Related Threat Clusters
-
Chinese Hackers Exploit Dell Zero-Day Flaw CVE-2026-22769 Since Mid-2024
A Chinese state-backed hacking group, UNC6201, has been exploiting a critical zero-day vulnerability in Dell RecoverPoint for Virtual Machines since at least mid-2024. The flaw, tracked as CVE-2026-22769, features a…
40 articles · Updated February 17, 2026 -
Microsoft January 2026 Patch Tuesday Addresses 113 Vulnerabilities
In January 2026, Microsoft released its largest Patch Tuesday update in four years, addressing 113 vulnerabilities across Windows, Office, and other products. Among these was a critical zero-day vulnerability,…
2 articles · Updated January 13, 2026 -
Critical Vulnerability CVE-2026-21858 Discovered in n8n Automation Tool
On January 7, 2026, a patch was released for CVE-2026-21858, a maximum severity vulnerability affecting n8n, a workflow automation application. This vulnerability could potentially allow unauthorized access and…
56 articles · Updated January 9, 2026 -
Microsoft Addresses Six Actively Exploited Zero-Day Vulnerabilities
On February 10, 2026, Microsoft released a security update addressing 59 vulnerabilities, including six zero-day flaws that were actively exploited prior to the patch. The vulnerabilities affect various Microsoft…
70 articles · Updated February 10, 2026 -
Microsoft Patches Critical DWM Vulnerabilities in January 2026
On January 13, 2026, Microsoft released a patch for a critical zero-day vulnerability in its Desktop Window Manager (DWM), tracked as CVE-2026-20805, which allowed local attackers to expose sensitive user-mode memory.…
4 articles · Updated January 14, 2026 -
Zscaler Deploys Protections for 9 Microsoft Vulnerabilities
Zscaler has implemented protective measures against nine vulnerabilities identified in the January 2026 Microsoft security bulletins. The company is collaborating with Microsoft through the MAPP program and will…
2 articles · Updated January 14, 2026 -
Ransomware Recovery Costs Surge; Microsoft Addresses Critical Vulnerability
The Sophos State of Ransomware in Enterprise 2025 report reveals that ransomware recovery costs for enterprises have exceeded $2 million, highlighting the ongoing challenge organizations face with this pervasive threat.…
2 articles · Updated January 15, 2026 -
Microsoft Issues Emergency Fix for Azure Virtual Desktop Authentication Issues
Microsoft released an out-of-band update to address credential authentication failures impacting Azure Virtual Desktop and Windows 365 connections. These issues arose following the January 2026 security update and are…
2 articles · Updated January 21, 2026 -
Microsoft Windows Updates Cause Access Issues for Cloud PC Users
Microsoft's January 2026 updates have led to significant access issues for users of Windows 365 and RemoteApp connections. Customers reported credential prompt failures and sign-in issues with their Cloud PC sessions…
9 articles · Updated January 15, 2026 -
CVE-2026-20805: Desktop Windows Manager Vulnerability Added to CISA's KEV Catalogue
The US Cybersecurity and Infrastructure Security Agency (CISA) has added vulnerability CVE-2026-20805 to its Known Exploited Vulnerabilities (KEV) catalogue. This vulnerability affects the Desktop Windows Manager and…
2 articles · Updated January 14, 2026
Recent Intelligence Reports
- CVE-2026-22769: Critical Dell RecoveryPoint Zero-Day Exploited in the Wild — Socprime · February 18, 2026
- Patch Tuesday - February 2026 — Rapid7 · February 11, 2026
- Microsoft Releases Emergency Fix for Azure Virtual Desktop, Windows 365 Authentication Failures — Redmondmag · January 21, 2026
- CVE-2026-0227: Palo Alto Networks Fixes GlobalProtect DoS Flaw Allowing Remote ... — Socprime · January 16, 2026
- CVE-2026-20805: Microsoft Fixes Actively Exploited Windows Desktop Manager Zero — Socprime · January 15, 2026
- Windows Update side effects: Connection errors with Windows 365 — Heise.De · January 15, 2026
- CISA Alerts on Fixed Windows Info-Disclosure Zero-Day Vulnerability — Filmogaz · January 14, 2026
- Microsoft January 2026 Patch Tuesday: 114 flaws addressed, including actively exploited 0 — Scworld · January 14, 2026