Related Threat Clusters
-
SonicWall SMA1000 Faces Critical Zero-Day Exploitation
SonicWall disclosed two critical vulnerabilities in its SMA1000 series appliances, CVE-2026-83548 and CVE-2026-83549, which are being actively exploited. CVE-2026-83548 is a pre-authentication server-side request…
40 articles · Updated September 2, 2026 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Critical RCE Vulnerability in Veeam Backup Exposes Organizations to Attacks
Veeam has disclosed a critical vulnerability (CVE-2026-44963) affecting its Backup & Replication software, allowing authenticated domain users to execute remote code on domain-joined backup servers. This flaw impacts…
11 articles · Updated June 9, 2026 -
Ransomware Exploits Critical SmarterMail Vulnerability CVE-2026-24423
A critical vulnerability in SmarterTools' SmarterMail, identified as CVE-2026-24423, is being actively exploited in ransomware attacks. The flaw allows unauthenticated remote code execution via malicious HTTP requests,…
35 articles · Updated February 6, 2026 -
Microsoft's .NET RCE Bug Remains Unfixed, Affecting Enterprise Applications
Security researchers have identified a remote code execution (RCE) vulnerability in the .NET framework that impacts various enterprise applications. Piotr Bazydło from watchTowr presented these findings at Black Hat…
3 articles · Updated December 10, 2025 -
Critical Vulnerabilities in Fortinet FortiWeb Actively Exploited
Fortinet's FortiWeb web application firewall has been compromised by two critical vulnerabilities, CVE-2025-64446 and CVE-2025-58034, both of which are under active exploitation. The first vulnerability allows…
74 articles · Updated November 28, 2025 -
Over 6,000 SmarterMail Servers Exposed to Critical Vulnerability
Shadowserver researchers identified over 6,000 SmarterMail servers exposed online, likely vulnerable to a critical authentication bypass flaw tracked as CVE-2026-23760. The vulnerability was disclosed by cybersecurity…
2 articles · Updated January 27, 2026
Recent Intelligence Reports
- CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners — Thehackernews · September 3, 2026
- New Veeam vulnerability exposes backup servers to RCE attacks — Bleepingcomputer · June 9, 2026
- CISA warns of SmarterMail RCE flaw used in ransomware attacks — Bleepingcomputer · February 6, 2026
- Shadowserver finds 6,000+ likely vulnerable SmarterMail servers exposed online — Securityaffairs.Co · January 27, 2026
- Microsoft won't fix .NET RCE bug affecting enterprise apps — Theregister · December 10, 2025
- Fortinet unearths second FortiWeb firewall vulnerability in as many weeks — Sdxcentral · November 20, 2025
- Fortinet confirms second 0-day in just four days — Theregister · November 19, 2025
- CC-4717 - Fortinet FortiWeb Authentication Bypass Vulnerability Under Zero — Digital.Nhs.Uk · November 14, 2025