JIRA is a technology platform tracked across 17 threat clusters and 28 intelligence report mentions on ThreatCluster. First observed December 30, 2025; most recent activity June 27, 2026.
The Secure Login (2FA) plugin for Atlassian Jira, Confluence, and Bitbucket has a serious broken access control vulnerability. This flaw allows attackers with valid user credentials to bypass multi-factor authentication…
A new man-in-the-middle (MitM) attack has been identified, targeting Anthropic's Claude Code ecosystem. Threat actors exploit vulnerabilities in the Model Context Protocol (MCP) traffic to intercept OAuth authentication…
Cybercriminals have exploited GitHub and Atlassian Jira's notification systems to send phishing emails that appear legitimate. These emails bypass standard security checks such as SPF, DKIM, and DMARC because they…
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
Security researchers discovered a critical vulnerability in three AI agents integrated with GitHub Actions: Anthropic's Claude Code Security Review, Google's Gemini CLI Action, and Microsoft's GitHub Copilot. The…
On April 17, 2026, hackers publicly released data stolen from Standard Bank, following a breach disclosed on March 23, 2026. The breach involved unauthorized access to internal systems, exposing client records such as…
Michael Bargury, CTO of Zenity, revealed that enterprise AI agents are highly susceptible to zero-click attacks, which exploit their gullibility. These attacks can manipulate AI systems like Cursor, Salesforce, and…
ThreatLocker announced an expansion of its zero trust network and cloud access tools aimed at enhancing protection for Managed Service Providers (MSPs) against phishing and network exposure threats. The announcement was…
Proofpoint's analysis reveals that a significant number of banks in Australia and major companies in India are not enforcing the strongest DMARC email authentication protocols, leaving them vulnerable to AI-enhanced…
On October 18, 2023, Cloudflare detected an attack originating from a compromised authentication token at Okta. The attackers accessed Cloudflare's Okta instance using session tokens from support tickets, but no…