Related Threat Clusters
-
Critical Zero-Day Vulnerability CVE-2026-20182 Exploited in Cisco SD-WAN Systems
Cisco has disclosed a critical authentication bypass vulnerability, CVE-2026-20182, affecting its Catalyst SD-WAN Controller and Manager. This flaw allows unauthenticated remote attackers to bypass authentication and…
131 articles · Updated May 14, 2026 -
Critical NGINX Vulnerability CVE-2026-42945 Exposes Millions to RCE and DoS Attacks
A critical vulnerability, CVE-2026-42945, has been discovered in the NGINX web server's ngx_http_rewrite_module, allowing unauthenticated attackers to execute remote code or crash servers. This heap-based buffer…
51 articles · Updated May 13, 2026 -
Critical NGINX UI Vulnerability CVE-2026-33032 Under Active Exploitation
A critical vulnerability in the nginx-ui web server management tool, tracked as CVE-2026-33032, has been actively exploited since March 2026. This flaw allows attackers to bypass authentication on the /mcp_message…
22 articles · Updated April 15, 2026 -
Head Mare Hackers Exploit TrueConf Vulnerabilities to Deploy Backdoors
The Head Mare hacktivist group has breached TrueConf video conferencing servers, exploiting vulnerabilities to replace legitimate client installers with malicious versions containing backdoors. The attackers executed…
23 articles · Updated August 8, 2026 -
Critical Command Injection and DoS Vulnerabilities in openSUSE pcp
Recent updates for openSUSE's pcp software have addressed multiple critical vulnerabilities, including command injection and denial-of-service (DoS) issues. The vulnerabilities, identified as CVE-2026-16524,…
11 articles · Updated August 6, 2026 -
Critical OS Command Injection Vulnerability in Atlassian Bamboo Disclosed
Atlassian has announced two critical vulnerabilities in its Bamboo Data Center and Server product, including a severe OS command injection flaw (CVE-2026-21571) and a high-severity denial-of-service issue. The command…
2 articles · Updated April 22, 2026 -
Windows RasMan Zero-Day Vulnerability Exploited with Unofficial Patches
A new zero-day vulnerability in Windows' Remote Access Connection Manager (RasMan) has been identified, allowing attackers to crash the service. Unofficial patches have been released by ACROS Security to mitigate this…
5 articles · Updated December 12, 2025 -
Critical DoS Vulnerabilities in openSUSE xorg-x11-server Addressed
On April 15, 2026, SUSE released important updates for the xorg-x11-server to address multiple denial-of-service (DoS) vulnerabilities. The vulnerabilities include CVE-2026-33999, CVE-2026-34000, CVE-2026-34001,…
3 articles · Updated April 15, 2026 -
UAT-10147 Cybercrime Group Integrates AI for Large-Scale Attacks
In early 2026, Cisco Talos identified UAT-10147, a Chinese-speaking cybercrime group targeting vulnerable web servers across multiple countries, including Brazil, China, and Canada. The group employs agentic AI to…
10 articles · Updated August 20, 2026 -
Critical OpenSSL Vulnerabilities Affect Multiple Ubuntu Versions
Recent updates to OpenSSL have revealed multiple vulnerabilities affecting various Ubuntu LTS versions. CVE-2026-2673, discovered by Viktor Dukhovni, involves incorrect negotiation of key exchange groups in TLS 1.3…
2 articles · Updated April 9, 2026
Recent Intelligence Reports
- ash_ai 6-CVE Cluster Exposes the Full Agent Stack in Elixir's First Coordinated AI ... — Tech.Yahoo · August 31, 2026
- Ubuntu 26.04 LTS GNU cpio Important Input Sanitization Flaws USN-8704 — Linuxsecurity · August 31, 2026
- Ubuntu 26.04 LTS util-linux Important Sensitivity Issues USN-8702 — Linuxsecurity · August 31, 2026
- USN-8698-1: FreeRDP vulnerabilities — Ubuntu · August 31, 2026
- USN-8697-1: GNU Core Utilities vulnerabilities — Ubuntu · August 31, 2026
- High-Severity MongoDB Driver and BI Connector Flaws Require Immediate Patching Mallory Threat Intelligence Stories / 7h CVE-2026-81532 was published as a high-severity improper-bounds-checking vulnerability in the BI Connector ODBC driver. MongoDB Connector for BI's CVE-2026-77586 was published as a high-severity flaw in which unescaped collection, field, or index names can inject SQL into generated SHOW CREATE output that is later replayed. — mallory.ai · August 29, 2026
- Core Lightning Confirms Security Flaws, Urges Immediate Upgrade — Kucoin · August 28, 2026
- Rowhammer Breaks NVIDIA ECC: Root Shell in Under Two Minutes Before Code Goes Public — Techtimes · August 27, 2026