Related Threat Clusters
-
Microsoft Office 0-day Vulnerability CVE-2026-21509 Exploited; Emergency Fix Released
Microsoft Office 2016 to 2024 and Office 365 apps are affected by a zero-day vulnerability (CVE-2026-21509) that is currently being exploited in attacks. Microsoft has released emergency security updates to address this…
7 articles · Updated January 27, 2026 -
Critical OpenSSL Vulnerability CVE-2025-15467 Patched
OpenSSL has patched a high-severity stack buffer overflow vulnerability, tracked as CVE-2025-15467. This flaw allows unauthenticated attackers to trigger denial-of-service conditions and potentially execute remote code…
5 articles · Updated January 29, 2026 -
APT28 Exploits Vulnerable Routers for Global DNS Hijacking Campaign
Russian cyber group APT28, also known as Fancy Bear, has been exploiting vulnerabilities in TP-Link and MikroTik routers to conduct large-scale DNS hijacking operations. This campaign, which has affected over 18,000…
100 articles · Updated April 7, 2026 -
APT28's Operation MacroMaze: Macro Malware Campaign Targets Europe
APT28, a Russia-linked advanced persistent threat group, conducted a cyberespionage campaign named Operation MacroMaze from September 2025 to January 2026. The campaign involved deploying macro malware embedded in…
3 articles · Updated February 24, 2026 -
Sednit Group Resurfaces with SlimAgent Keylogger in Ukraine
ESET researchers have identified the resurgence of the Sednit group, a notorious Russian cybercriminal organization, linked to the deployment of a keylogger named SlimAgent in Ukraine. This activity is traced back to a…
4 articles · Updated March 10, 2026 -
Cyberattacks Target Ukraine and EU via Microsoft Office Vulnerability
CERT-UA has reported a new wave of cyberattacks targeting Ukrainian government agencies and EU organizations, exploiting the Microsoft Office vulnerability CVE-2026-21509. Attackers are using malicious emails disguised…
59 articles · Updated February 2, 2026 -
Microsoft Office Vulnerability CVE-2026-21509 Under Active Exploitation
A critical vulnerability (CVE-2026-21509) in Microsoft Office has been identified, allowing attackers to exploit the application's reliance on untrusted inputs for security decisions. This flaw enables the bypassing of…
1 article · Updated January 27, 2026 -
Emergency Patch Released for Microsoft Office Due to Exploited Vulnerability
Microsoft has issued an emergency patch for a vulnerability, CVE-2026-21509, affecting Microsoft 365 Apps for Enterprise and Office 2019 and 2016. The flaw is currently being exploited in phishing attacks targeting…
1 article · Updated January 26, 2026 -
UK Cyberattacks Surge, Microsoft Office Vulnerability Discovered
Cyberattacks in the UK increased by 129% last year, with the NCSC managing four major incidents weekly. Concurrently, Microsoft issued emergency updates for a high severity vulnerability (CVE-2026-21509) in Office…
2 articles · Updated January 28, 2026 -
Fortinet Confirms Exploitation of FortiCloud SSO Bypass Vulnerability
Fortinet has confirmed that attackers are actively exploiting a vulnerability in FortiCloud's single sign-on (SSO) authentication, affecting even fully patched devices. The exploitation allows unauthorized access, with…
35 articles · Updated January 23, 2026
Recent Intelligence Reports
- Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities — Trendmicro · March 26, 2026
- Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities — Trendmicro · March 26, 2026
- Pawn Storm Campaign Deploys PRISMA, Targets Government and Critical Infrastructure Entities — Trendmicro · March 26, 2026
- Pawn Storm Campaign Deploys PRISMEX, Targets Government and Critical Infrastructure Entities — Feeds.Trendmicro · March 26, 2026
- Sednit reloaded: Back in the trenches — Welivesecurity · March 10, 2026
- Operation MacroMaze: APT28 Exploits Microsoft Office Macros and Webhook[.]site for Spear ... — Rescana · February 24, 2026
- Fancy Bear Hackers Exploiting Microsoft Zero — Cybersecuritynews · February 10, 2026
- Hackers Exploit Zero-Day Vulnerability in Microsoft Office for Attacks — Uk.News.Yahoo · February 4, 2026