WatchTowr is a organization tracked across 6 threat clusters and 7 intelligence report mentions on ThreatCluster. First observed November 14, 2025; most recent activity June 9, 2026.
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
Veeam has disclosed a critical vulnerability (CVE-2026-44963) affecting its Backup & Replication software, allowing authenticated domain users to execute remote code on domain-joined backup servers. This flaw impacts…
A critical vulnerability in SmarterTools' SmarterMail, identified as CVE-2026-24423, is being actively exploited in ransomware attacks. The flaw allows unauthenticated remote code execution via malicious HTTP requests,…
Security researchers have identified a remote code execution (RCE) vulnerability in the .NET framework that impacts various enterprise applications. Piotr Bazydło from watchTowr presented these findings at Black Hat…
Fortinet's FortiWeb web application firewall has been compromised by two critical vulnerabilities, CVE-2025-64446 and CVE-2025-58034, both of which are under active exploitation. The first vulnerability allows…
Shadowserver researchers identified over 6,000 SmarterMail servers exposed online, likely vulnerable to a critical authentication bypass flaw tracked as CVE-2026-23760. The vulnerability was disclosed by cybersecurity…