Related Threat Clusters
-
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
Cisco SD-WAN Zero-Day Exploited by Threat Actor Since 2023
A cyber threat actor has been exploiting a zero-day vulnerability (CVE-2026-20127) in Cisco Catalyst SD-WAN Controller since 2023. This vulnerability allows unauthenticated remote attackers to bypass authentication and…
104 articles · Updated February 25, 2026 -
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
The North Korean hacking group Lazarus exploited a zero-day vulnerability (CVE-2026-68820) in the Windows Ancillary Function Driver for WinSock (afd.sys) to gain SYSTEM-level access to defense sector systems. This…
33 articles · Updated August 12, 2026 -
F5 Issues Critical Patches for NGINX Vulnerabilities Allowing Remote Code Execution
On June 17, 2026, F5 released emergency patches for two critical vulnerabilities in NGINX, CVE-2026-42530 and CVE-2026-42055. These vulnerabilities affect NGINX Open Source, NGINX Plus, and related products, allowing…
24 articles · Updated June 18, 2026 -
Critical Check Point VPN Vulnerability Exploited by Ransomware Gang
Check Point Software Technologies disclosed a critical authentication bypass vulnerability (CVE-2026-50751) affecting its Remote Access VPN and Mobile Access products, with exploitation confirmed since May 7, 2026. The…
46 articles · Updated June 8, 2026 -
Critical NGINX Vulnerability CVE-2026-42945 Exposes Millions to RCE and DoS Attacks
A critical vulnerability, CVE-2026-42945, has been discovered in the NGINX web server's ngx_http_rewrite_module, allowing unauthenticated attackers to execute remote code or crash servers. This heap-based buffer…
51 articles · Updated May 13, 2026 -
SBU and FBI Expose Russian Cyber Campaign Targeting Messaging Accounts
On June 25, 2026, Ukraine's Security Service (SBU) and the FBI announced a coordinated cyber campaign by Russian intelligence targeting messaging accounts of officials, military personnel, politicians, and activists in…
18 articles · Updated June 25, 2026 -
CISA Urges Endpoint Security Enhancements After Stryker Cyberattack
On March 11, 2026, medical technology firm Stryker experienced a significant cyberattack attributed to the Iran-linked hacking group Handala. The attack exploited vulnerabilities in Stryker's Microsoft Intune endpoint…
45 articles · Updated March 19, 2026 -
Russian FSB Exploits Vulnerable Routers to Target Critical Infrastructure
A joint advisory from 21 global cybersecurity agencies warns that Russian state hackers from the FSB's Center 16 are exploiting poorly configured routers to infiltrate critical infrastructure networks worldwide. The…
76 articles · Updated July 13, 2026 -
Critical Vulnerabilities in Veeam Software Expose Systems to Remote Attacks
On August 5, 2026, Veeam disclosed multiple critical vulnerabilities affecting Veeam ONE and Veeam Service Provider Console. The vulnerabilities include remote unauthenticated code execution, file read access, and SQL…
3 articles · Updated August 5, 2026
Recent Intelligence Reports
- ash_ai 6-CVE Cluster Exposes the Full Agent Stack in Elixir's First Coordinated AI ... — Forkast.News · August 31, 2026
- Ubuntu WebKitGTK Important XSS and DoS Vulnerabilities USN-8703 — Linuxsecurity · August 31, 2026
- Ubuntu FreeRDP Vulnerabilities and Security Concerns USN-8698 — Linuxsecurity · August 31, 2026
- Ubuntu 26.04 GNU Core Utilities Critical DoS Issues USN-8697 — Linuxsecurity · August 31, 2026
- HTX Restores Services After DDoS Attack; Justin Sun Confirms No User Assets Affected — Cryptorank · August 31, 2026
- USN-8704-1: GNU cpio vulnerabilities — Ubuntu · August 31, 2026
- bitcoinworld.co.in — bitcoinworld.co.in · August 31, 2026
- USN-8703-1: WebKitGTK vulnerabilities — Ubuntu · August 31, 2026