Atlassian Jira is a technology platform tracked across 4 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed February 18, 2026; most recent activity June 17, 2026.
The Secure Login (2FA) plugin for Atlassian Jira, Confluence, and Bitbucket has a serious broken access control vulnerability. This flaw allows attackers with valid user credentials to bypass multi-factor authentication…
Apache OFBiz has critical vulnerabilities that allow attackers to exploit hardcoded keys and bypass authentication. The vulnerabilities, CVE-2026-31986 and CVE-2026-45434, were published on 2026-05-19 and affect all…
Cybercriminals have exploited GitHub and Atlassian Jira's notification systems to send phishing emails that appear legitimate. These emails bypass standard security checks such as SPF, DKIM, and DMARC because they…
Cybercriminals are utilizing Atlassian Cloud, specifically Jira, to conduct spam campaigns that redirect users to fraudulent investment schemes. By exploiting the trusted nature of the platform, attackers are bypassing…