Asp.net is a technology platform tracked across 8 threat clusters and 14 intelligence report mentions on ThreatCluster. First observed December 11, 2025; most recent activity July 19, 2026.
Asp.net is a web application framework within the Microsoft .NET ecosystem used to build dynamic websites, APIs, and services. It supports patterns like MVC and Razor, runs on IIS or Kestrel, and is widely deployed in enterprise environments; its cybersecurity significance stems from its large attack surface—vulnerable HTTP handling, deserialization risks, and configuration pitfalls that can lead to remote code execution or data exposure.
ConnectWise has released a patch for its ScreenConnect remote support tool to address a critical vulnerability, tracked as CVE-2026-3564, that could allow unauthorized access and privilege escalation. This flaw affects…
In June 2026, a new ransomware family named Spirals executed a double extortion attack against an IT services company in South Asia, completing the operation in under 24 hours. The attackers gained initial access by…
The ModHeader browser extension, used by approximately 1.6 million users across Chrome and Edge, was removed after researchers discovered a dormant data-collection capability embedded in its signed release. The…
In late 2025, a critical vulnerability (CVE-2026-5426) was discovered in the KnowledgeDeliver Learning Management System, allowing unauthenticated remote code execution via ViewState deserialization. This flaw, stemming…
Hacktivist groups 4BID, Hakerskii Kit, and C.A.S. have broadened their attack geography, targeting organizations in Kazakhstan, the UAE, Syria, and Egypt, moving beyond their previous focus on Russian and Belarusian…
Hackers are exploiting a cryptographic vulnerability in Gladinet's CentreStack and Triofox products, which allows for remote code execution. The flaw involves hardcoded cryptographic keys in the AES implementation,…
Security researchers have identified a remote code execution (RCE) vulnerability in the .NET framework that impacts various enterprise applications. Piotr Bazydło from watchTowr presented these findings at Black Hat…
A supply chain attack has been identified, targeting ASP.NET developers through four malicious NuGet packages. The packages, named NCryptYo, DOMOAuth2_, IRAOAuth2.0, and SimpleWriter_, were published by a threat actor…