Related Threat Clusters
-
Critical Check Point VPN Vulnerability Exploited by Ransomware Gang
Check Point Software Technologies disclosed a critical authentication bypass vulnerability (CVE-2026-50751) affecting its Remote Access VPN and Mobile Access products, with exploitation confirmed since May 7, 2026. The…
46 articles · Updated June 8, 2026 -
Supply Chain Attack Compromises Popular Rust Crates to Deliver Malware
On August 20, 2026, a supply chain attack targeted the Rust ecosystem, compromising the widely used crates arrayref, append-only-vec, and internment. The attackers injected a malicious dependency, proc-macro1, which…
22 articles · Updated August 20, 2026 -
Multiple Vulnerabilities in strongSwan Addressed in Recent Updates
Recent updates for strongSwan, affecting SUSE and Ubuntu systems, have addressed several critical vulnerabilities. The issues include CVE-2026-35328, which can cause an infinite loop in TLS processing, and…
3 articles · Updated April 28, 2026 -
Ivanti EPMM Zero-Day Vulnerability Exploited in Active Attacks
Ivanti has disclosed a zero-day vulnerability (CVE-2026-6973) in its Endpoint Manager Mobile (EPMM) product, which has been actively exploited by attackers. This flaw allows authenticated users with administrative…
24 articles · Updated May 7, 2026 -
Critical Vulnerabilities in Ivanti EPMM Expose Systems to Remote Attacks
Two critical vulnerabilities (CVE-2026-5787 and CVE-2026-5788) were disclosed in Ivanti EPMM versions prior to 12.6.1.1, 12.7.0.1, and 12.8.0.1. CVE-2026-5787 allows attackers to impersonate Sentry hosts and obtain…
2 articles · Updated May 8, 2026 -
Critical openSUSE Erlang 26 Patch Addresses 22 Vulnerabilities
On August 12, 2026, an important patch was released for the openSUSE Erlang 26 system, addressing 22 vulnerabilities. Key issues include CVE-2026-28810, which allows DNS cache poisoning, and CVE-2026-42789, enabling…
5 articles · Updated August 12, 2026 -
Critical Vulnerabilities in Spring Boot's SSL Configuration for Elasticsearch and RabbitMQ
Two critical vulnerabilities have been identified in Spring Boot's auto-configuration for Elasticsearch and RabbitMQ. CVE-2026-40970 affects Elasticsearch, while CVE-2026-40971 impacts RabbitMQ. Both vulnerabilities…
2 articles · Updated April 27, 2026 -
Multiple Vulnerabilities in Palo Alto Networks GlobalProtect App Disclosed
On August 14, 2026, Palo Alto Networks disclosed four critical vulnerabilities (CVE-2026-0296, CVE-2026-0297, CVE-2026-0298, CVE-2026-0299) in the GlobalProtect app affecting Windows, macOS, and Linux systems. These…
5 articles · Updated August 13, 2026 -
Critical RCE Vulnerability in BeyondTrust Software Requires Immediate Patching
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
1495 articles · Updated February 9, 2026 -
Multiple Vulnerabilities in Palo Alto Networks GlobalProtect App Exposed
Palo Alto Networks disclosed two critical vulnerabilities in their GlobalProtect app. CVE-2026-0251, published on 2026-05-13, allows local privilege escalation on Windows, macOS, and Linux, enabling non-administrative…
2 articles · Updated May 14, 2026
Recent Intelligence Reports
- Malicious Rust Crate Arrayref Runs a Build — News.Ycombinator · August 20, 2026
- CVE 2026 0296 — security.paloaltonetworks.com · August 14, 2026
- SUSE erlang26 Important System Patch for 22 Issues Advisory 2026-3579 — Linuxsecurity · August 12, 2026
- TLS Encryption and Compliance — Trustedsec · August 4, 2026
- Check Point patches critical VPN flaw exploited in zero-day attacks | brief — Scworld · June 8, 2026
- Ransomware crims got a month-long head start on Check Point VPN 0 — Theregister · June 8, 2026
- Check Point links VPN zero — Bleepingcomputer · June 8, 2026
- CC-4792 — Digital.Nhs.Uk · June 8, 2026