Related Threat Clusters
-
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
State-Sponsored Actors Target Network Edge Devices Amid Rising Exploits
Recent reports indicate a significant rise in the exploitation of edge devices, such as VPN gateways and firewalls, by state-sponsored actors. These devices have become the primary attack vector for espionage…
3 articles · Updated July 22, 2026 -
Critical Vulnerabilities Disclosed in Palo Alto Networks PAN-OS Software
On November 18, 2024, Palo Alto Networks disclosed two critical vulnerabilities in PAN-OS: CVE-2024-0012 and CVE-2024-9474. CVE-2024-0012 is an authentication bypass vulnerability that allows unauthenticated attackers…
114 articles · Updated April 24, 2026 -
SonicWall SSL VPN Vulnerability CVE-2024-12802 Actively Exploited Despite Patching
A wave of attacks exploiting CVE-2024-12802, an authentication bypass vulnerability in SonicWall SSL VPN appliances, began in February 2026. Despite a firmware patch issued in 2025, attackers were able to bypass…
6 articles · Updated May 19, 2026 -
Mythos Preview Accelerates N-Day Exploit Development
Anthropic's research reveals that its model, Mythos Preview, can autonomously develop exploits for N-day vulnerabilities within hours, significantly reducing the time historically needed for exploit development. N-days…
3 articles · Updated June 9, 2026 -
LockBit Ransomware Targets ICBC Financial Services and U.S. Bank
On November 8, 2025, the LockBit ransomware group attacked ICBC Financial Services, disrupting U.S. Treasury trading operations. The attack exploited a vulnerability in Citrix NetScaler, leading to a $9 billion…
10 articles · Updated August 20, 2026 -
APT Exploits Zero-Day Vulnerabilities in Cisco and Citrix Systems
An advanced persistent threat (APT) group exploited zero-day vulnerabilities in Cisco Identity Services Engine (ISE) and Citrix systems, specifically CVE-2025-5777 and CVE-2025-20337. The attacks were detected by…
16 articles · Updated November 18, 2025 -
Shift in Ransomware Tactics Targeting Cloud Assets
Ransomware actors are increasingly focusing on cloud-based assets, particularly in AWS environments. This shift involves utilizing various tactics to compromise critical business data, moving away from traditional…
56 articles · Updated November 19, 2025 -
Emergence of Agentic AI Raises Governance and Security Challenges
In 2026, the rise of agentic AI is transforming how businesses operate, particularly in the financial services sector. This new technology allows for autonomous decision-making, which increases the potential impact of…
4448 articles · Updated February 10, 2026
Recent Intelligence Reports
- ICBC Financial Services — www.resecurity.com · August 20, 2026
- Defending Your Network Edge Against The Next Zero Day Exploit — www.sygnia.co · July 23, 2026
- N-days \ red.anthropic.com — Red.Anthropic · June 8, 2026
- Threat Spotlight Vpn Exploitation When Patched Doesnt Mean Protected — reliaquest.com · May 19, 2026
- 9.8 and 7.2 under CVSS v3.1 — www.picussecurity.com · April 24, 2026
- Stolen VPN Credentials Most Common Ransomware Attack Vector — Thecyberexpress · November 20, 2025
- Zero — Csoonline · November 13, 2025