DNSmasq is a tool tracked across 4 threat clusters and 7 intelligence report mentions on ThreatCluster. First observed April 8, 2026; most recent activity June 22, 2026.
Russian cyber group APT28, also known as Fancy Bear, has been exploiting vulnerabilities in TP-Link and MikroTik routers to conduct large-scale DNS hijacking operations. This campaign, which has affected over 18,000…
Multiple vulnerabilities have been identified in dnsmasq, an open-source DNS and DHCP server, affecting various Linux distributions, including Ubuntu. The vulnerabilities, tracked as CVE-2026-2291, CVE-2026-4890,…
A critical vulnerability in Dnsmasq affects Ubuntu 26.04 LTS and its derivatives, allowing remote attackers to crash the service or execute arbitrary code. The flaw arises from improper handling of BOOTREPLY packets…
OpenAI has introduced GPT-5.4-Cyber, a specialized AI model for defensive cybersecurity, available only to vetted professionals through its Trusted Access for Cyber (TAC) program. This model is designed to facilitate…