CVE-2026-21513 is a vulnerability tracked across 10 threat clusters and 18 intelligence report mentions on ThreatCluster. First observed February 10, 2026; most recent activity April 29, 2026.
APT28 has actively exploited a zero-day vulnerability in MSHTML affecting all Windows versions, which has a CVSS score of 8.8. The vulnerability allows for security bypass and poses significant risks to users. A patch…
Russian cyber group APT28, also known as Fancy Bear, has been exploiting vulnerabilities in TP-Link and MikroTik routers to conduct large-scale DNS hijacking operations. This campaign, which has affected over 18,000…
A security researcher, known as Chaotic Eclipse, has publicly released exploit code for a zero-day vulnerability in Windows, dubbed BlueHammer, allowing local privilege escalation to SYSTEM or elevated administrator…
Researchers have discovered a vulnerability in Notepad's newly added Markdown support that can be exploited for remote code execution (RCE). This flaw, tracked as CVE-2026-20841 with a severity score of 8.8, was…
Microsoft has released a critical security patch for a zero-day vulnerability (CVE-2026-21513) in the MSHTML Framework, which was actively exploited before the fix was available. This vulnerability allows attackers to…
On February 10, 2026, Microsoft released a security update addressing 59 vulnerabilities, including six zero-day flaws that were actively exploited prior to the patch. The vulnerabilities affect various Microsoft…
Microsoft has resolved CVE-2026-21513, a vulnerability with a CVSS score of 8.8, after confirming its exploitation in the wild. The flaw, located in the MSHTML component and specifically in ieframe.dll, allowed…
Russia has launched a criminal investigation into Pavel Durov, the founder of Telegram, amid escalating tensions. This action follows the arrest of two teenagers in connection with a hacking incident involving South…
Microsoft has released updates to address a critical zero-day vulnerability in Windows Shell, tracked as CVE-2026-21510, which is actively being exploited. This security flaw allows remote attackers to bypass essential…
On February 10, 2026, Adobe and Microsoft released security patches addressing numerous vulnerabilities, including 36 CVEs published on the same day. Notably, three CVEs (CVE-2026-21510, CVE-2026-21514, and…