CrushFTP - Vulnerability

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
November 20, 2025
Last Seen
April 7, 2026

CrushFTP is a vulnerability tracked by ThreatCluster, appearing in 4 threat clusters built from 5 intelligence report mentions.

CrushFTP is a vulnerability tracked across 4 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed November 20, 2025; most recent activity April 7, 2026.

Related Threat Clusters

  • Ransomware Fuels Surge in Global Cyberattacks

    As of February 12, 2026, organizations worldwide are experiencing an average of 2,090 cyber-attacks per week, largely driven by ransomware incidents. This increase highlights the ongoing challenges faced by businesses…

    1591 articles · Updated February 12, 2026
  • Clop Ransomware Group Breaches University of Phoenix Data of 3.5 Million

    The University of Phoenix experienced a data breach affecting 3.5 million individuals, attributed to the Clop ransomware group exploiting a zero-day vulnerability in Oracle's enterprise software. The attackers accessed…

    3 articles · Updated December 30, 2025
  • Clop Ransomware Targets Gladinet CentreStack Servers for Data Theft

    The Clop ransomware group is conducting a data extortion campaign against Gladinet CentreStack file servers. This attack exploits multiple security vulnerabilities in CentreStack and its related product, Triofox,…

    6 articles · Updated December 19, 2025
  • Shift in Ransomware Tactics Targeting Cloud Assets

    Ransomware actors are increasingly focusing on cloud-based assets, particularly in AWS environments. This shift involves utilizing various tactics to compromise critical business data, moving away from traditional…

    56 articles · Updated November 19, 2025

Recent Intelligence Reports

  • Storm-1175 Exploits Flaws in High — Infosecurity-Magazine · April 7, 2026
  • Microsoft links Medusa ransomware affiliate to zero — Bleepingcomputer · April 6, 2026
  • Latest Oracle EBS Victims Include Korean Air, University of Phoenix — Thecyberexpress · December 30, 2025
  • CL0P Ransomware Group Targets Gladinet CentreStack in New Campaign — Thecyberexpress · December 19, 2025
  • Q3 ransomware activity dominated by three groups, stolen VPN credential use — Scworld · November 20, 2025

Frequently asked questions

What is CrushFTP?

CrushFTP is a vulnerability tracked by ThreatCluster, appearing in 4 threat clusters built from 5 intelligence report mentions.

Is CrushFTP still active?

The most recent intelligence report mentioning CrushFTP on ThreatCluster is dated April 7, 2026. Activity was first observed November 20, 2025, giving a tracked span from then to April 7, 2026.

What is CrushFTP associated with?

Across ThreatCluster reporting, CrushFTP most frequently co-occurs with Data Breach, Ransomware, Zero-day Exploit, Oracle EBS campaign, Accellion FTA, among 12 tracked related entities.

What are the latest developments involving CrushFTP?

The most significant recent cluster is “Ransomware Fuels Surge in Global Cyberattacks” (1591 articles · Updated February 12, 2026). CrushFTP appears across 4 threat clusters in total, listed above with sources.

How much reporting does ThreatCluster have on CrushFTP?

CrushFTP appears in 5 intelligence report mentions across 4 deduplicated threat clusters, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown