Related Threat Clusters
-
Gamaredon Exploits WinRAR Vulnerability in Ongoing Ukraine Campaign
Gamaredon, a Russian state-backed APT group, is actively exploiting a WinRAR vulnerability (CVE-2025-8088) to deploy malware against Ukrainian government and military targets. The attack begins with a spearphishing…
7 articles · Updated June 2, 2026 -
Gamaredon APT Escalates Cyber Operations Against Ukraine in 2025
The Gamaredon group, a Russian-aligned APT, has significantly upgraded its cyber capabilities in 2025, focusing on spear-phishing campaigns against Ukrainian targets. ESET Research reports that Gamaredon conducted 35…
7 articles · Updated June 25, 2026 -
Russian Cyber Espionage Clusters Exploit OAuth and Phishing Techniques
Google's Threat Intelligence Group (GTIG) is tracking three Russian cyber espionage clusters—UNC6293, UNC7005, and UNC5976—targeting individuals in academia, defense, and government across Europe and the U.S. These…
14 articles · Updated August 21, 2026 -
PATCHCORD Malware Targets Afghan Telecom and South Asian Infrastructure
Acronis Threat Research Unit has identified a new malware campaign named PATCHCORD, targeting Afghan telecom providers and critical infrastructure in South Asia. The malware, a custom backdoor written in C/C++, is…
10 articles · Updated August 13, 2026 -
Bitdefender Alerts on APT36's New AI 'Vibeware' Targeting India
Bitdefender has reported a new AI-driven attack model termed 'vibeware', which generates numerous disposable malware variants. This tactic is linked to APT36 (Transparent Tribe), a Pakistan-aligned threat actor that has…
8 articles · Updated March 6, 2026 -
Vibe-Coded Apps Expose Sensitive Data on Open Web
Recent research revealed that over 5,000 vibe-coded applications, created using platforms like Lovable and Base44, exposed sensitive corporate and personal data. The cybersecurity firm RedAccess found that approximately…
7 articles · Updated May 9, 2026 -
Lovable Faces Backlash Over Data Exposure Due to BOLA Vulnerability
Lovable, a vibe-coding platform, is under scrutiny after a researcher revealed a significant data exposure issue affecting all projects created before November 2025. The researcher, known as @weezerOSINT, demonstrated…
6 articles · Updated April 21, 2026 -
Emergence of Agentic AI Raises Governance and Security Challenges
In 2026, the rise of agentic AI is transforming how businesses operate, particularly in the financial services sector. This new technology allows for autonomous decision-making, which increases the potential impact of…
4432 articles · Updated February 10, 2026 -
Lovable Platform Hosts Vulnerable App Exposing 18,000 Users' Data
Vibe-coding platform Lovable has been implicated in hosting an app with 16 vulnerabilities, including six critical ones, discovered by tech entrepreneur Taimur Khan. The vulnerabilities led to the exposure of personal…
2 articles · Updated February 27, 2026 -
State-Sponsored Hackers Exploit Google's Gemini AI for Cyberattacks
State-backed hackers from China, Iran, North Korea, and Russia are utilizing Google's Gemini AI model to facilitate various stages of cyberattacks, including reconnaissance and post-compromise actions. Notably, the…
162 articles · Updated February 12, 2026
Recent Intelligence Reports
- GTIG Tracks Three Russian Espionage Clusters Abusing Auth Flows — Technadu · August 21, 2026
- Bitdefender — www.bitdefender.com · August 13, 2026
- Escape DAST — escape.tech · August 12, 2026
- Gamaredon 2025 Leveraging Tunnels Workers Dead Drops New Alliances — www.welivesecurity.com · June 30, 2026
- Gamaredon Uses GammaPhish and GammaWorm in Ukraine — Socprime · June 2, 2026
- 5,000 vibe-coded apps just proved shadow AI is the new S3 bucket crisis — Venturebeat · May 9, 2026
- Lovable left thousands of projects exposed for 48 days, and the vibe coding security crisis is ... — Thenextweb · April 21, 2026
- Lovable goes on ego trip denying vulnerability, then blames others for said vulnerability — Cybernews · April 21, 2026