Related Threat Clusters
-
Logitech Confirms Data Breach from Zero-Day Exploit by Clop Gang
Logitech has confirmed a data breach resulting from a zero-day exploit that compromised its internal IT systems. The attack, attributed to the Clop extortion group, has likely affected customer data, raising concerns…
23 articles · Updated November 17, 2025 -
Critical Unauthenticated RCE Vulnerability in LiteLLM Exploited in the Wild
A critical command injection vulnerability, CVE-2026-42271, in LiteLLM, an open-source AI gateway, allows unauthenticated remote code execution (RCE) when chained with CVE-2026-48710, a Host header validation bypass in…
17 articles · Updated June 9, 2026 -
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
The North Korean hacking group Lazarus exploited a zero-day vulnerability (CVE-2026-68820) in the Windows Ancillary Function Driver for WinSock (afd.sys) to gain SYSTEM-level access to defense sector systems. This…
33 articles · Updated August 12, 2026 -
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
Since July 2025, Russian state-backed hackers, known as Laundry Bear, have exploited a zero-click vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite to infiltrate Western government and commercial…
82 articles · Updated July 23, 2026 -
GRU Compromises Home Routers in 23 States to Steal Outlook Credentials
The FBI and partners disrupted a covert network of compromised TP-Link and MikroTik routers exploited by the Russian GRU (APT28) to steal Outlook credentials. This operation, known as Operation Masquerade, revealed that…
6 articles · Updated May 22, 2026 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
A DNS poisoning campaign has compromised hotel and conference center Wi-Fi gateways to steal Microsoft 365 login credentials from corporate travelers. The campaign has been active since at least June 2026, affecting…
73 articles · Updated July 24, 2026 -
Russia's Hybrid Warfare Threatens UK with Cyberattacks and Sabotage
Russia has escalated threats against the UK following its support for Ukraine, warning of 'consequences' for British involvement. Concurrently, Russian-linked cyberattacks, including a ransomware attack on the pathology…
15 articles · Updated August 25, 2026 -
Exploitation of WinRAR CVE-2025-8088 Threatens Ukrainian Organizations
Two Russia-aligned cyber campaigns are exploiting the WinRAR vulnerability CVE-2025-8088 against Ukrainian targets nearly a year after it was patched. The flaw, a path traversal vulnerability, allows attackers to write…
19 articles · Updated June 8, 2026 -
Ghost CMS SQL Injection Exploits 700+ Sites in Ongoing ClickFix Campaign
A critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS is being actively exploited in a large-scale cyberattack affecting over 700 websites, including those of Harvard University, Oxford University, Auburn…
17 articles · Updated May 25, 2026
Recent Intelligence Reports
- DNS Abuse and Criminal Infrastructure — News.Ycombinator · August 30, 2026
- McKesson discloses breach after ShinyHunters claims patient data theft — Bleepingcomputer · August 28, 2026
- Hackers Target AI Infrastructure With RCE and API Key Theft — Cypro · August 28, 2026
- Household names co-sign open letter on AI cybersecurity threat — Siliconrepublic · August 28, 2026
- Five Eyes back UK-led action to disrupt global fraud networks | Home Office — Wired-Gov · August 28, 2026
- See What 300 Leaders Found Shipping 10–50× More Code? Learn How to Keep Security in Control AI is helping teams ship code 10–50× faster. This session shows how to keep security from falling behind. — thehacker.news · August 28, 2026
- 100+ Tech and Security Organizations Call for Global Cyber Defense Surge Against AI Attacks — Cybersecuritynews · August 28, 2026
- U.S. Says Chinese Hackers Targeted Senate, NASA, Hospitals, and More — Time · August 27, 2026