Related Threat Clusters
-
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
Operation Escaneo Targets Latin American Critical Infrastructure
Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…
4 articles · Updated June 18, 2026 -
GeoNetwork Vulnerabilities Enable Unauthenticated RCE in Government Systems
GeoNetwork, an open-source geospatial metadata catalog, has critical vulnerabilities allowing unauthenticated remote code execution (RCE). Two key CVEs, CVE-2026-63219 and CVE-2026-58400, can be chained to exploit the…
6 articles · Updated September 2, 2026 -
Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015
A pre-authentication remote code execution (RCE) vulnerability, CVE-2026-35273, was discovered in Oracle PeopleSoft PeopleTools, affecting versions 8.61 and 8.62. The vulnerability allows unauthenticated attackers to…
5 articles · Updated June 18, 2026 -
China-Nexus Hackers Target Hospitals and Governments with TriBack Loader Malware
A China-linked cyber espionage operation has compromised a Vietnamese public hospital's imaging systems, infiltrated Malaysia's Ministry of Foreign Affairs, and targeted Honduras's National Congress using a new malware…
2 articles · Updated July 23, 2026 -
Oracle Linux Kernel ptrace Vulnerability CVE-2026-46333 Disclosed
Oracle has disclosed a critical security vulnerability in the ptrace functionality of its Linux kernels, identified as CVE-2026-46333. This vulnerability affects multiple versions of Oracle Linux, including Oracle Linux…
364 articles · Updated May 22, 2026 -
Spring Framework RCE Vulnerability CVE-2022-22965 Exploited in the Wild
On March 30, 2022, a zero-day remote code execution vulnerability in the Spring Framework, dubbed 'Spring4Shell' and assigned CVE-2022-22965, was disclosed. This vulnerability affects Spring MVC and Spring WebFlux…
3 articles · Updated June 17, 2026 -
Critical Zero-Day Vulnerabilities in Atlassian Confluence Exploited
Atlassian Confluence has faced multiple critical vulnerabilities, including CVE-2022-26134 and CVE-2023-22515. CVE-2022-26134, published on June 3, 2022, is an unauthenticated remote code execution vulnerability that…
3 articles · Updated June 17, 2026 -
Active Exploitation of Weaver E-cology RCE Vulnerability CVE-2026-22679
A critical vulnerability (CVE-2026-22679) in the Weaver E-cology platform is being actively exploited. This unauthenticated remote code execution flaw affects Weaver E-cology 10.0 builds released before March 12, 2026.…
3 articles · Updated May 5, 2026 -
Critical Vulnerability in syracom AG 2FA Plugin for Atlassian Products
The Secure Login (2FA) plugin for Atlassian Jira, Confluence, and Bitbucket has a serious broken access control vulnerability. This flaw allows attackers with valid user credentials to bypass multi-factor authentication…
3 articles · Updated June 17, 2026
Recent Intelligence Reports
- Geonetwork Preauth RCE — ethiack.com · September 2, 2026
- New research raises questions around Log4j 2 LogEvent deserialization — Fieldeffect · August 28, 2026
- A Reported Log4j RCE Is More Complicated Than It Looks — Sonatype · August 27, 2026
- Benchmarking Secure-and — Snyk · August 18, 2026
- Oracle8 java-17-openjdk Important Security Update ELSA-2026 — Linuxsecurity · August 14, 2026
- Oracle Linux 8 Java 1.8.0 Important Update ELSA-2026 — Linuxsecurity · August 12, 2026
- 306 — cwe.mitre.org · August 11, 2026
- 78 — cwe.mitre.org · August 11, 2026