EternalBlue is a vulnerability tracked by ThreatCluster, appearing in 8 threat clusters built from 15 intelligence report mentions.
EternalBlue is a vulnerability tracked across 8 threat clusters and 15 intelligence report mentions on ThreatCluster. First observed March 3, 2026; most recent activity July 19, 2026.
Operation Escaneo is a coordinated cyberattack attributed to the MexicanMafia group, targeting critical infrastructure across Latin America, primarily Mexico. The campaign, which spanned from 2025 to 2026, utilized…
The Russian state-sponsored group Sandworm has intensified its cyber operations against industrial and critical infrastructure, utilizing pre-compromised operational technology (OT) environments instead of zero-day…
On March 10, 2026, Microsoft released its Patch Tuesday updates, fixing 79 vulnerabilities, including two zero-day flaws. The updates address critical vulnerabilities across various products, with one zero-day actively…
CISA has added 23 vulnerabilities exploited by the Coruna exploit kit targeting iOS versions 13 to 17.2.1 to its Known Exploited Vulnerabilities (KEV) list. The exploit kit is associated with nation-state actors,…
On June 9, 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including three zero-day flaws. Among the critical vulnerabilities, 32 were rated as critical, with 28 classified as…
The Shadow Brokers, a mysterious group, leaked a cache of NSA hacking tools in 2016, sparking speculation about their identity and motives. The tools included sophisticated exploits believed to be used by the NSA, with…
In June 2026, a series of ransomware attacks were reported in Colombia and Mexico, where attackers exploited misconfigured corporate printers and remote desktop services to encrypt data using BitLocker. The attackers…
The Coruna iOS exploit kit has emerged, targeting Apple iPhone models running iOS 13.0 to 17.2.1. It includes five exploit chains and 23 exploits, with advanced techniques that are non-public. Various threat actors,…
EternalBlue is a vulnerability tracked by ThreatCluster, appearing in 8 threat clusters built from 15 intelligence report mentions.
The most recent intelligence report mentioning EternalBlue on ThreatCluster is dated July 19, 2026. Activity was first observed March 3, 2026, giving a tracked span from then to July 19, 2026.
Across ThreatCluster reporting, EternalBlue most frequently co-occurs with Apt44, Mexican Mafia, MexicanMafia, Pancho Villa, PanchoVilla, among 12 tracked related entities.
The most significant recent cluster is “Operation Escaneo Targets Latin American Critical Infrastructure” (4 articles · Updated June 18, 2026). EternalBlue appears across 8 threat clusters in total, listed above with sources.
EternalBlue appears in 15 intelligence report mentions across 8 deduplicated threat clusters, aggregated from 17,000+ monitored sources.