Related Threat Clusters
-
Cl0p Ransomware Group Claims Data Theft from Nearly 50 Companies
The Cl0p hacking group has claimed to have stolen significant data from nearly 50 companies, including Shell, Philips, General Electric (GE), and Fiserv. The group reported stealing approximately 89GB from Shell and…
30 articles · Updated August 14, 2026 -
Critical Memory Overread Vulnerability in Citrix NetScaler Exploited
Citrix NetScaler ADC and Gateway are affected by CVE-2026-3055, a critical vulnerability due to insufficient input validation during SAML authentication, leading to memory overread. Exploitation attempts have surged,…
2 articles · Updated May 29, 2026 -
Clop Ransomware Exploits Critical Vulnerability in Windchill and FlexPLM
The Clop ransomware gang is actively exploiting a critical vulnerability (CVE-2026-12569) in PTC Windchill and FlexPLM systems, allowing unauthenticated remote code execution. This exploitation involves deploying JSP…
28 articles · Updated July 24, 2026 -
Oracle CSPU May 2026: 35 Critical Vulnerabilities Addressed
Oracle released its first Critical Security Patch Update (CSPU) on May 28, 2026, addressing 35 vulnerabilities across multiple product families, including Oracle Database, Oracle REST Data Services, and Oracle…
68 articles · Updated May 29, 2026 -
Munich Re Warns of Escalating Cyber Threats Driven by AI and Geopolitical Tensions
Munich Re has reported that cyberattacks are becoming increasingly sophisticated and costly, driven by advancements in artificial intelligence. The reinsurer noted that cybercrime could soon rival the world's largest…
3 articles · Updated March 25, 2026 -
New Cyber Extortion Groups Target Critical Infrastructure with Phishing Tactics
Two threat groups, Cordial Spider and Snarky Spider, affiliated with The Com, are targeting U.S. organizations across various critical infrastructure sectors for rapid data theft and extortion. Their operations,…
5 articles · Updated May 1, 2026 -
New Ted Backdoor Targets South Korean Media and Automotive Sectors
A new Linux toolkit, named the 'ted backdoor', has been discovered targeting South Korean organizations in the media and automotive sectors. This toolkit, attributed to North Korean state actors, integrates into HAProxy…
4 articles · Updated September 4, 2026 -
Record Surge in Software Supply Chain Attacks and Ransomware in October 2025
In October 2025, software supply chain attacks reached a record high, with 41 incidents reported, marking a 30% increase from previous peaks. Threat actors have been increasingly active on dark web leak sites, with…
3 articles · Updated November 7, 2025 -
German Manufacturers Face Rising Cyber Exposure Amid Digital Transformation
A report from Rockwell Automation reveals that 60% of German manufacturers experienced cyberattacks in the past year, despite significant investments in cybersecurity. The industrial sector is shifting focus from…
4 articles · Updated May 19, 2026 -
Global JS Malware Campaign Leveraging GHOSTYNETWORKS and OMEGATECH Hosting
In March 2026, hackers exploited GHOSTYNETWORKS and OMEGATECH to deploy a JavaScript backdoor via malspam targeting various sectors, including energy and finance. The operation involved sending malicious emails with ZIP…
2 articles · Updated May 28, 2026
Recent Intelligence Reports
- Minister to meet Jaguar Land Rover boss as thousands of job cuts expected — Bbc · September 6, 2026
- New Linux toolkit found in trojanized HAProxy targeting South Korean organizations — Scworld · September 4, 2026
- New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic — Thehackernews · September 4, 2026
- Quantum eMotion's Quantum Entropy Source Submitted for NIST Validation — Investornews · August 26, 2026
- Clop Windchill Flexplm Exploitation — ransom-isac.org · August 18, 2026
- CVE-2026-12569 — ransom-isac.com · August 17, 2026
- Cyber gang claims to have breached dozens of multinationals, stolen data — Computing · August 14, 2026
- Silicon photonics at scale will power AI data centers — informa.blueconic.net · August 3, 2026