Brickstorm is a malware family tracked across 23 threat clusters and 63 intelligence report mentions on ThreatCluster. First observed December 4, 2025; most recent activity June 5, 2026.
The Chinese espionage group UNC5221, also known as VerdantBamboo, has been using the Brickstorm backdoor and new malware variants Plenet and AgentPSD to maintain access to compromised Microsoft 365 environments.…
A Chinese threat actor known as VerdantBamboo compromised a company's network through a managed service provider (MSP) over 18 months. The initial breach involved a Linux-based Egnyte Storage Sync appliance, which was…
Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025, a rise from 78 in 2024. Less than half of these vulnerabilities were attributed to specific threat actors, with spyware vendors…
A Chinese state-backed hacking group, UNC6201, has been exploiting a critical zero-day vulnerability in Dell RecoverPoint for Virtual Machines since at least mid-2024. The flaw, tracked as CVE-2026-22769, features a…
Hackers are increasingly targeting newly disclosed vulnerabilities in third-party software to access cloud environments, with the time frame for such attacks decreasing significantly. Google reports a notable decline in…
A malicious Python package named 'parsimonius' was uploaded to the Python Package Index (PyPI), mimicking the legitimate 'parsimonious' library. This typosquatting attack exploited developer trust, leading to 2,474…
VECT 2.0 ransomware has emerged as a significant threat, leaving victims unable to recover files even with the attackers' decryptor. This ransomware employs a flawed design that discards nonces for earlier parts of…
Chinese state-sponsored actors have utilized Brickworm malware to breach critical US infrastructure, targeting government and IT networks globally. The malware specifically exploits vulnerabilities in VMware vSphere and…
UK small and medium-sized enterprises (SMEs) are increasingly vulnerable to sophisticated AI-driven scams, as highlighted by recent reports. The emergence of 'AI scams 2.0' combines traditional social engineering…
A recent survey indicates that 80% of critical national infrastructure (CNI) providers in the UK face downtime costs ranging from £100,000 to £5 million due to cyber-attacks targeting operational technology (OT). The…