SessionReaper - Vulnerability

Threat entity extracted from intelligence sources

Frequency
5
occurrences
First Seen
October 28, 2025
Last Seen
April 8, 2026

SessionReaper is a vulnerability tracked by ThreatCluster, appearing in 5 threat clusters built from 5 intelligence report mentions.

SessionReaper is a vulnerability tracked across 5 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed October 28, 2025; most recent activity April 8, 2026.

Related Threat Clusters

  • Active Zero-Day Exploit Targeting Adobe Reader Users

    A zero-day vulnerability in Adobe Reader has been actively exploited since at least December 2025, allowing attackers to execute remote code and steal sensitive data through malicious PDF files. Security researcher…

    64 articles · Updated April 8, 2026
  • Magento Vulnerability Exploited in Attack on 200+ Websites

    In January 2026, attackers exploited a critical vulnerability in Magento, tracked as CVE-2025-54236, to hijack over 200 e-commerce websites. This severe authentication flaw allowed threat actors to gain complete control…

    2 articles · Updated January 30, 2026
  • BlueNoroff Launches New Campaigns Targeting Crypto Professionals

    North Korea-aligned threat actor BlueNoroff has initiated two new campaigns, GhostCall and GhostHire, targeting fintech executives and Web3 developers. These campaigns utilize social engineering tactics on platforms…

    4 articles · Updated October 29, 2025
  • Vulnerabilities Found in OpenAI's Atlas Browser Allow Malicious Code Injection

    Security researchers from LayerX have identified vulnerabilities in OpenAI's Atlas browser that enable attackers to inject malicious code into the browser's memory. This flaw allows for remote code execution and the…

    5 articles · Updated October 28, 2025
  • AI Misidentification Leads to Teen's Arrest Over Snack Bag

    A 16-year-old student in Baltimore, Maryland, was handcuffed by police after an AI system mistakenly identified a bag of Doritos as a firearm. This incident has prompted discussions regarding the reliability and ethics…

    2 articles · Updated October 29, 2025

Recent Intelligence Reports

  • Researchers Find a Zero — Thecyberexpress · April 8, 2026
  • Attackers Hijack 200+ Sites by Exploiting Magento Vulnerability — Cyberpress · January 30, 2026
  • BlueNoroff Expands Cyberattacks with AI — Esecurityplanet · October 29, 2025
  • LayerX Exposes Critical Flaw in OpenAI’s ChatGPT Atlas Browser — Esecurityplanet · October 28, 2025
  • AI Misfire: Teen Handcuffed After AI Mistakes Doritos for Gun — Esecurityplanet · October 28, 2025

Frequently asked questions

What is SessionReaper?

SessionReaper is a vulnerability tracked by ThreatCluster, appearing in 5 threat clusters built from 5 intelligence report mentions.

Is SessionReaper still active?

The most recent intelligence report mentioning SessionReaper on ThreatCluster is dated April 8, 2026. Activity was first observed October 28, 2025, giving a tracked span from then to April 8, 2026.

What is SessionReaper associated with?

Across ThreatCluster reporting, SessionReaper most frequently co-occurs with BlueNoroff, Lazarus Group, Data Breach, Malware, Phishing, among 12 tracked related entities.

What are the latest developments involving SessionReaper?

The most significant recent cluster is “Active Zero-Day Exploit Targeting Adobe Reader Users” (64 articles · Updated April 8, 2026). SessionReaper appears across 5 threat clusters in total, listed above with sources.

How much reporting does ThreatCluster have on SessionReaper?

SessionReaper appears in 5 intelligence report mentions across 5 deduplicated threat clusters, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown