Related Threat Clusters
-
Active Exploitation of N-able N-central Authentication Bypass Vulnerability
N-able has issued an emergency hotfix for CVE-2026-18577, an authentication bypass vulnerability in its N-central RMM platform, which allows remote, unauthenticated attackers to gain administrative access. This flaw…
12 articles · Updated August 5, 2026 -
Icarus Group Exploits Klue OAuth Breach to Steal Salesforce Data
In June 2026, a significant security incident involving Klue, a market intelligence platform, allowed the Icarus threat actor group to exfiltrate Salesforce CRM data from multiple organizations, including Huntress. The…
80 articles · Updated June 18, 2026 -
Microsoft Disrupts StegoAd Campaign with Malicious Edge Extensions
Microsoft has dismantled the StegoAd operation, removing 119 malicious Edge extensions that used steganography to hide malware within image and font files. The campaign, active since 2021, targeted over 2.6 million…
13 articles · Updated June 29, 2026 -
Data Breach at Manchester Airports Group Affects 8.7 Million Customers
The Manchester Airports Group (MAG) reported a cyber security incident affecting approximately 8.7 million customers across its three airports: Manchester, London Stansted, and East Midlands. The breach involved…
64 articles · Updated August 27, 2026 -
Huntress Employee Allegedly Informs Ransomware Operator of FBI Investigation
Huntress CEO Kyle Hanslovan addressed allegations that a current employee tipped off ransomware operator Devman about an FBI investigation. Former analyst Ben Folland claimed that the employee disclosed sensitive…
3 articles · Updated July 1, 2026
Recent Intelligence Reports
- UK airports cyber attack exposes 8.7M customers' data — Cybernews · August 28, 2026
- CVE-2026-18577: N-able N-central Auth Bypass — Socprime · August 4, 2026
- Huntress CEO addresses insider threat claims amid employee — Scworld · July 2, 2026
- Microsoft takes down StegoAd operation — News.Risky.Biz · June 29, 2026
- Klue breach lead to Salesforce data theft, Huntress affected — Feeds2.Feedburner · June 19, 2026
- Icarus threat actors exploit Klue OAuth breach to steal Salesforce data | brief — Scworld · June 18, 2026
- Salesforce Data Thefts Continue via Klue App Compromise — Darkreading · June 18, 2026
- Cybercrime Breaches Klue: Salesforce Data Impacted for Many Victims, including Huntress — Huntress · June 18, 2026