Related Threat Clusters
-
Critical MOVEit Vulnerabilities Expose Organizations to Data Breaches
Progress Software has issued urgent advisories regarding critical vulnerabilities in its MOVEit Automation platform, specifically CVE-2026-4670 and CVE-2026-5174. These vulnerabilities allow attackers to bypass…
11 articles · Updated May 4, 2026 -
Critical RCE Vulnerability in WS_FTP Server Disclosed
On September 27, 2023, Progress Software disclosed CVE-2023-40044, a .NET deserialization vulnerability in the Ad Hoc Transfer module of WS_FTP Server. This flaw allows unauthenticated attackers to execute remote…
2 articles · Updated June 17, 2026 -
Critical Vulnerabilities in Progress ShareFile Enable Unauthenticated File Exfiltration
Two critical vulnerabilities, CVE-2026-2699 and CVE-2026-2701, have been identified in Progress ShareFile's Storage Zones Controller, allowing unauthenticated attackers to perform remote code execution and potentially…
7 articles · Updated April 2, 2026 -
Critical Vulnerabilities in Progress ShareFile Prompt Urgent Shutdown
On July 10, 2026, Progress Software issued an urgent directive for all ShareFile customers to shut down their Storage Zone Controllers (SZC) due to critical vulnerabilities CVE-2026-2699 and CVE-2026-2701. These flaws…
3 articles · Updated July 13, 2026 -
Rising Security Debt Threatens Cyber Resilience Amidst Rapid Tech Adoption
Security debt is accumulating as organizations delay necessary security fixes, leading to increased cyber risks. This phenomenon, highlighted in ISACA's research, includes unresolved vulnerabilities, unsupported…
2 articles · Updated July 28, 2026 -
Allianz UK Targeted in Clop Gang's Oracle E-Business Suite Attack
Allianz UK has confirmed it is among the victims of the Clop gang's attack on Oracle E-Business Suite. The cybercriminal group claimed to have breached Allianz-owned Liverpool Victoria (LV) on November 1, 2025, although…
2 articles · Updated November 10, 2025 -
MFA Lapses Lead to Data Theft of 50 Organizations
A major infostealer campaign has compromised sensitive data from 50 global enterprises, with the data available for sale on the dark web. Victims include firms such as Pickett and Associates, Sekisui House, and Iberia.…
4 articles · Updated January 6, 2026 -
Allianz UK Confirmed as Victim of Clop's Oracle E-Business Suite Attack
Allianz UK has confirmed that it was targeted in a cyberattack by the Clop gang, which exploited vulnerabilities in Oracle's E-Business Suite. The attack reportedly involved a subsidiary, Liverpool Victoria, although…
2 articles · Updated November 10, 2025
Recent Intelligence Reports
- ISACA’s latest research — www.isaca.org · July 28, 2026
- Critical CVE-2026-2699 and CVE-2026 — Rescana · July 12, 2026
- Rapid7 Analysis: CVE-2023 — Rapid7 · June 17, 2026
- New MOVEit vulnerabilities prompt urgent vendor warning — Cybersecuritydive · May 4, 2026
- Researchers warn of critical flaws in Progress ShareFile — Tech.Yahoo · April 3, 2026
- Researchers warn of critical flaws in Progress ShareFile — Cybersecuritydive · April 3, 2026
- One criminal, 50 hacked organizations, and all because MFA wasn't turned on — Theregister · January 6, 2026
- Allianz UK joins growing list of Clop's Oracle E-Business Suite victims — Theregister · November 10, 2025