Amazon is a organization tracked across 50 threat clusters and 64 intelligence report mentions on ThreatCluster. First observed November 4, 2025; most recent activity July 24, 2026.
An advanced persistent threat actor exploited zero-day vulnerabilities in Cisco Identity Service Engine and Citrix NetScaler products. The attacks utilized custom malware and were detected by Amazon's MadPot honeypot…
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
A high-severity vulnerability (CVE-2026-12957) in Amazon Q Developer for Visual Studio Code allowed attackers to execute arbitrary code and steal AWS credentials by automatically loading malicious MCP server…
The FBI has issued a warning regarding the Kali365 phishing kit, which is actively stealing Microsoft OAuth tokens and bypassing multi-factor authentication (MFA) protocols. First identified in April 2026, Kali365 is…
Data centers have become high-value targets for cyber and physical attacks, highlighted by drone strikes on Amazon Web Services facilities in March 2026. These incidents, attributed to Iranian forces, resulted in…
Iran has begun targeting data centers in the Middle East, specifically in the UAE and Bahrain, in retaliation for US military actions. The attacks are part of a broader strategy, with Iran naming 18 tech firms,…
US President Donald Trump announced imminent military strikes on Iran's underground nuclear site, Pickaxe Mountain, amid ongoing hostilities. Iran has responded with attacks on US interests in the region, including…
Iran has publicly threatened to target OpenAI's Stargate AI data center in Abu Dhabi, a key facility in the region valued at $30 billion. The threats were issued by the Islamic Revolutionary Guard Corps (IRGC) in…
A coordinated international effort led by Microsoft and Europol has dismantled Tycoon2FA, a significant phishing-as-a-service platform responsible for bypassing multi-factor authentication and enabling large-scale…
Anthropic's AI tool, Claude Code, was found to contain hidden tracking mechanisms targeting Chinese users, raising significant privacy concerns. The covert detection logic, embedded since April 2, 2026, identified users…