Related Threat Clusters
-
Critical SmarterMail Vulnerability Allows Remote Code Execution
A critical remote code execution vulnerability, CVE-2025-52691, has been found in SmarterTools' SmarterMail solution. This flaw has a maximum CVSS score of 10.0, indicating its severe potential impact on systems using…
2 articles · Updated January 9, 2026 -
Iranian APT Groups Target Israeli Organizations with Modular C2 Frameworks
In 2026, Iranian APT groups, notably Cavern Manticore and OilRig, have intensified cyber operations against Israeli organizations, primarily in the IT and government sectors. Cavern Manticore employs a modular…
10 articles · Updated July 6, 2026 -
Critical SmarterMail Vulnerability Allows Unauthenticated Remote Code Execution
The Cyber Security Agency of Singapore (CSA) has issued a high-priority alert regarding a critical vulnerability in SmarterMail, tracked as CVE-2025-52691. This flaw allows attackers to execute arbitrary code remotely…
4 articles · Updated December 31, 2025 -
Ransomware Exploits Critical SmarterMail Vulnerability CVE-2026-24423
A critical vulnerability in SmarterTools' SmarterMail, identified as CVE-2026-24423, is being actively exploited in ransomware attacks. The flaw allows unauthenticated remote code execution via malicious HTTP requests,…
35 articles · Updated February 6, 2026 -
Critical RCE Vulnerability in BeyondTrust Software Requires Immediate Patching
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
1484 articles · Updated February 9, 2026 -
Ransomware Fuels Surge in Global Cyberattacks
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
1908 articles · Updated February 12, 2026 -
SmarterTools SmarterMail Pre-Auth RCE Vulnerability Discovered
A pre-authentication remote code execution vulnerability (CVE-2025-52691) was identified in SmarterTools SmarterMail. The vulnerability has been addressed with a patch, ensuring that affected users can secure their…
2 articles · Updated January 8, 2026 -
Critical Vulnerability in SmarterMail Allows Remote Code Execution
SmarterTools has issued an urgent security advisory for a critical vulnerability in SmarterMail, tracked as CVE-2025-52691. This flaw enables attackers to execute remote code on affected mail servers, posing a…
6 articles · Updated December 30, 2025 -
SmarterMail Authentication Bypass Vulnerability Actively Exploited
A critical authentication bypass vulnerability in SmarterTools' SmarterMail, identified as WT-2026-0001, is being actively exploited. The flaw allows unauthenticated attackers to reset admin passwords and gain full…
3 articles · Updated January 23, 2026 -
Oracle Products Vulnerable to Remote Code Execution and Ransomware Attacks
Multiple vulnerabilities affecting Oracle products have been identified, including CVE-2025-61882 and CVE-2025-61884, which allow for remote code execution. Additionally, ransomware variants such as Clop and Medusa are…
1 article · Updated January 12, 2026
Recent Intelligence Reports
- NVD - CVE-2025-52691 — nvd.nist.gov · July 8, 2026
- Active Exploitation Alert: Iranian Cavern Manticore APT Abuses SysAid Supply Chain ... — Rescana · July 7, 2026
- Microsoft links Medusa ransomware affiliate to zero — Bleepingcomputer · April 6, 2026
- Ransomware attackers are exploiting critical SmarterMail vulnerability (CVE-2026-24423) — Feeds2.Feedburner · February 6, 2026
- SmarterTools SmarterMail RCE | Outbreak Alert — Fortiguard · January 29, 2026
- SmarterTools SmarterMail RCE — Filestore.Fortinet · January 29, 2026
- SmarterMail auth bypass flaw now exploited to hijack admin accounts — Bleepingcomputer · January 22, 2026
- 12th January — Research.Checkpoint · January 12, 2026