Related Threat Clusters
-
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
16 articles · Updated July 22, 2026 -
Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
753 articles · Updated April 29, 2026 -
Trust Becomes the New Attack Surface in Cybersecurity
In the first half of 2026, attackers increasingly targeted cloud and SaaS environments, shifting focus from traditional malware to compromising trusted identities. Darktrace reported that 67% of phishing emails passed…
2 articles · Updated August 4, 2026 -
PamStealer: New macOS Infostealer Targets Users via Fake Maccy Manager
PamStealer is a newly identified macOS infostealer that masquerades as the legitimate Maccy clipboard manager. The malware employs a two-stage attack method, starting with a malicious AppleScript that downloads a…
86 articles · Updated July 3, 2026 -
SourTrade Malvertising Campaign Evades Detection by Building Malware in Browsers
SourTrade is a malvertising operation that has been active since late 2024, targeting cryptocurrency users through fake ads that lead to counterfeit trading platforms. The campaign affects users across Asia-Pacific,…
11 articles · Updated July 24, 2026 -
Oncology Institute Data Breach Exposes Patient Data via Third-Party Vendor
On May 20, 2026, The Oncology Institute, Inc. was notified of unauthorized access to its systems by Kroll, a third-party vendor. The incident, confirmed in an SEC filing on May 22, 2026, involved patient data…
6 articles · Updated May 26, 2026 -
Adobe Breach Allegedly Exposes 13 Million Support Tickets and Employee Records
Cybersecurity analysts have reported an alleged breach at Adobe, purportedly executed by a threat actor known as 'Mr. Raccoon.' The breach may have exposed sensitive data, including 13 million customer support tickets…
4 articles · Updated April 3, 2026 -
Rise in Infostealer Attacks Targeting Enterprise SSO Credentials
Infostealer malware is increasingly exposing enterprise identity credentials, with 16% of infections involving Single Sign-On or identity provider details, according to Flare's analysis of 18.7 million logs from 2025. A…
97 articles · Updated February 4, 2026 -
GuLoader Exploits Polymorphic Code and Cloud Hosting for Malware Delivery
GuLoader, also known as CloudEyE, has become a persistent threat in cybersecurity, functioning primarily as a downloader for secondary malware payloads. It retrieves and executes various malicious software, including…
2 articles · Updated February 10, 2026
Recent Intelligence Reports
- Guide Infostealer Malware — www.infosecurityeurope.com · August 18, 2026
- T1539 — attack.mitre.org · July 23, 2026
- 003 — attack.mitre.org · July 23, 2026
- MITRE ATT&CK T1195 — attack.mitre.org · May 26, 2026
- Alleged Adobe breach exposes customer support tickets — Cybernews · April 3, 2026
- GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation — Cybersecuritynews · February 10, 2026