HTTP/2 — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
7
occurrences
First Seen
November 7, 2025
Last Seen
August 12, 2026

Related Threat Clusters

  • Critical Denial of Service Vulnerabilities in openSUSE Kubernetes

    Recent updates for openSUSE Kubernetes have addressed significant denial of service vulnerabilities, specifically CVE-2026-33814 and CVE-2026-35469. CVE-2026-33814, published on May 7, 2026, involves an infinite loop in…

    10 articles · Updated June 10, 2026
  • Kimwolf Botnet v7 Enhances DDoS Tactics Using Chrome Fingerprints and Ethereum

    The Kimwolf botnet, primarily composed of hijacked Android TV boxes, has been upgraded to version 7, which employs advanced techniques to disguise DDoS attack traffic as legitimate web browsing. Discovered by Palo Alto…

    4 articles · Updated August 12, 2026
  • Microsoft June 2026 Patch Tuesday: Record 206 Vulnerabilities Addressed

    On June 9, 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including three zero-day flaws. Among the critical vulnerabilities, 32 were rated as critical, with 28 classified as…

    57 articles · Updated June 9, 2026
  • Surge in DDoS Attacks Over 1 Tbps Amidst Botnet Resurgence

    In the first half of 2026, Cloudflare reported a significant increase in DDoS attacks, particularly those exceeding 1 Tbps, with 935 such attacks mitigated, marking a 519% rise from Q1. April 2026 saw the peak of DDoS…

    12 articles · Updated August 11, 2026
  • AI-Driven Exploits Target Check Point and Legacy Systems

    Threat actors are leveraging AI tools to exploit vulnerabilities in Check Point's authentication systems and a 15-year-old NGINX bug. The Check Point flaw is actively being exploited, while the NGINX vulnerability has…

    2 articles · Updated July 27, 2026
  • Operation PowerOFF Targets 75,000 DDoS-for-Hire Users Worldwide

    On April 13, 2026, a coordinated international law enforcement operation named 'Operation PowerOFF' targeted the DDoS-for-hire ecosystem, resulting in the takedown of 53 domains and the arrest of four individuals.…

    20 articles · Updated April 16, 2026
  • HTTP/2 'MadeYouReset' Vulnerability Enables DoS Attacks

    The 'MadeYouReset' vulnerability in HTTP/2 has been identified, allowing attackers to execute Denial-of-Service (DoS) attacks. This flaw affects systems using the HTTP/2 protocol, potentially disrupting services for…

    2 articles · Updated November 7, 2025

Recent Intelligence Reports

  • Aisuru botnet. — www.cloudflare.com · August 12, 2026
  • Kimwolf botnet rebuilt to survive takedowns, researchers say — Cyberscoop · August 12, 2026
  • Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing — Thehackernews · August 11, 2026
  • Weekly Cyber Security Newsletter Bulletin – Certighost Exploit, Checkpoint 0-day, HTTP/2 Flaw, Notepad++ Plugin Abuse +20 Stories — Cybersecuritynews · July 26, 2026
  • openSUSE Kubernetes Significant Denial of Service Risk Issue 2026-2343 — Linuxsecurity · June 11, 2026
  • Microsoft June 2026 Patch Tuesday fixes 3 zero-day, 200 flaws — Bleepingcomputer · June 9, 2026
  • New “MadeYouReset” Flaws in HTTP/2 Allow Attackers to Launch DoS Attacks — Cyberpress · November 7, 2025

CVSS v3.1 Breakdown