Related Threat Clusters
-
CISA Warns U.S. After Cyberattack on Poland's Energy Grid Linked to Russian Hackers
A cyberattack targeting Poland's energy grid in December has been linked to a Russian government-affiliated hacking group. The attack affected 30 wind and photovoltaic farms and prompted the Cybersecurity and…
9 articles · Updated February 10, 2026 -
DynoWiper Malware Targets Polish Energy Sector in Late 2025 Attacks
In late December 2025, Russian-linked hackers from the Sandworm group launched attacks using a new wiper malware named DynoWiper, specifically targeting a Polish energy company. The malware is designed to cause…
2 articles · Updated February 3, 2026 -
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
Cisco SD-WAN Zero-Day Exploited by Threat Actor Since 2023
A cyber threat actor has been exploiting a zero-day vulnerability (CVE-2026-20127) in Cisco Catalyst SD-WAN Controller since 2023. This vulnerability allows unauthenticated remote attackers to bypass authentication and…
104 articles · Updated February 25, 2026 -
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
Since July 2025, Russian state-backed hackers, known as Laundry Bear, have exploited a zero-click vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite to infiltrate Western government and commercial…
82 articles · Updated July 23, 2026 -
Microsoft SharePoint Attacks: Over 400 Victims Including US Agencies
A series of attacks exploiting zero-day vulnerabilities in Microsoft SharePoint has compromised over 400 organizations, including multiple US government agencies. The attacks, attributed to Chinese threat groups such as…
2 articles · Updated August 12, 2026 -
GRU Compromises Home Routers in 23 States to Steal Outlook Credentials
The FBI and partners disrupted a covert network of compromised TP-Link and MikroTik routers exploited by the Russian GRU (APT28) to steal Outlook credentials. This operation, known as Operation Masquerade, revealed that…
6 articles · Updated May 22, 2026 -
Sandworm Launches Wiper Malware Campaign Against Ukrainian Organizations
The Russian state-backed hacking group Sandworm has intensified its operations against Ukrainian organizations by deploying data-wiping malware. This campaign targets critical sectors, including the grain industry, and…
6 articles · Updated November 7, 2025 -
Cyber Attack on Polish Energy Facilities by Russian-Linked Groups
Russian-linked cyber groups have targeted multiple energy facilities in Poland, exploiting default ICS credentials. The attacks have led to significant disruptions in operations, with Poland's CERT releasing a report…
2 articles · Updated February 3, 2026 -
Operation Escaneo Targets Latin American Critical Infrastructure
Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…
4 articles · Updated June 18, 2026
Recent Intelligence Reports
- Arqit, Es’hailSat and AIEE Demonstrate Quantum-Safe Satellite Security — Uk.Finance.Yahoo · September 1, 2026
- Russia-Aligned UAC — Thehackernews · September 1, 2026
- Inside A Multi Agent Ai Framework Used To Compromise Government Entities In Asia — www.dreamgroup.com · August 29, 2026
- UK Cybersecurity Stocks With Critical Infrastructure Exposure Retail Investors May Miss — Simplywall.St · August 27, 2026
- The Infrastructure Quartermaster Inside A China Nexus State Enablement Model — www.lumen.com · August 27, 2026
- U.S. Says Chinese Hackers Targeted Senate, NASA, Hospitals, and More — Time · August 27, 2026
- Manchester Airports Group hit by cyber security breach — Adsadvance · August 27, 2026
- Federal authorities disrupt China — Cybersecuritydive · August 27, 2026