Related Threat Clusters
-
Cisco SD-WAN Zero-Day Exploited by Threat Actor Since 2023
A cyber threat actor has been exploiting a zero-day vulnerability (CVE-2026-20127) in Cisco Catalyst SD-WAN Controller since 2023. This vulnerability allows unauthenticated remote attackers to bypass authentication and…
104 articles · Updated February 25, 2026 -
CISA Warns of Active Exploitation of Cisco Catalyst SD-WAN Vulnerabilities
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding the active exploitation of three vulnerabilities in Cisco's Catalyst SD-WAN Manager, specifically CVE-2026-20122,…
16 articles · Updated April 21, 2026 -
VECT 2.0 Ransomware Compromises File Recovery for Victims
VECT 2.0 ransomware has emerged as a significant threat, leaving victims unable to recover files even with the attackers' decryptor. This ransomware employs a flawed design that discards nonces for earlier parts of…
5 articles · Updated June 5, 2026 -
Critical RCE Vulnerability in BeyondTrust Software Requires Immediate Patching
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
1434 articles · Updated February 9, 2026
Recent Intelligence Reports
- Cisco Unified Communications flaw exploited by hackers — Computing · June 25, 2026
- VECT 2.0 Ransomware Breaks Files Beyond Its Own Recovery — Gbhackers · June 5, 2026
- Attacks on Cisco SD-WAN, Zimbra, TeamCity, PaperCut and more observed — Heise.De · April 21, 2026
- Ransomware crims abused Cisco 0-day weeks before disclosure — Ground.News · March 18, 2026
- Hackers abused Cisco SD-WAN zero — Securityaffairs.Co · February 26, 2026
- Cisco SD-WAN Zero-Day Under Active Exploitation Grants Attackers Root — Cyberpress · February 26, 2026