Related Threat Clusters
-
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
16 articles · Updated July 22, 2026 -
Exploitation of Remote Services in Cyber Attacks
Adversaries are increasingly leveraging external remote services like VPNs and Citrix to gain unauthorized access to networks. These attacks often involve using valid accounts obtained through credential harvesting or…
2 articles · Updated June 3, 2026 -
Russian Hackers Cause $2.5 Billion Cyberattack on Jaguar Land Rover
In August 2025, a ransomware attack attributed to Russian hackers severely disrupted Jaguar Land Rover's operations, forcing a five-week production halt and costing the UK economy approximately $2.5 billion. The attack…
16 articles · Updated June 26, 2026 -
Critical Zoom Vulnerability Allows Unauthenticated Account Takeover
Zoom has patched a critical vulnerability (CVE-2026-53412) in its Windows desktop client and VDI software that could allow unauthenticated attackers to take over user accounts via network access. The flaw, rated 9.8 out…
22 articles · Updated July 16, 2026 -
UNC6783 Exploits BPOs for Data Extortion via Phishing Campaigns
The Google Threat Intelligence Group (GTIG) reported that a financially motivated cybercriminal group, UNC6783, is targeting business process outsourcing (BPO) companies to infiltrate high-value organizations across…
8 articles · Updated April 8, 2026 -
New Cyber Extortion Groups Target Critical Infrastructure with Phishing Tactics
Two threat groups, Cordial Spider and Snarky Spider, affiliated with The Com, are targeting U.S. organizations across various critical infrastructure sectors for rapid data theft and extortion. Their operations,…
5 articles · Updated May 1, 2026 -
Teen Hacker Extradited for Role in Scattered Spider Cybercrime Group
Peter Stokes, a 19-year-old dual citizen of the U.S. and Estonia, was extradited from Finland to the U.S. to face charges related to his involvement in the Scattered Spider hacking group. The group has been linked to…
37 articles · Updated July 1, 2026 -
Major Data Breach at Canvas Affects 275 Million Users
Instructure, the company behind the Canvas learning management system, confirmed a significant data breach involving the ShinyHunters hacking group. The attackers claim to have stolen over 3.65TB of data, potentially…
590 articles · Updated May 3, 2026 -
Exploitation of Client Software Vulnerabilities and User Execution Techniques
Recent cybersecurity reports detail the exploitation of software vulnerabilities in client applications, particularly targeting web browsers and Microsoft Office. Adversaries utilize techniques such as Drive-by…
2 articles · Updated June 8, 2026 -
DragonForce Ransomware Exploits Microsoft Teams for Covert C2 Communications
The DragonForce ransomware group has been observed using a custom malware, Backdoor.Turn, to conceal command-and-control (C&C) traffic within Microsoft Teams' relay infrastructure. This sophisticated technique allows…
13 articles · Updated June 16, 2026
Recent Intelligence Reports
- T1204 — attack.mitre.org · August 7, 2026
- Wall Street hit by wave of “vishing” hack attempts — Insurancebusinessmag · August 5, 2026
- Amgen Patient PHI Stolen via Vendor Cloud: HIPAA and SEC Clocks Both Running — Techtimes · August 1, 2026
- T1539 — attack.mitre.org · July 23, 2026
- T1102 — attack.mitre.org · July 23, 2026
- Hackers 'central' to Scattered Spider group jailed over TfL cyber attack — Ft · July 16, 2026
- Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack — Thehackernews · July 16, 2026
- TfL hackers 'central' to Scattered Spider group, says NCA — Ft · July 16, 2026