Related Threat Clusters
-
Microsoft SharePoint Attacks: Over 400 Victims Including US Agencies
A series of attacks exploiting zero-day vulnerabilities in Microsoft SharePoint has compromised over 400 organizations, including multiple US government agencies. The attacks, attributed to Chinese threat groups such as…
2 articles · Updated August 12, 2026 -
CISA Issues Urgent Directive to Patch Check Point VPN Vulnerability Exploited by Ransomware
CISA has mandated federal agencies to patch a critical vulnerability in Check Point VPN products within 72 hours due to active exploitation by the Qilin ransomware group. The vulnerability, tracked as CVE-2026-42271,…
8 articles · Updated June 9, 2026 -
Langflow IDOR Exploit and Critical Vulnerabilities Targeting AI Platforms
A moderate-scored IDOR vulnerability (CVE-2026-55255) in Langflow has been actively exploited since June 25, 2026, allowing attackers to access and execute flows belonging to other users. This exploit leverages a…
5 articles · Updated July 25, 2026 -
CISA Contractor Exposes Sensitive AWS Credentials on Public GitHub
A contractor for the U.S. Cybersecurity and Infrastructure Security Agency (CISA) left a public GitHub repository named 'Private-CISA' exposed for six months, containing sensitive credentials including AWS GovCloud…
41 articles · Updated May 19, 2026 -
Critical RCE Vulnerability in BeyondTrust Software Requires Immediate Patching
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
1484 articles · Updated February 9, 2026 -
Qilin Ransomware Gang Claims Attack on ATF, Major Incident Declared
The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) is investigating a major cybersecurity incident after the Qilin ransomware gang claimed responsibility for breaching one of its standalone systems. The ATF…
30 articles · Updated August 26, 2026 -
Opexus Hires Twins with Criminal Past, Fails Background Check
Opexus hired twins Muneeb and Sohaib Akhter, who had a criminal history including wire fraud and hacking the State Department. The company conducted background checks but missed key red flags from the brothers' past…
1 article · Updated December 15, 2025 -
U.S. Army Websites Defaced in Pro-Kurdish Hacktivist Attack
On July 6, 2026, multiple U.S. Army subdomains, including oil.army.mil and ai2c.army.mil, were defaced in a 404 hijacking campaign. The attack displayed messages denouncing President Donald Trump and supporting Kurdish…
8 articles · Updated July 6, 2026 -
DHS Investigates Breach of HSIN Information-Sharing Network
The Department of Homeland Security (DHS) is investigating a breach of the Homeland Security Information Network (HSIN), which occurred between late May and early June 2026. An unknown threat actor accessed the network,…
23 articles · Updated July 1, 2026 -
Cyber Attack Disrupts ICE Personal Info Leak Site
A website leaking personal information of ICE and Border Patrol agents, ICE List, was targeted by a cyber attack believed to be from Russia. The attack occurred after the site planned to publish the names of 4,500…
3 articles · Updated January 14, 2026
Recent Intelligence Reports
- ATF confirms “major incident” after recent Qilin breach claims — Bleepingcomputer · August 27, 2026
- Qilin gang claims US Bureau of Alcohol, Tobacco, Firearms and Explosives — Cybernews · August 26, 2026
- CyberScoop: Microsoft SharePoint attacks ensnare 400 victims, including US agencies — cyberscoop.com · August 13, 2026
- >> Read this brief on krypteiasec.com — krypteiasec.com · July 26, 2026
- Daily Threat Brief: July 24, 2026 — Buttondown · July 25, 2026
- Hacktivists call out Trump by hacking and defacing US Army websites — Techcrunch · July 7, 2026
- DHS confirms hackers breached HSIN info — Bleepingcomputer · July 1, 2026
- Hackers breached DHS information-sharing network, people familiar say - Nextgov/FCW — Nextgov · June 30, 2026