Wireshark is a tool tracked across 14 threat clusters and 14 intelligence report mentions on ThreatCluster. First observed November 1, 2025; most recent activity July 3, 2026.
A critical vulnerability in the nginx-ui web server management tool, tracked as CVE-2026-33032, has been actively exploited since March 2026. This flaw allows attackers to bypass authentication on the /mcp_message…
The SmartApeSG campaign employs a fake CAPTCHA page and ClickFix script to deliver various remote access trojans (RATs) including Remcos, NetSupport, StealC, and Sectop RAT. The attack begins with Remcos RAT, which…
A new malware campaign involving the CloudZ remote access trojan (RAT) and its Pheno plugin is targeting Microsoft’s Phone Link feature to intercept SMS-based one-time passwords (OTPs) and other sensitive data from…
Wireshark has released version 4.6.5 to address over 40 vulnerabilities, including critical flaws that allow attackers to execute arbitrary code via malformed packets or malicious capture files. This update is crucial…
A Russian cyber campaign has been identified targeting Ukrainian organizations using new malware families, BadPaw and MeowMeow, delivered via phishing emails. The operation begins with emails containing links to ZIP…
Two critical vulnerabilities have been identified in Wireshark versions 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14. CVE-2026-5405 involves a crash in the RDP protocol dissector, while CVE-2026-5656 pertains to a profile import…
SmartApeSG has utilized the ClickFix technique to distribute the Remcos RAT, leveraging a fake CAPTCHA page on compromised legitimate sites. The malware targets Windows hosts, allowing persistent infections. Traffic…
Ethical hacking, or penetration testing, is a crucial practice for identifying vulnerabilities in computer systems before malicious hackers can exploit them. In 2026, ethical hackers utilize tools like Nmap, Metasploit,…
Threat actors are exploiting the decades-old 'finger' command in new ClickFix malware attacks to execute remote commands on Windows devices. The command, which was historically used to retrieve user information on Unix…
Wireshark has released version 4.6.2, which includes fixes for critical crash vulnerabilities and improved plugin compatibility. This update addresses two denial-of-service vulnerabilities, including a notable crash in…