Related Threat Clusters
-
Iranian Hackers Breach US Gas Station Fuel Monitoring Systems
US officials suspect Iranian hackers have breached automatic tank gauge (ATG) systems at gas stations across multiple states. The attackers exploited unprotected internet-connected systems, allowing them to manipulate…
46 articles · Updated May 16, 2026 -
Critical Apache ActiveMQ Vulnerability Enables Security Header Injection Attacks
A critical vulnerability in Apache ActiveMQ, tracked as CVE-2026-42253, has been disclosed, allowing attackers to inject malicious HTTP security headers through improperly handled message properties. This flaw affects…
2 articles · Updated June 3, 2026 -
CISA Warns of Active Exploitation of Cisco Catalyst SD-WAN Vulnerabilities
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding the active exploitation of three vulnerabilities in Cisco's Catalyst SD-WAN Manager, specifically CVE-2026-20122,…
16 articles · Updated April 21, 2026 -
Critical RCE Vulnerabilities Discovered in Apache ActiveMQ Management Interfaces
CVE-2026-34197, a high-severity remote code execution vulnerability, affects Apache ActiveMQ Classic due to unsafe exposure of the Jolokia HTTP/JMX management interface. Attackers can exploit this flaw to execute…
5 articles · Updated June 1, 2026 -
Ivanti ITSM Vulnerability Allows Privilege Escalation for Authenticated Users
Ivanti disclosed a high-severity vulnerability in its Ivanti Neurons for ITSM platform, tracked as CVE-2026-9614, which allows attackers with valid credentials to escalate privileges and gain full administrative access.…
3 articles · Updated June 3, 2026 -
Remote Code Execution Vulnerabilities in Apache ActiveMQ and OFBiz Detected
On June 1 and 2, 2026, Snort published alerts for remote code execution attempts targeting Apache ActiveMQ and Apache OFBiz. The ActiveMQ vulnerability involves insecure deserialization, allowing attackers to execute…
6 articles · Updated June 2, 2026 -
Apache ActiveMQ Vulnerability Exploited for LockBit Ransomware Attack
Threat actors exploited a critical vulnerability (CVE-2023-46604) in Apache ActiveMQ, leading to a LockBit ransomware deployment across an enterprise network. The attackers gained access through an exposed Windows…
3 articles · Updated February 25, 2026 -
Apache ActiveMQ Vulnerability Allows DoS Attacks via Malformed Packets
A medium-severity vulnerability (CVE-2025-66168) in Apache ActiveMQ enables authenticated attackers to launch Denial-of-Service (DoS) attacks using malformed network packets. Discovered by security researcher Gai Tanaka…
3 articles · Updated March 6, 2026 -
OpenAI and OpenAnt Launch New Security Tools for Vulnerability Detection
On March 6, 2026, OpenAI announced the launch of Codex Security, a sophisticated application security tool designed to identify software vulnerabilities, available for select ChatGPT users. Concurrently, OpenAnt, an…
52 articles · Updated March 6, 2026 -
Cortex XDR Live Terminal Vulnerability Enables C2 Exploitation
Research has revealed that attackers can exploit the Cortex XDR Live Terminal feature from Palo Alto Networks to establish command-and-control (C2) communications. This feature operates within a trusted endpoint…
3 articles · Updated February 25, 2026
Recent Intelligence Reports
- Critical Apache ActiveMQ Vulnerability Allows Malicious Security Header Injections — Cybersecuritynews · June 3, 2026
- Critical Apache ActiveMQ Vulnerability Exposes Systems to Security Header Injection Attacks — Gbhackers · June 3, 2026
- Ivanti ITSM Flaw Could Allow Attackers to Escalate to Admin Access — Gbhackers · June 3, 2026
- CISA Warns of Cyberattacks Targeting U.S. Tank Gauge Systems — Gbhackers · June 3, 2026
- Rule Docs 1:66532 — Snort · June 2, 2026
- CVE-2026-45505 Detail — Nvd.Nist · June 1, 2026
- CVE-2026-49157 Detail — Nvd.Nist · June 1, 2026
- CISA Alerts Defenders to Exploited Cisco Catalyst SD — Gbhackers · April 21, 2026