Cyber Threat Report: W/C June 15, 2026
649
Threat Clusters
3853
Articles Analyzed
48.9
Avg Threat Score
141
Rising Entities
Top threats
Critical Joomla JCE Vulnerability Under Active Exploitation
87.2
Critical Remote Code Execution Vulnerability Exploited by China-Nexus Actor
80.7
F5 Issues Critical Patches for NGINX Vulnerabilities Allowing Remote Code Execution
80.0
Critical SQL Injection Vulnerability in GPTranslate Plugin (CVE-2026-49776)
79.5
Critical CVE-2026-48768 Vulnerability in TypeBot Exposes Users to File Upload Attacks
78.8
Operation Escaneo Targets Latin American Critical Infrastructure
78.7
Massive Data Breach at Change Healthcare Affects 190 Million Americans
78.2
Critical Authentication Bypass in JetBrains Hub (CVE-2026-50242)
78.0
Critical Vulnerabilities Discovered in Splunk AI Toolkit
78.0
Operation Endgame Disrupts Evil Corp's SocGholish Malware Network
78.0
Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015
78.0
75% of Cyber Attacks on UK Infrastructure Linked to Hostile States, NCSC Reports
77.0
Ransomware leak sites this week
239 victim listings across 37 groups, from ThreatCluster's own collection of ransomware leak sites. Listings are claims by the groups, not confirmed breaches. Most-listed sectors: Not Found (50), Business Services (37), Manufacturing (31), Technology (17), Healthcare (17).
| Group | Listings |
|---|---|
| thegentlemen | 34 |
| lockbit5 | 33 |
| qilin | 23 |
| safepay | 13 |
| nova | 12 |
| shinyhunters | 12 |
| deadlock | 10 |
| aurora | 9 |
| incransom | 9 |
| nightspire | 9 |
Ransomware tracker · Dark web API
Rising entities
Apt Group
- ShinyHunters+43%
- Unc3886+200%
- Apt37+200%
- Unc6508NEW
- Earth LuscaNEW
Attack Type
- Malware+20%
- Command Injection+600%
- Credential Stuffing+75%
- Brute Force+150%
- Botnet+20%
Campaign
Company
- Fedora+440%
- Salesforce+217%
- Ethereum+70%
- Oracle+83%
- Fortinet+167%
Country
- Singapore+150%
- Brazil+127%
- United Arab Emirates+140%
- Mexico+100%
- France+17%
Cve
- CVE-2026-42824+400%
- CVE-2020-10148+200%
- CVE-2026-42055NEW
- CVE-2026-42530NEW
- CVE-2026-43974NEW
Cwe
Industry
- Energy+57%
- Healthcare+21%
- Manufacturing+82%
- Insurance+800%
- Financial Services+83%
Malware
- StealC+400%
- Vidar+83%
- Lumma+100%
- Supernova+100%
- SocGholishNEW
Mitre Attack
Platform
- WordPress+900%
- IPhone+1000%
- SharePoint+233%
- Java+700%
- Active Directory+125%
Ransomware Group
- Ransomhub+200%
- DragonForceNEW
- GentlemenNEW
- Prinz EugenNEW
- RhysidaNEW
Tool
- Gmail+160%
- PowerShell+54%
- Python+71%
- Microsoft Teams+83%
- Google Cloud+83%
Vulnerability
- EternalBlue+200%
- SearchLeakNEW
- Usbliter8NEW
- Pickle In The MiddleNEW
- Dirty FragNEW
Entity type distribution
| Entity type | Count |
|---|---|
| Platform | 501 |
| Company | 422 |
| Cve | 279 |
| Tool | 249 |
| Country | 168 |
| Malware | 133 |
| Mitre Attack | 88 |
| Campaign | 85 |
| Vulnerability | 60 |
| Industry | 53 |
| Apt Group | 51 |
| Attack Type | 36 |
| Cwe | 32 |
| Ransomware Group | 26 |
| Eth | 1 |