Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Acronis Threat Research Unit has identified a new malware campaign named PATCHCORD, targeting Afghan telecom providers and critical infrastructure in South Asia. The malware, a custom backdoor written in C/C++, is delivered through fake VPN installers impersonating Afghan Telecom. The campaign also...
Check Point, Kaspersky, and Tanium have released patches for severe vulnerabilities in their products. Check Point's CVE-2026-91843 allows unauthenticated remote code execution through the login process, affecting Security Management and Log Server products. Although there is no evidence of in-the-w...
Recent cybersecurity articles highlight several new tools and exploits that pose significant risks to organizations. The CyberStrikeAI exploit, released on September 19, 2026, showcases an AI-based cybersecurity tool that can be misused if not properly controlled. The Reconnoitre and ReconVault tool...
The regreSSHion vulnerability (CVE-2024-6387) was identified by the Qualys Threat Research Unit. This unauthenticated remote code execution (RCE) vulnerability poses a significant risk to OpenSSH, which is widely regarded for its security. The discovery marks a critical finding in cybersecurity, com...