CrushFTP is a vulnerability tracked by ThreatCluster, appearing in 4 threat clusters built from 5 intelligence report mentions.
CrushFTP is a vulnerability tracked across 4 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed November 20, 2025; most recent activity April 7, 2026.
As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…
The University of Phoenix experienced a data breach affecting 3.5 million individuals, attributed to the Clop ransomware group exploiting a zero-day vulnerability in Oracle's enterprise software. The attackers accessed…
The Clop ransomware group is conducting a data extortion campaign against Gladinet CentreStack file servers. This attack exploits multiple security vulnerabilities in CentreStack and its related product, Triofox,…
Ransomware actors are increasingly focusing on cloud-based assets, particularly in AWS environments. This shift involves utilizing various tactics to compromise critical business data, moving away from traditional…
CrushFTP is a vulnerability tracked by ThreatCluster, appearing in 4 threat clusters built from 5 intelligence report mentions.
The most recent intelligence report mentioning CrushFTP on ThreatCluster is dated April 7, 2026. Activity was first observed November 20, 2025, giving a tracked span from then to April 7, 2026.
Across ThreatCluster reporting, CrushFTP most frequently co-occurs with Data Breach, Ransomware, Zero-day Exploit, Oracle EBS campaign, Accellion FTA, among 12 tracked related entities.
The most significant recent cluster is “Ransomware Fuels Surge in Global Cyberattacks” (1591 articles · Updated February 12, 2026). CrushFTP appears across 4 threat clusters in total, listed above with sources.
CrushFTP appears in 5 intelligence report mentions across 4 deduplicated threat clusters, aggregated from 17,000+ monitored sources.