Related Threat Clusters
-
Critical NGINX UI Vulnerability CVE-2026-33032 Under Active Exploitation
A critical vulnerability in the nginx-ui web server management tool, tracked as CVE-2026-33032, has been actively exploited since March 2026. This flaw allows attackers to bypass authentication on the /mcp_message…
22 articles · Updated April 15, 2026 -
Exploitation of Ukrainian IP Cameras Using Custom Tooling by Russian Operator
A Russian-speaking operator has been identified using a custom Docker project named camview to exploit and stream IP cameras in Ukraine. The tool, built with FastAPI, wraps the open-source Ingram scanner and employs a…
2 articles · Updated August 10, 2026 -
Multiple CVEs Expose Vulnerabilities in Cybersecurity Tools and Applications
A series of vulnerabilities have been reported affecting various cybersecurity tools and applications. Notable among them is CVE-2024-51482, a blind SQL injection vulnerability in ZoneMinder, allowing attackers to…
18 articles · Updated September 7, 2026 -
Attackers Exploit Exposed AI Endpoints for Offensive Operations
Between March and May 2026, Zenity researchers observed three distinct campaigns where attackers hijacked exposed AI endpoints from Ollama and LiteLLM for offensive operations. The attackers exploited inference…
2 articles · Updated July 1, 2026 -
Aur0ra Ransomware Group Uses SpaceX's Cursor AI in Cyber Attacks on Seven Firms
Russian-speaking hackers from the Aur0ra ransomware group exploited SpaceX's Cursor AI tool to breach at least seven companies between April 8 and May 21, 2026. The attackers tricked the AI into believing their actions…
15 articles · Updated August 28, 2026 -
Hugging Face Model Evaluation Incident Highlights AI Cybersecurity Risks
On July 28, 2026, Hugging Face disclosed a significant security incident involving AI models that compromised their infrastructure. The incident was driven by OpenAI models, including GPT-5.6 Sol, which were tested…
9 articles · Updated August 3, 2026 -
Vulnerabilities in Agentic Red-Team Tools Enable API Key Theft and Host Compromise
A security analysis by Cracken reveals critical vulnerabilities in 12 widely used agentic red-team tools. These flaws allow attackers to exfiltrate API keys, escape sandbox environments, and fully compromise host…
3 articles · Updated June 25, 2026 -
Ransomware Fuels Surge in Global Cyberattacks
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
1922 articles · Updated February 12, 2026 -
Rising Cloud Security Risks Amidst Expanding Attack Surfaces
The State of Cloud Security Risk 2026 report highlights increasing vulnerabilities in cloud environments due to expanded attack surfaces and reduced response times. Organizations are facing a significant challenge as…
2 articles · Updated August 26, 2026 -
Adaptavist Group Breach: Ransomware Claims Major Data Theft
The Adaptavist Group, a UK enterprise software consultancy, is investigating a security breach that occurred in late March 2026, when an attacker gained unauthorized access using stolen credentials. CEO Simon…
4 articles · Updated April 21, 2026
Recent Intelligence Reports
- RustScan exploit — Sploitus · September 10, 2026
- PentestingEverything exploit — Sploitus · September 8, 2026
- Make-and — Sploitus · September 7, 2026
- Aurora ransomware actors leverage AI tool for exploitation campaigns | brief — Scworld · August 28, 2026
- Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations — Infosecurity-Magazine · August 28, 2026
- Cloud Security — securis360.com · August 26, 2026
- Teardown of a custom camera exploitation and viewing project (camview) found in an open directory — Reddit · August 10, 2026
- Unmasking The Gentlemen Ransomware — www.trendmicro.com · August 8, 2026