In March 2026, a suspected Iranian APT group, identified as Gray Sandstorm, initiated a password spraying campaign targeting Microsoft 365 accounts of over 300 organizations in Israel and more than 25 in the UAE. The…
In 2026, Iranian APT groups, notably Cavern Manticore and OilRig, have intensified cyber operations against Israeli organizations, primarily in the IT and government sectors. Cavern Manticore employs a modular…
BeyondTrust has issued a warning regarding a critical remote code execution (RCE) vulnerability in its Remote Support and Privileged Remote Access software. The flaw, tracked as CVE-2026-1731, allows unauthenticated…
NordVPN has denied claims of a breach involving its internal Salesforce development servers. A threat actor known as '1011' alleged that they accessed sensitive data, but NordVPN stated that only 'dummy data' from a…
Israel conducted a cyber operation to hack Tehran's traffic cameras, allowing them to monitor the movements of Iran's supreme leader, Ali Khamenei, and his bodyguards. This intelligence gathering was part of a broader…
Cybercriminals are injecting malicious code into legitimate mobile banking applications, leading to user data theft and financial fraud. Attackers are decompiling these apps, embedding trojans and backdoors, and…
A massive spam wave has emerged, affecting users worldwide through unsecured Zendesk support systems. Starting on January 18, 2026, victims reported receiving hundreds of emails with unusual subject lines, although the…
NordVPN has refuted claims made by a hacker named 1011, who alleged that the company was hacked. This follows a previous refutation of claims by another group, ScatteredLapsus$Hunters, regarding a different firm,…