Related Threat Clusters
-
Active Exploitation of GitLab CVE-2026-19478 and Microsoft Entra ID Flaw
GitLab's CVE-2026-19478, a critical code injection vulnerability with a CVSS score of 9.4, is currently under active exploitation just days after its public disclosure on August 17, 2026. Attackers are leveraging this…
2 articles · Updated August 22, 2026 -
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
The North Korean hacking group Lazarus exploited a zero-day vulnerability (CVE-2026-68820) in the Windows Ancillary Function Driver for WinSock (afd.sys) to gain SYSTEM-level access to defense sector systems. This…
33 articles · Updated August 12, 2026 -
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
Since July 2025, Russian state-backed hackers, known as Laundry Bear, have exploited a zero-click vulnerability (CVE-2025-66376) in the Zimbra Collaboration Suite to infiltrate Western government and commercial…
82 articles · Updated July 23, 2026 -
DPRK-Linked Malware Targeting Job Seekers via Wellfound
A cybersecurity incident involved a fake job interview scheme on Wellfound, where an operator named 'Felix' from 'HyperHive' targeted an individual using a social engineering tactic referencing their real CV. The attack…
2 articles · Updated April 7, 2026 -
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
A DNS poisoning campaign has compromised hotel and conference center Wi-Fi gateways to steal Microsoft 365 login credentials from corporate travelers. The campaign has been active since at least June 2026, affecting…
73 articles · Updated July 24, 2026 -
SBU and FBI Expose Russian Cyber Campaign Targeting Messaging Accounts
On June 25, 2026, Ukraine's Security Service (SBU) and the FBI announced a coordinated cyber campaign by Russian intelligence targeting messaging accounts of officials, military personnel, politicians, and activists in…
18 articles · Updated June 25, 2026 -
Critical Vulnerability in NASA Ground Control Software Allows Unauthenticated Access
A critical vulnerability in NASA's AMMOS Instrument Toolkit (AIT-GUI) software, tracked as GHSA-p9r8-2q67-fp86, allows unauthenticated attackers to issue commands to spacecraft and execute scripts. The flaw affects…
7 articles · Updated August 20, 2026 -
Operation Endgame Disrupts Evil Corp's SocGholish Malware Network
On June 18, 2026, international law enforcement agencies launched Operation Endgame, disrupting the SocGholish malware infrastructure linked to the Russian cybercrime group Evil Corp. The operation resulted in the…
67 articles · Updated June 18, 2026 -
Gamaredon APT Escalates Cyber Operations Against Ukraine in 2025
The Gamaredon group, a Russian-aligned APT, has significantly upgraded its cyber capabilities in 2025, focusing on spear-phishing campaigns against Ukrainian targets. ESET Research reports that Gamaredon conducted 35…
7 articles · Updated June 25, 2026 -
Jewelbug APT Group Engages in Espionage and Cryptocurrency Fraud
The Jewelbug APT group, based in China, has been conducting simultaneous cyber espionage and cryptocurrency fraud operations. Utilizing a single command-and-control platform named XG-Web, the group has compromised over…
15 articles · Updated August 13, 2026
Recent Intelligence Reports
- Meta removes scam ads after India flags explicit — Livemint · September 1, 2026
- Warning for WhatsApp users as hijacking scams jump — News.Rthk.Hk · August 31, 2026
- Meta removes Facebook, Instagram ads using explicit content to spread malware after Govt ... — Indiatoday.In · August 31, 2026
- Seqrite Uncovers China-Linked Cyber Espionage Campaign Targeting India's Tax Ecosystem — Itvoice.In · August 31, 2026
- WhatsApp hijacking cases surge 154% to 2,020; manager loses $12m - The Standard (HK) — Thestandard.Hk · August 31, 2026
- Refi Hub cofounder: Targeted by malicious... — Chaincatcher · August 29, 2026
- Staying Safe From Scams And Fraud — www.mychart.org · August 29, 2026
- Diari d'Andorra • Aug 28, 2026 • 20:59 Alerta per una campanya de ciberatacs dirigida als hotels d’Andorra — www.diariandorra.ad · August 29, 2026