Related Threat Clusters
-
New WebKit Zero-Day CVE-2025-14174 Discovered and Exploited
A new zero-day vulnerability in Apple's WebKit, identified as CVE-2025-14174, has been confirmed and is actively being exploited. This follows the recent disclosure of another critical zero-day vulnerability in…
1 article · Updated December 16, 2025 -
Google and Apple Issue Security Updates for Zero-Day Vulnerabilities
Google and Apple released urgent security updates to address zero-day vulnerabilities affecting their platforms. The vulnerabilities were exploited in a sophisticated attack targeting specific users, with one bug…
8 articles · Updated December 12, 2025 -
Google Chrome Zero-Day Vulnerability CVE-2025-13223 Exploited in the Wild
Google has issued an emergency update to address a high-severity zero-day vulnerability, CVE-2025-13223, in its Chrome browser. This flaw, linked to the V8 JavaScript engine, allows attackers to execute arbitrary code…
54 articles · Updated November 24, 2025 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
DarkSword iOS Exploit Chain Targets Mobile Devices Globally
The Google Threat Intelligence Group has identified DarkSword, a full-chain iOS exploit affecting versions 18.4 to 18.7. This exploit leverages multiple zero-day vulnerabilities, including CVE-2025-31277 and…
2 articles · Updated July 11, 2026 -
'DarkSword' Attack Targets iPhones via Phishing Emails
The 'DarkSword' attack is now exploiting unpatched iPhones through phishing emails, as reported by Proofpoint. These emails contain links to malicious sites that host DarkSword, targeting iPhones running iOS versions…
2 articles · Updated March 30, 2026 -
FBI Seizes Iranian Hacktivist Group Websites After Stryker Cyberattack
The FBI has seized two websites linked to the Iranian hacktivist group Handala following their cyberattack on Stryker Corporation, a U.S. medical technology firm. The attack, which occurred on March 11, 2026, involved…
21 articles · Updated March 19, 2026 -
Google and FBI Disrupt NetNut Proxy Network Linked to 2 Million Devices
On July 3, 2026, Google, in coordination with the FBI and other partners, disrupted the NetNut residential proxy network, also known as the Popa botnet. This operation targeted over 2 million compromised consumer…
54 articles · Updated July 2, 2026 -
Fake Bahrain Civil Defense App Distributes Advanced Surveillance Malware
A malicious Android application masquerading as a Bahrain civil defense alert tool has been identified, targeting users in Bahrain and the Gulf region amid heightened tensions from Iranian missile threats. This app…
9 articles · Updated July 22, 2026 -
Coruna and DarkSword iOS Exploit Kits Targeting Users Globally
The Coruna and DarkSword iOS exploit kits, initially limited to nation-state actors, are now being widely adopted by organized cybercriminals. iVerify has tracked around 17,000 domains associated with second-generation…
3 articles · Updated August 10, 2026
Recent Intelligence Reports
- Fake Chrome update scam could infect your computer — Kotaradio · August 31, 2026
- Versions: all prior to 1.25.13.0000 WatchGuard Agent — www.watchguard.com · August 26, 2026
- BitBox02 Firmware 9.26.5 Patches Three Security Vulnerabilities — Kucoin · August 22, 2026
- BitBox02 Firmware 9.26.5 Closes Three Vulnerabilities — Cryptoticker · August 22, 2026
- Microsoft fixes known issue causing Windows Defender crashes — Bleepingcomputer · August 19, 2026
- Security.org — www.security.org · August 18, 2026
- CVE 2026 0298 — security.paloaltonetworks.com · August 14, 2026
- CVE 2026 0299 — security.paloaltonetworks.com · August 14, 2026