Skip to content
Product
Use it
Threat intelligence API
Free key, 70+ endpoints, OpenAPI. The product.
Get started
Pick your stack, make your first call.
Live feed
The console: incidents, filters, entities, search.
Recipes
Runnable examples for the free key.
Free feeds
RSS, ransomware feed, IOC blocklist, MISP — no key.
CLI & agents
tc from a terminal; agent keys with scoped budgets.
The data
Incident records
900 articles a day become ~70 scored incidents.
Dark web
First-party leak-site collection: victims, groups, markets.
Validated IOCs
Indicators with a false-positive gate; STIX, MISP, CSV.
Vulnerabilities
CVEs with EPSS, KEV and exploit status.
Entity graph
Actors, malware, CVEs, companies — pivotable.
For teams
For service providers
Per-client feeds, alerts and branded digests.
Use cases
How teams and builders use the corpus.
About ThreatCluster
What it is and how it is built.
Pricing
Docs
Reference
OpenAPI (Swagger)
Every endpoint, parameter and response model.
ReDoc
The same reference, long-form.
Examples on GitHub
curl, Python and Node quickstarts; daily spec snapshot.
Guides
Quickstart & plans
Key, scopes, budgets, tiers.
Integrations
Splunk, Sentinel, Elastic, agents and terminals, step by step
Export formats
STIX 2.1, MISP, CSV, text.
CLI setup
Install, log in, wire an agent.
No results found
Sign in
Get a free key
No results found
Product
Threat intelligence API
Get started
Live feed
Recipes
Free feeds
CLI & agents
The data
Incident records
Dark web
Validated IOCs
Vulnerabilities
Entity graph
For teams
For service providers
Use cases
About ThreatCluster
Docs
OpenAPI (Swagger)
ReDoc
Examples on GitHub
Quickstart & plans
Integrations
Export formats
CLI setup
Pricing
Contact
Get a free key
Sign in
Back
Cross-site request forgery
Vulnerability
Threat entity extracted from intelligence sources
Sep 5: 0 mentions
Sep 6: 0 mentions
Sep 7: 0 mentions
Sep 8: 1 mention
Sep 9: 2 mentions
Sep 10: 0 mentions
Sep 11: 0 mentions
Sep 5
Sep 8
Sep 11
Entities
›
vulnerability
›
Cross-site request forgery
Frequency
19
occurrences
First Seen
October 28, 2025
Last Seen
September 9, 2026
API
Overview
Recent Events
Profile
Profile
MITRE ATT&CK
1 / 2
Associated Malware
Comet
Tools Used
Chrome
Ffmpeg
Gmail
Google Drive
Teams
Related CVEs
CVE-2026-19650
CVE-2026-20079
CVE-2026-20316
CVE-2026-22218
CVE-2026-22219
CVE-2026-2332
CVE-2026-27962
CVE-2026-28490
MITRE Techniques
T1059 - Command and Scripting Interpreter
T1566 - Phishing
T1053 - Scheduled Task/Job
T1078 - Valid Accounts
T1190 - Exploit Public-Facing Application
T1566.002 - Spearphishing Link
Affected Platforms
Cisco IOS
Edge
ChatGPT
ChatGPT Atlas
Windows
Dia
Regions
Germany
Mexico
Pakistan
Russia
United States
-
REC
Recon
No techniques detected
-
RD
Resource Dev
No techniques detected
3
IA
Initial Access
T1566 - Phishing
T1078 - Valid Accounts
T1190 - Exploit Public-Facing Application
2
EX
Execution
T1059 - Command and Scripting Interpreter
T1053 - Scheduled Task/Job
-
PE
Persistence
No techniques detected
-
PE
Priv Esc
No techniques detected
-
DE
Defense Evasion
No techniques detected
-
CA
Cred Access
No techniques detected
-
DI
Discovery
No techniques detected
-
LM
Lateral Mov
No techniques detected
-
CO
Collection
No techniques detected
-
C2
C2
No techniques detected
-
EX
Exfil
No techniques detected
-
IM
Impact
No techniques detected
5
techniques detected across
2
tactics
Related Clusters (17)
Cisco IOS Vulnerability CVE-2008-4128 Under Active Exploitation
Jul 14
·
5 sources
80
Russian FSB Exploits Vulnerable Routers to Target Critical Infrastructure
Jul 13
·
76 sources
78
Critical OVERPASS Vulnerability in SAP Kernel Requires Immediate Action
2d ago
·
16 sources
76
Critical Authlib Vulnerabilities Discovered in Ubuntu Affecting JWT and CSRF
Jul 16
·
2 sources
74
Critical GitLab Vulnerability Allows Unauthenticated Data Deletion
Aug 18
·
30 sources
72
Cisco FMC Static Credential Vulnerability Under Active Exploitation
Jul 30
·
27 sources
72
Critical Vulnerabilities Discovered in Jenkins Plugins
May 28
·
2 sources
72
Anthropic's Claude Mythos Preview Sparks Cybersecurity Revolution
Apr 7
·
1402 sources
70
AgentForger: New Phishing Attack Creates Autonomous AI Insiders
Jul 23
·
11 sources
70
Critical CSRF Vulnerability in WWBN AVideo Exposes Admins to Attacks
2d ago
·
2 sources
69
AI Browsers Face Serious Security Risks from Prompt Injection Attacks
Jul 9
·
2 sources
69
Automated Credential Campaign Targets VPN Services
Dec 17
·
5 sources
36
CSRF Bypass Vulnerability in Mailman Affects Ubuntu 20.04 and 16.04
Mar 2
·
2 sources
36
Angular HTTP Client Vulnerability Exposes XSRF Tokens to Attackers
Nov 27
·
2 sources
32
Vulnerabilities in Chainlit AI Framework Risk Enterprise Cloud Security
Jan 21
·
6 sources
30
Vulnerabilities in AI Browsers Expose Users to Prompt Injection Attacks
Oct 28
·
2 sources
20
HashJack Attack Exploits AI Browsers via URL Manipulation
Nov 27
·
11 sources
16
Prev
1 / 4
Next
Related Articles (19)
GHSA Gmx5 Mhqr H7rj
github.com
·
2d ago
CVE Alert: CVE-2026-86718 – WWBN
Redpacketsecurity
·
2d ago
September 2026
support.sap.com
·
2d ago
GitLab Ships Emergency Patch for Critical CVSS 9.4 GraphQL Flaw That Lets ...
Aiweekly.Co
·
Aug 18
Attackers exploit backdoor in Cisco's firewall management software
Heise.De
·
Jul 30
CT
cts.businesswire.com
·
Jul 23
CVE-2008-4128
nvd.nist.gov
·
Jul 17
USN-8557-1: Authlib vulnerabilities
Ubuntu
·
Jul 16
CISA Known Exploited Vulnerabilities
nvd.nist.gov
·
Jul 15
Old Cisco vulnerability under attack: Protection guide
Heise.De
·
Jul 14
Layerx Identifies Vulnerability In New Chatgpt Atlas Browser
layerxsecurity.com
·
Jul 10
How to Use AI Browsers Without Getting Hacked
Lifehacker
·
Jul 9
CVE-2026-48925 Detail
Nvd.Nist
·
May 28
Anthropic limits Claude Mythos rollout after it identified critical flaws across global software systems
Mexc
·
Apr 8
USN-8067-1: Mailman vulnerability
Ubuntu
·
Mar 2
Flaws in Chainlit AI dev framework expose servers to compromise
Csoonline
·
Jan 21
Coordinated Credential
Greynoise
·
Dec 17
Angular HTTP Client Vulnerability Exposes XSRF Token to Attacker
Cyberpress
·
Nov 27
AI browsers face a security flaw as inevitable as death and taxes
Theregister
·
Oct 28
Prev
1 / 4
Next
Related Entities
Phishing
Data Breach
Prompt Injection
Sql Injection
Zero-day Exploit
Brute Force
Credential Stuffing
Cross-site Scripting
Denial of Service
Malware
Privilege Escalation
Azure