Related Threat Clusters
-
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
The North Korean hacking group Lazarus exploited a zero-day vulnerability (CVE-2026-68820) in the Windows Ancillary Function Driver for WinSock (afd.sys) to gain SYSTEM-level access to defense sector systems. This…
33 articles · Updated August 12, 2026 -
FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation
A critical vulnerability in FortiWeb Web Application Firewall (WAF) has been actively exploited, allowing attackers to gain full administrative access to affected systems. Organizations using FortiWeb are at risk of…
100 articles · Updated November 15, 2025 -
HoneyMyte APT Upgrades CoolClient Backdoor with Kernel Driver for Enhanced Stealth
The HoneyMyte APT group has deployed an upgraded variant of the CoolClient backdoor in cyber-espionage campaigns targeting organizations in Myanmar, Mongolia, Pakistan, India, and Russia. This new variant introduces a…
10 articles · Updated August 14, 2026 -
July 2026 Security Update: Record CVEs and Critical Vulnerabilities
In July 2026, Adobe and Microsoft released significant security updates addressing numerous vulnerabilities. Adobe issued 12 bulletins for 88 unique CVEs, with a focus on ColdFusion and Commerce patches, including a…
3 articles · Updated July 14, 2026 -
Microsoft's Record Patch Tuesday in June 2026 Addresses 206 Vulnerabilities
In June 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including critical flaws in Windows kernel and BitLocker. Notable CVEs include a zero-day in Visual Studio Code that…
229 articles · Updated July 1, 2026 -
Microsoft June 2026 Patch Tuesday: Record 206 Vulnerabilities Addressed
On June 9, 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including three zero-day flaws. Among the critical vulnerabilities, 32 were rated as critical, with 28 classified as…
57 articles · Updated June 9, 2026 -
Anthropic's Claude Mythos Preview Sparks Cybersecurity Revolution
Anthropic has announced the launch of Project Glasswing, utilizing its unreleased AI model, Claude Mythos Preview, to identify and exploit thousands of critical software vulnerabilities across major operating systems…
1402 articles · Updated April 7, 2026 -
New Windows Zero-Day Vulnerabilities: YellowKey and GreenPlasma Exploits Released
Security researcher Nightmare-Eclipse has disclosed two critical zero-day vulnerabilities affecting Windows 11 and Windows Server 2022/2025. The first, YellowKey, allows attackers to bypass BitLocker encryption,…
42 articles · Updated May 13, 2026 -
New Windows Zero-Day 'ShieldBreak' Exploits Microsoft Defender Flaw
Security researcher Nightmare Eclipse has disclosed a new zero-day vulnerability named ShieldBreak, which allows attackers to gain SYSTEM-level privileges on fully patched Windows 10, Windows 11, and Windows Server…
56 articles · Updated August 12, 2026 -
MiniPlasma Zero-Day Exploit Grants SYSTEM Access on Patched Windows Systems
A newly discovered Windows zero-day exploit, named MiniPlasma, allows attackers to gain SYSTEM-level privileges on fully patched Windows systems. The exploit targets the cldflt.sys Cloud Filter driver, specifically the…
30 articles · Updated May 18, 2026
Recent Intelligence Reports
- Prophet Security Threat Report Finds Attackers Moving Beyond Passwords, Bypassing ... — Einnews · September 10, 2026
- Bitdefender Threat Debrief — Bitdefender · September 8, 2026
- Is the Latest Windows Security Update Breaking System Scans? Here's What You Can Do — Firstpost · August 19, 2026
- Is the Latest Windows Security Update Breaking System Scans? Here's What You Can Do — Firstpost · August 19, 2026
- APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel — Securelist · August 14, 2026
- ZDI August 2026 analysis — www.zerodayinitiative.com · August 13, 2026
- BlueHammer — www.cyderes.com · August 13, 2026
- Disgruntled Researcher Discloses New Zero-Day in Windows Antivirus — Uk.Pcmag · August 12, 2026