Related Threat Clusters
-
APT41 Cyber-Espionage Tactics Explored in Ransomware Emulations
The article discusses the fifth volume of AttackIQ’s Ransom Tales series, which simulates the tactics of ransomware families REvil, DarkSide, and BlackMatter. These emulations are designed to help organizations validate…
14 articles · Updated January 6, 2026 -
Gainsight Apps Breach Exposes Data of Over 200 Salesforce Customers
A significant supply chain attack has compromised Salesforce-stored data from more than 200 companies through applications published by Gainsight. Salesforce confirmed unauthorized access to customer data and is…
30 articles · Updated November 23, 2025 -
Surge in Scanning Activity Targeting SonicWall Firewalls Raises Alarm
A significant increase in scanning activity targeting SonicWall firewall management interfaces has been detected, with nearly 597,000 sessions recorded on May 12, 2026. This spike, reported by threat intelligence firm…
2 articles · Updated May 25, 2026 -
PentestGPT Launches as Autonomous Penetration Testing Framework
PentestGPT has been released as an open-source penetration testing framework that automates the entire process of reconnaissance, exploitation, and reporting. It utilizes advanced language models, Claude Code and Codex,…
2 articles · Updated August 12, 2026 -
Data Breach Affects Over 200 Companies via Gainsight Integration with Salesforce
Hackers compromised Salesforce-stored data from more than 200 companies through a supply chain attack involving Gainsight applications. Google confirmed the breach, stating that unauthorized access to customer data was…
44 articles · Updated November 27, 2025 -
AI-Driven Cyber Attacks Achieve Instantaneous Execution
A Chinese state-sponsored group has deployed an AI agent to automate cyber attacks, significantly reducing response times to zero. The GTG-1002 campaign utilized known vulnerabilities and open-source tools, compressing…
1 article · Updated November 25, 2025 -
VoidLink Malware Targets Linux Cloud Environments with Advanced Techniques
A new malware framework named VoidLink has emerged, specifically targeting Linux systems in cloud environments. It utilizes advanced evasion techniques and self-deletion capabilities, and is written in the Zig…
18 articles · Updated January 13, 2026 -
Black Kite Launches ThreatTrace for Enhanced Third-Party Risk Detection
Black Kite has introduced ThreatTrace, a new feature designed to enhance the detection of indicators of compromise in third-party environments. Utilizing NetFlow and DNS telemetry, ThreatTrace expands Black Kite's…
3 articles · Updated January 30, 2026 -
Reconnaissance Campaign Targets Citrix Gateways Using 63K+ Proxies
Between January 28 and February 2, 2026, GreyNoise tracked a coordinated reconnaissance campaign targeting Citrix ADC and NetScaler Gateways. Attackers utilized over 63,000 residential proxies and AWS infrastructure to…
2 articles · Updated February 4, 2026 -
AI-Driven Cyber Attacks and Defenses Expected in 2026
Security leaders predict that 2026 will see a significant increase in AI-driven cyber attacks and defenses. Key players in the cybersecurity industry, including WatchGuard Technologies and KnowBe4, anticipate rising…
1 article · Updated December 10, 2025
Recent Intelligence Reports
- PentestGPT turns Claude Code and Codex into an autonomous pentester — Feeds.4Sysops · August 12, 2026
- Hackers Actives Scanning SonicWall Firewall Interfaces – 597,000 Sessions Observed — Cybersecuritynews · May 25, 2026
- Unsw Nb15 Dataset — research.unsw.edu.au · April 12, 2026
- GreyNoise tracks massive Citrix Gateway recon using 63K+ residential proxies and AWS — Securityaffairs.Co · February 4, 2026
- Black Kite unveils ThreatTrace to bolster third-party risk — Securitybrief.Asia · January 30, 2026
- New Chinese-Made Malware Framework Targets Linux — Infosecurity-Magazine · January 13, 2026
- Has cyber insurance lost the war with AI? — Globalreinsurance · January 7, 2026
- AI-driven cyber wars to reshape security in 2026 — Itbrief.Au · December 10, 2025