 sources
72
Critical Vulnerabilities in ffmpeg Affecting openSUSE and SUSE Systems
Aug 8
·
4 sources
72
Critical Vulnerabilities in Vim Affect Multiple Linux Distributions
Aug 22
·
10 sources
72
Critical Vulnerabilities in HPE Aruba EdgeConnect SD-WAN Exploitable
Sep 16
·
3 sources
72
Debian LTS p7zip and 7zip Vulnerabilities Lead to Remote Code Execution Risks
Aug 5
·
3 sources
72
Debian Security Updates Address Critical and Moderate Vulnerabilities
Jun 21
·
3 sources
72
SUSE libvirt Vulnerabilities Prompt Urgent Security Updates
Sep 4
·
4 sources
72
Critical Vulnerabilities in openSUSE NGINX Require Immediate Attention
Jul 28
·
3 sources
72
Critical RDP Vulnerabilities Enable Remote Code Execution
2d ago
·
0 sources
72
Critical PostgreSQL Vulnerability Allows Remote Code Execution
Aug 24
·
1 sources
72
Critical Heap Buffer Overflow Vulnerabilities in Fedora Perl Packages
Aug 5
·
5 sources
72
SUSE Addresses Multiple Critical Vulnerabilities in Webkit2gtk3 and Libheif
Jun 24
·
5 sources
72
Xen Hypervisor Patches 12 Critical Vulnerabilities, Immediate Action Required
Jul 30
·
2 sources
72
Critical Security Flaws in Fedora libseccomp Affecting Multiple Versions
Jul 21
·
2 sources
72
Prev
1 / 10
Next
Related Articles (50)
TeamViewer warns in its security advisory
www.teamviewer.com
·
8h ago
TeamViewer code smuggling vulnerability narrowly misses critical rating
Heise.De
·
9h ago
TeamViewer urges users to patch severe flaws “as soon as possible”
Bleepingcomputer
·
1d ago
Tv 2026 1010
www.teamviewer.com
·
1d ago
CVE Alert: CVE-2026-102559 – Red Hat
Redpacketsecurity
·
1d ago
CVE Alert: CVE-2026-102560 – Red Hat
Redpacketsecurity
·
1d ago
USB redirection heap disclosure
github.com
·
2d ago
Routing token heap overflow
github.com
·
2d ago
Fedora 43 Chromium Important Security Flaws 2026
Linuxsecurity
·
2d ago
SUSE ImageMagick Important Buffer Overflow and Memory Leak Fix 2026-4376
Linuxsecurity
·
2d ago
GHSA Jr92 2v97 Wgvc
github.com
·
3d ago
CVE Alert: CVE-2026-96280 – Red Hat
Redpacketsecurity
·
3d ago
Fedora 44 Chromium Vital Authorization Flaws and Buffer Overflow Advisory
Linuxsecurity
·
4d ago
The August 2026 Security Update Review
www.zerodayinitiative.com
·
5d ago
Ridge Security warns of high
Industrialcyber.Co
·
6d ago
NCSA - Cybersecurity Advisories - الوكالة الوطنية للأمن السيبراني
Ncsa.Qa
·
Sep 23
CVE-2026-94127: Critical Unauthenticated RCE in F5 BIG-IP APM
Rapid7
·
Sep 23
F5 Patches Critical BIG-IP APM Zero
Thehackernews
·
Sep 23
F5 Fixes Actively Exploited BIG-IP APM Vulnerability
Fieldeffect
·
Sep 23
CVE Alert: CVE-2026-75649 – Adobe
Redpacketsecurity
·
Sep 23
Advisory: Critical vulnerability in F5 BIG-IP APM (CVE-2026-94127)
Mnemonic
·
Sep 22
The OAuth Profile Is the Door: F5 BIG-IP APM's Heap Overflow Turns a Network Security ...
Tech.Yahoo
·
Sep 22
The OAuth Profile Is the Door: F5 BIG-IP APM's Heap Overflow Turns a Network Security ...
Forkast.News
·
Sep 22
CVE-2026-94127
Cve
·
Sep 22
Claude-Assisted Image Exploit Reached OpenAI Repositories
Quasa
·
Sep 22
Malicious HEIF Upload Reached OpenAI's Internal GitHub, Researchers Reveal
Esecurityplanet
·
Sep 21
HEIF Heist: How a Malicious Image Can Turn Into Remote Code Execution
Penligent.Ai
·
Sep 21
HEIF Heist Image Flaws Let Attackers Gain RCE Across Meta, Slack and GitHub Enterprise
Gbhackers
·
Sep 21
Android September Security Update: Which Phones Need Patching Now?
Esecurityplanet
·
Sep 18
Claude couldn't hack OpenAI. Then Anthropic shipped Opus 5.
Thenewstack
·
Sep 18
The Master Key Turns Against Itself: Check Point's Fifth Critical Management
Forkast.News
·
Sep 18
Hacktron AI researchers use Claude Opus 5 to test the OpenAI system in 72 hours
Kucoin
·
Sep 18
OpenAI employee accounts breached with help from Anthropic's Claude
Tech.Yahoo
·
Sep 18
Claude helped hackers to break into OpenAI accounts: ChatGPT affected
Cybernews
·
Sep 18
Hackers used Claude to break into OpenAI's internal code repo
Tech.Yahoo
·
Sep 18
Three Indian researchers used Claude to hack into OpenAI in under 72 hours
Thetechportal
·
Sep 18
Researchers Used Anthropic's Claude to Breach OpenAI's Internal Systems
Technadu
·
Sep 18
New Check Point flaw lets hackers execute code with root privileges
Bleepingcomputer
·
Sep 18
Researchers hack OpenAI with Claude's help
Techzine.Eu
·
Sep 18
Hacking OpenAI
News.Ycombinator
·
Sep 18
Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root
Thehackernews
·
Sep 17
Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone
Thehackernews
·
Sep 17
3860
github.com
·
Sep 17
CVE Alert: CVE-2026-92399 – n/a
Redpacketsecurity
·
Sep 17
HPE Networking EdgeConnect SD-WAN Critical Vulnerabilities
Secure-Iss
·
Sep 16
Mageia AOM Critical Heap Overflow and Remote Code Execution 2026
Linuxsecurity
·
Sep 16
Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability
Sec.Cloudapps.Cisco
·
Sep 16
USN-8772-1: AOM vulnerabilities
Ubuntu
·
Sep 16
CVE-2026
Api.Msrc.Microsoft
·
Sep 15
CVE-2026
Api.Msrc.Microsoft
·
Sep 15
Prev
1 / 10
Next
Related Entities
Zero-day Exploit
DDoS
Denial of Service
Malware
Data Breach
Sql Injection
Privilege Escalation
Phishing
Remote Code Execution
Ransomware
HEIF Heist
Ubuntu