Red Hat Enterprise Linux is a technology platform tracked across 10 threat clusters and 13 intelligence report mentions on ThreatCluster. First observed November 3, 2025; most recent activity July 8, 2026.
Red Hat Enterprise Linux (RHEL) is Red Hat's enterprise-grade Linux distribution used in servers, data centers, and cloud environments. It emphasizes long-term support, certified updates, and built-in security features (such as SELinux) to harden workloads, making timely kernel and software patching critical for cybersecurity. Its widespread enterprise deployment means Linux kernel vulnerabilities and related ransomware campaigns can have broad and significant impact.
A critical vulnerability in Linux KVM, named Januscape (CVE-2026-53359), has been discovered after lying dormant for 16 years. This flaw allows attackers with root access in a guest virtual machine to escape to the host…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert regarding the active exploitation of a critical vulnerability in the Linux kernel, tracked as CVE-2024-1086. This privilege escalation…
A newly disclosed vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named 'Copy Fail', allows unprivileged local users to gain root access on virtually all major Linux distributions released since 2017.…
Red Hat Product Security has issued two critical security advisories (RHSA-2026:33486 and RHSA-2026:33666) for vulnerabilities affecting kernel packages in Red Hat Enterprise Linux for NVIDIA. Both advisories highlight…
Red Hat has issued multiple critical security updates for its OpenShift Container Platform and Linux kernel, affecting various architectures. The updates address several vulnerabilities, including CVE-2026-4878,…
A severe Linux kernel vulnerability, CVE-2026-43499, known as GhostLock, has been publicly disclosed by Nebula Security's VEGA team. This flaw, present since 2011, allows any logged-in user to gain full root control of…
During the Pwn2Own Berlin 2026 event, held from May 14 to 16, security researchers exploited numerous zero-day vulnerabilities, earning over $900,000 in cash prizes. On the first day, 24 unique vulnerabilities were…
On June 2, 2026, Red Hat announced security updates for two vulnerabilities affecting its products. The first update, RHSA-2026:22147, addresses a low-impact vulnerability in qemu-kvm for Red Hat Enterprise Linux 9.0.…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an alert regarding the exploitation of a critical vulnerability in the Linux kernel, tracked as CVE-2024-1086, by ransomware groups. This…
Cisco Talos researchers discovered a previously hidden malware framework named DKnife while hunting for samples of the DarkNimbus backdoor associated with the MOONSHINE exploit kit. This framework, which features…