Related Threat Clusters
-
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
A DNS poisoning campaign has compromised hotel and conference center Wi-Fi gateways to steal Microsoft 365 login credentials from corporate travelers. The campaign has been active since at least June 2026, affecting…
73 articles · Updated July 24, 2026 -
Exploitation of WinRAR CVE-2025-8088 Threatens Ukrainian Organizations
Two Russia-aligned cyber campaigns are exploiting the WinRAR vulnerability CVE-2025-8088 against Ukrainian targets nearly a year after it was patched. The flaw, a path traversal vulnerability, allows attackers to write…
19 articles · Updated June 8, 2026 -
OceanLotus Shifts Focus to Domestic Espionage with SPECTRALVIPER Attacks
From mid-2024 to early 2026, the Vietnam-aligned APT group OceanLotus has intensified its focus on domestic espionage, utilizing the SPECTRALVIPER backdoor in two major campaigns. The first campaign targeted a…
17 articles · Updated June 11, 2026 -
TA488 Exploits Outlook Web Access CVE-2026-42897 in New Campaign
TA488 has launched a campaign exploiting CVE-2026-42897, a cross-site scripting flaw in Outlook Web Access (OWA). This vulnerability, disclosed by Microsoft on May 14, 2026, allows attackers to deploy a persistent…
3 articles · Updated July 30, 2026 -
Critical Vulnerabilities in Oracle Coherence and Access Manager Disclosed
Multiple vulnerabilities affecting Oracle Coherence and Oracle Access Manager have been disclosed. CVE-2026-60248 and CVE-2026-60295 are critical vulnerabilities in Oracle Coherence, allowing attackers to potentially…
10 articles · Updated July 23, 2026 -
New Cyber Extortion Groups Target Critical Infrastructure with Phishing Tactics
Two threat groups, Cordial Spider and Snarky Spider, affiliated with The Com, are targeting U.S. organizations across various critical infrastructure sectors for rapid data theft and extortion. Their operations,…
5 articles · Updated May 1, 2026 -
Apollo Global Management Data Breach from Social Engineering Attack
Apollo Global Management confirmed a data breach resulting from a social engineering attack that occurred between July 6 and July 10, 2026. Hackers gained unauthorized access to the firm's cloud systems, compromising…
24 articles · Updated August 21, 2026 -
BlackFile Group Launches Vishing and Data Extortion Campaign Against Retail and Hospitality
Since February 2026, the BlackFile Group has targeted retail and hospitality sectors, employing vishing attacks to steal employee credentials. Palo Alto Networks' Unit 42 reported that the group uses spoofed VoIP…
2 articles · Updated April 27, 2026 -
Uber Freight Investigates Major Data Breach by Helix Hacking Group
Uber Freight is currently investigating a significant data security incident after the Helix hacking group claimed to have stolen nearly one million files from its systems. The breach was announced on August 6, 2026,…
14 articles · Updated August 12, 2026 -
FunFoneFarm: AI-Enhanced Phone Farms Enable Scams at Low Cost
HUMAN Security's Satori Threat Intelligence team has unveiled a new ecosystem called FunFoneFarm, which allows threat actors to easily launch and automate scams using AI-enhanced phone farms. These phone farms can be…
5 articles · Updated July 28, 2026
Recent Intelligence Reports
- Apollo discloses data breach from ongoing wave of attacks hitting financial sector — Cyberscoop · August 21, 2026
- Quest Hotels breach puts vendor liability under the microscope — Insurancebusinessmag · August 20, 2026
- When legacy hotel systems become a cybersecurity liability — Hotelmanagement-Network · August 20, 2026
- Unc6671 Targets Financial Services And Enterprise Cloud Environments — cloud.google.com · August 18, 2026
- Massive Azure Exfiltration Campaign Exposes Millions of Enterprise Records via ... — Infostealers · August 16, 2026
- Ransomware Attacks Surge 87% as Nigeria Records 4975 Weekly Cyberattacks — Techeconomy.Ng · August 13, 2026
- Uber Freight investigating data security incident after Helix claims breach | brief — Scworld · August 12, 2026
- Uber Freight investigating data security incident after Helix claims breach | brief — Scmagazine · August 12, 2026