YARA is a tool tracked across 7 threat clusters and 9 intelligence report mentions on ThreatCluster. First observed January 15, 2026; most recent activity July 21, 2026.
As the 2026 FIFA World Cup approaches, cyber threats are escalating, particularly from Iranian-linked hackers. These actors are expected to target fans and infrastructure through various cyberattacks, including phishing…
A critical vulnerability chain, dubbed wp2shell, has been identified in WordPress Core, allowing unauthenticated attackers to execute arbitrary code on default installations. This vulnerability is tracked as…
A critical remote code execution (RCE) vulnerability in the Flowise low-code platform, tracked as CVE-2025-59528, is being actively exploited by threat actors. This flaw allows attackers to inject arbitrary JavaScript…
In March 2026, the EvilTokens phishing kit emerged as a significant threat, allowing cybercriminals to bypass multi-factor authentication (MFA) and compromise Microsoft 365 accounts. This Phishing-as-a-Service (PhaaS)…
In 2026, managed security service providers (MSSPs) are under pressure to evolve from reactive to preemptive security measures. The rapid advancement of AI-driven attacks has rendered traditional detection methods…
On February 24, 2026, the Australian Signals Directorate (ASD) released Azul, an open-source malware repository and analysis platform. Designed for enterprise and government security teams, Azul features a structured…
Google Threat Intelligence has introduced new Agentic capabilities aimed at reducing the time between detecting suspicious indicators and understanding threats. This development addresses critical bottlenecks faced by…