Related Threat Clusters
-
Akira Ransomware Group Targets Critical Infrastructure, Extracts $42 Million
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
9 articles · Updated November 14, 2025 -
Israel Urges Strengthened Cybersecurity for Remote Access Amid Rising Threats
The Israel National Cyber Directorate has issued urgent guidelines to enhance the security of remote access systems, including VPNs and firewalls, due to increased targeting by APT groups. These guidelines come amid a…
2 articles · Updated June 9, 2026 -
Critical Check Point VPN Vulnerability Exploited by Ransomware Gang
Check Point Software Technologies disclosed a critical authentication bypass vulnerability (CVE-2026-50751) affecting its Remote Access VPN and Mobile Access products, with exploitation confirmed since May 7, 2026. The…
46 articles · Updated June 8, 2026 -
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
A DNS poisoning campaign has compromised hotel and conference center Wi-Fi gateways to steal Microsoft 365 login credentials from corporate travelers. The campaign has been active since at least June 2026, affecting…
73 articles · Updated July 24, 2026 -
Massive Data Breach at Change Healthcare Affects 190 Million Americans
In February 2024, Change Healthcare suffered a ransomware attack attributed to the ALPHV group, impacting approximately 190 million individuals, making it the largest medical data breach in U.S. history. The attack…
3 articles · Updated June 18, 2026 -
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
In early 2026, the Iranian APT group MuddyWater launched cyberattacks against U.S. banking, a major airport, and Israeli operations of a U.S.-based software company. The attacks intensified in March, coinciding with…
16 articles · Updated July 22, 2026 -
Cyberattack on Polish Energy Sector Exploits Private APN Vulnerability
In December 2025, hackers breached a Polish combined heat and power (CHP) plant using a private Access Point Name (APN) to access the operational technology network. The attack, attributed to the Russian Electrum threat…
8 articles · Updated August 10, 2026 -
MikroTik RouterOS Vulnerabilities Under Active Exploitation
CERT Polska has identified six critical vulnerabilities in MikroTik RouterOS, with two of them forming an attack chain named MikroTrick. This chain allows attackers to gain full administrative control of devices via SSH…
16 articles · Updated September 6, 2026 -
AI-Generated Exploits Target Siemens PLCs in Critical Infrastructure
On August 19, 2026, U.S. agencies issued a joint advisory confirming that threat actors are using AI-generated exploitation scripts to target Siemens S7 Series PLCs across critical infrastructure sectors, including…
37 articles · Updated August 19, 2026 -
Chinese APT VerdantBamboo Exploits Brickstorm Malware for Long-term Network Access
The Chinese espionage group UNC5221, also known as VerdantBamboo, has been using the Brickstorm backdoor and new malware variants Plenet and AgentPSD to maintain access to compromised Microsoft 365 environments.…
5 articles · Updated June 5, 2026
Recent Intelligence Reports
- Macnica launches ANTERAS DarkWeb as Japan ransomware cases hit 1,021 — Jp.Ibtimes · September 8, 2026
- Critical MikroTik Vulnerability - Patch Now, (Sun, Sep 6th) — Isc.Sans.Edu · September 6, 2026
- Attackers Hijack MikroTik Routers Through Internet — Thehackernews · September 6, 2026
- McKesson discloses breach after ShinyHunters claims patient data theft — Bleepingcomputer · August 28, 2026
- U.S. Says Chinese Hackers Targeted Senate, NASA, Hospitals, and More — Time · August 27, 2026
- US says Chinese hackers broke into Justice Department, NASA, Federal Reserve, Senate — Channelnewsasia · August 27, 2026
- 005 — attack.mitre.org · August 20, 2026
- French taxpayers' data stolen in hack of Finance Ministry — Lemonde.Fr · August 14, 2026