Skip to content
Product
Use it
Threat intelligence API
Free key, 70+ endpoints, OpenAPI. The product.
Get started
Pick your stack, make your first call.
Live feed
The console: incidents, filters, entities, search.
Recipes
Runnable examples for the free key.
Free feeds
RSS, ransomware feed, IOC blocklist, MISP — no key.
CLI & agents
tc from a terminal; agent keys with scoped budgets.
The data
Incident records
900 articles a day become ~70 scored incidents.
Dark web
First-party leak-site collection: victims, groups, markets.
Validated IOCs
Indicators with a false-positive gate; STIX, MISP, CSV.
Vulnerabilities
CVEs with EPSS, KEV and exploit status.
Entity graph
Actors, malware, CVEs, companies — pivotable.
For teams
For service providers
Per-client feeds, alerts and branded digests.
Use cases
How teams and builders use the corpus.
About ThreatCluster
What it is and how it is built.
Pricing
Docs
Reference
OpenAPI (Swagger)
Every endpoint, parameter and response model.
ReDoc
The same reference, long-form.
Examples on GitHub
curl, Python and Node quickstarts; daily spec snapshot.
Guides
Quickstart & plans
Key, scopes, budgets, tiers.
Integrations
Splunk, Sentinel, Elastic, agents and terminals, step by step
Export formats
STIX 2.1, MISP, CSV, text.
CLI setup
Install, log in, wire an agent.
No results found
Sign in
Get a free key
No results found
Product
Threat intelligence API
Get started
Live feed
Recipes
Free feeds
CLI & agents
The data
Incident records
Dark web
Validated IOCs
Vulnerabilities
Entity graph
For teams
For service providers
Use cases
About ThreatCluster
Docs
OpenAPI (Swagger)
ReDoc
Examples on GitHub
Quickstart & plans
Integrations
Export formats
CLI setup
Pricing
Contact
Get a free key
Sign in
Back
Cwe-843 - Type Confusion
CWE Weakness
Threat entity extracted from intelligence sources
Sep 6: 0 mentions
Sep 7: 2 mentions
Sep 8: 15 mentions
Sep 9: 3 mentions
Sep 10: 5 mentions
Sep 11: 0 mentions
Sep 12: 0 mentions
Sep 6
Sep 9
Sep 12
Entities
›
cwe
›
Cwe-843 - Type Confusion
Frequency
82
occurrences
First Seen
May 12, 2026
Last Seen
September 10, 2026
API
Overview
Recent Events
Profile
Profile
MITRE ATT&CK
1 / 2
Threat Actors
Ta412
Violet Typhoon
TIDE Castle
JungleBamboo
APT31
Malware
GemStone
ShadowPad
Tools
Google Chrome
BlueMoon
Chrome
CVEs
CVE-2026-85046
CVE-2026-11645
CVE-2026-2441
CVE-2026-5281
CVE-2026-3910
CVE-2026-3909
CVE-2026-11774
CVE-2026-11786
Regions
Singapore
Indonesia
China
Sectors
Financial
Manufacturing
Government
-
REC
Recon
No techniques detected
-
RD
Resource Dev
No techniques detected
1
IA
Initial Access
T1566.002 - Spearphishing Link
2
EX
Execution
T1203 - Exploitation for Client Execution
T1053 - Scheduled Task/Job
1
PE
Persistence
T1574 - Hijack Execution Flow
2
PE
Priv Esc
T1068 - Exploitation for Privilege Escalation
T1055 - Process Injection
-
DE
Defense Evasion
No techniques detected
-
CA
Cred Access
No techniques detected
-
DI
Discovery
No techniques detected
-
LM
Lateral Mov
No techniques detected
-
CO
Collection
No techniques detected
1
C2
C2
T1071 - Application Layer Protocol
-
EX
Exfil
No techniques detected
-
IM
Impact
No techniques detected
8
techniques detected across
5
tactics
Related Clusters (28)
BlueMoon Exploit Kit Targeting Chrome and Windows by Multiple State Actors
2d ago
·
28 sources
81
Critical Chrome Zero-Day CVE-2026-85046 Exploited in the Wild
Sep 4
·
59 sources
81
Multiple CVEs Disclosed on September 8, 2026, Affecting Microsoft Products
3d ago
·
927 sources
74
Critical Type Confusion Vulnerability Discovered in isolated-vm Library
Aug 20
·
3 sources
74
Critical Vulnerabilities in libxml2 Affecting Multiple Ubuntu Releases
Jun 24
·
2 sources
73
Critical Vulnerabilities in Fedora Chromium Browser Affecting Multiple Versions
4d ago
·
6 sources
73
Critical Use After Free Vulnerabilities in Fedora Chromium Update
Jun 14
·
2 sources
73
Microsoft Issues Critical Security Patches for August 2026
Aug 12
·
2 sources
73
Critical .NET Deserialization Vulnerability in ibaPDA and ibaDatCoordinator
Jun 17
·
3 sources
73
Critical Security Flaws in Vaultwarden Affecting Fedora 43 and 44
Jun 12
·
4 sources
73
Critical Vulnerabilities in PostgreSQL Affect Multiple Versions
Sep 3
·
7 sources
72
Critical PostgreSQL Vulnerabilities Disclosed Affecting Multiple Versions
Aug 20
·
2 sources
72
Critical Security Flaws in Fedora libseccomp Affecting Multiple Versions
Jul 21
·
2 sources
72
SUSE Xen Vulnerabilities Addressed in Update 2026-3423
Jul 30
·
8 sources
72
openSUSE 389-ds Heap Overflow Vulnerabilities Lead to DoS Risks
Jul 21
·
3 sources
71
Microsoft June 2026 Patch Tuesday: Record 206 Vulnerabilities Addressed
Jun 9
·
57 sources
71
Critical DoS Vulnerabilities in perl-Cpanel-JSON-XS Affect Fedora Users
Jun 5
·
2 sources
71
Critical Memory Disclosure Vulnerability in Fedora's perl-HTML-Gumbo Module
Jul 11
·
2 sources
70
Critical RCE Vulnerability in BeyondTrust Software Requires Immediate Patching
Feb 9
·
1495 sources
67
Critical Vulnerabilities in WatchGuard Fireware OS Require Immediate Patching
Aug 28
·
17 sources
61
Critical Vulnerabilities in openSUSE 389-ds Require Immediate Attention
Aug 24
·
7 sources
61
Multiple Adobe Acrobat Vulnerabilities Disclosed on September 10, 2026
2d ago
·
19 sources
61
Aptos Fixes Critical Vulnerability with $70 Billion Risk Exposure
Jul 5
·
25 sources
61
Apple Accelerates Security Updates Amid AI-Driven Cyber Threats
Jun 29
·
50 sources
61
Multiple CVEs Disclosed in Xen Project Security Advisory
Jul 30
·
2 sources
58
Telerik UI Vulnerability Chain Enables Unauthenticated RCE Attacks
4d ago
·
5 sources
58
Foxit Patches 20 Vulnerabilities in PDF Reader and Editor
Jul 9
·
5 sources
58
Critical RCE Vulnerability in BeyondTrust Remote Support and PRA
Feb 7
·
717 sources
30
Prev
1 / 6
Next
Related Articles (50)
Multiple hacking groups found using the same Chrome malware in the same week
Techradar
·
1d ago
Four Chinese Spy Groups Hacked US NGOs and Aerospace Firms With Same Exploit Kit
Techtimes
·
1d ago
North Korean Threat Actor Citrine Sleet Exploiting Chromium Zero Day
www.microsoft.com
·
2d ago
Four Nation-State Actors Used the Same Chrome Zero
Securityaffairs.Co
·
2d ago
ZDI-26-671: Adobe Acrobat Reader DC Dialog Object Type Confusion Remote Code Execution Vulnerability
Zerodayinitiative
·
2d ago
Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week
Thehackernews
·
2d ago
Once in a BlueMoon: Multiple State-Aligned Threat Actors Rapidly Adopt Novel Exploit Chain Using Chrome and Windows Zero
Proofpoint
·
2d ago
Google warns of new Chrome zero-day bug exploited in attacks
Bleepingcomputer
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
CVE-2026
Api.Msrc.Microsoft
·
3d ago
Fedora 43 Chromium Critical Buffer Flaws Advisory FEDORA-2026
Linuxsecurity
·
4d ago
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE
Thehackernews
·
4d ago
Fedora Chromium Update CVE-2026
Linuxsecurity
·
5d ago
Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
Cisecurity
·
Sep 5
Google patches sixth Chrome zero-day of 2026 exploited in wild
Aiweekly.Co
·
Sep 5
Fedora 44 Chromium Critical Use After Free Information Leak 2026
Linuxsecurity
·
Sep 5
Fedora 43 Chromium Critical Use After Free & Auth Issues 2026
Linuxsecurity
·
Sep 5
U.S. CISA adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog
Securityaffairs.Co
·
Sep 4
Google warns of new Chrome zero-day flaw exploited in attacks
Bleepingcomputer
·
Sep 4
CVE-2026-85046: Chrome V8 Zero-Day Exploited
Socprime
·
Sep 4
Google Chrome V8 Type Confusion Remote Code Execution Vulnerability (CVE-2026-85046)
Itsc.Cuhk.Edu.Hk
·
Sep 4
CC-4844
Digital.Nhs.Uk
·
Sep 4
Google Patches 6th Chrome Zero
Feeds.Feedburner
·
Sep 4
When Sorting Leads To Confusion
serotav.github.io
·
Sep 4
Google fixes the sixth actively exploited Chrome zero
Securityaffairs.Co
·
Sep 4
Google Releases Chrome Update to Patch Actively Exploited V8 Zero
Thehackernews
·
Sep 4
Google Chrome V8 Flaw Actively Exploited in the Wild, Update Released
Gbhackers
·
Sep 4
openSUSE postgresql14 Important 24 Vulnerabilities Resolved 2026-3944
Linuxsecurity
·
Sep 3
PSIRT WatchGuard CVE-2026-19315
psirt.watchguard.com
·
Aug 29
Warning: Multiple Vulnerabilities in WatchGuard Fireware OS, Patch Immediately!
Ccb.Belgium.Be
·
Aug 28
openSUSE 389-ds Important Issues Fix Vulnerabilities 2026-3686
Linuxsecurity
·
Aug 24
SUSE 389-ds Important DoS Buffer Overflow Vuln 2026-3686
Linuxsecurity
·
Aug 24
openSUSE 389-ds Important Heap Buffer and Integer Overflow 2026-3687
Linuxsecurity
·
Aug 24
SUSE 389-ds Important Buffer Overflow Issues Vuln 2026-3687
Linuxsecurity
·
Aug 24
Critical flaw patched in popular JavaScript sandbox used in AI projects
Csoonline
·
Aug 20
GHSA-864f-rcv7-6rh4: Critical Type Confusion Vulnerability in isolated-vm
Endorlabs
·
Aug 20
USN-8653-1: PostgreSQL vulnerabilities
Ubuntu
·
Aug 20
August 2026 Monthly Patch
Csa.Sg
·
Aug 12
Prev
1 / 10
Next
Related Entities
Ta412
Violet Typhoon
TIDE Castle
JungleBamboo
APT31
Zero-day Exploit
DDoS
Denial of Service
Malware
Data Breach
Phishing
Hexens