CVE-2022-21894 is a vulnerability tracked across 3 threat clusters and 2 intelligence report mentions on ThreatCluster. First observed February 6, 2026; most recent activity June 16, 2026.
ESET researchers have identified two new Windows variants of the SprySOCKS backdoor, previously exclusive to Linux, attributed to the Chinese cyberespionage group FishMonger. The variants, labeled WIN_DRV and WIN_PLUS,…
ESET researchers have discovered 11 outdated UEFI shim bootloaders, all version 0.9 or below, that can bypass UEFI Secure Boot protections on systems trusting Microsoft's 2011 certificate. These vulnerabilities allow…
A new paper by Tod Beardsley, former CISA KEV Section Chief, provides insights into the CISA Known Exploited Vulnerability (KEV) catalog. It includes a free tool designed to assist security teams in effectively…