Related Threat Clusters
-
Cisco Fixes Critical AsyncOS Vulnerability Under Attack
Cisco has addressed a maximum-severity vulnerability in AsyncOS, tracked as CVE-2025-20393, which has been actively exploited for at least a month. The flaw affects Secure Email Gateway (SEG) and Secure Email and Web…
11 articles · Updated January 15, 2026 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Resurgence of KV Botnet Linked to Chinese State Actors
Chinese operatives have revived the KV-botnet, a covert data transfer network previously dismantled by the FBI in January 2024. The botnet, which primarily exploits vulnerable routers and IoT devices, has seen a…
2 articles · Updated June 11, 2026 -
Active Exploitation of N-able N-central Authentication Bypass Vulnerability
N-able has issued an emergency hotfix for CVE-2026-18577, an authentication bypass vulnerability in its N-central RMM platform, which allows remote, unauthenticated attackers to gain administrative access. This flaw…
12 articles · Updated August 5, 2026 -
Critical Vulnerabilities in TP-Link Archer Routers Expose Users to Attacks
TP-Link has patched multiple critical vulnerabilities in its Archer NX router series, specifically affecting models NX200, NX210, NX500, and NX600. The most severe flaw, CVE-2025-15517, allows unauthenticated attackers…
11 articles · Updated March 25, 2026 -
Record Highs in Industrial Control System Vulnerabilities Reported
A report from Forescout reveals a record number of industrial control system (ICS) vulnerabilities, with 3,637 advisories published by CISA/ICS-CERT from March 2010 to January 31, 2026. In 2025 alone, there were over…
3 articles · Updated February 19, 2026 -
Evolution of Chinese-Nexus Cyber Operations: Strategic Long-Term Threats
Recent research from Darktrace reveals the evolution of Chinese-nexus cyber operations over the past two decades, highlighting a shift from high-volume attacks to more strategic, identity-centric intrusions. This change…
381 articles · Updated April 2, 2026 -
CISA Warns of Exploited Windows Task Host Vulnerability CVE-2025-60710
CISA has issued a warning to U.S. government agencies regarding a privilege escalation vulnerability in Windows Task Host, tracked as CVE-2025-60710. This vulnerability, affecting Windows 11 and Windows Server 2025,…
2 articles · Updated April 15, 2026 -
Critical IKEv2 RCE Vulnerability in WatchGuard Firebox Devices Exploited
WatchGuard Technologies released patches on July 2, 2026, for a critical remote code execution vulnerability (CVE-2026-13368) affecting all supported Firebox firewall models. This flaw, linked to a race condition in the…
3 articles · Updated July 4, 2026 -
Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
751 articles · Updated April 29, 2026
Recent Intelligence Reports
- US officials backpedal on claims that government agencies were hacked by Chinese, now ... — Straitstimes · August 29, 2026
- US officials backpedal on claims that government agencies were hacked by Chinese, now ... — Straitstimes · August 28, 2026
- Microsoft warns of max severity Entra ID flaw exploited in attacks — Bleepingcomputer · August 21, 2026
- CVE-2026-18577: N-able N-central Auth Bypass — Socprime · August 4, 2026
- WatchGuard Firebox Patches Third Critical IKEv2 RCE in 10 Months, T15/T35 Still Exposed — Techtimes · July 4, 2026
- AI Coding Agents Skip Package Verification, and Attackers Are Exploiting It — Techtimes · July 1, 2026
- Attackers Register AI — Gbhackers · July 1, 2026
- 'Five Eyes' intelligence alliance warns that new AI models pose urgent cyber risk — Channelnewsasia · June 22, 2026