Cyber Threat Report: W/C August 17, 2026
300
Threat Clusters
1554
Articles Analyzed
58.5
Avg Threat Score
142
Rising Entities
Top threats
Active Exploitation of GitLab CVE-2026-19478 and Microsoft Entra ID Flaw
84.0
Critical RCE Vulnerability in Windows IKE Actively Exploited
80.9
Critical RCE Vulnerability in Zimbra Exploited by Attackers
79.0
Critical Vulnerability in N-able Passportal Extensions Exposed
78.0
Critical Account Takeover Vulnerability in Red Hat Keycloak
78.0
Critical Vulnerability in NASA Ground Control Software Allows Unauthenticated Access
78.0
Active Exploitation of VMware vCenter Path Traversal Vulnerability CVE-2026-59310
77.2
17 Iranians Charged in Cyber Theft Campaign Targeting U.S. Institutions
77.1
Iranian Hackers Disable UK Power Plant for Four Days
76.8
Navy Warns of Coordinated Threats to Personnel and Installations
76.5
Rapid7 Reports Surge in Vulnerability Exploitation Outpacing Patching Efforts
76.5
Supply Chain Attack Compromises Popular Rust Crates to Deliver Malware
76.0
Ransomware leak sites this week
303 victim listings across 56 groups, from ThreatCluster's own collection of ransomware leak sites. Listings are claims by the groups, not confirmed breaches. Most-listed sectors: Technology (41), Manufacturing (39), Professional Services (34), Not Found (30), Other (30).
| Group | Listings |
|---|---|
| qilin | 37 |
| thegentlemen | 29 |
| direwolf | 21 |
| coinbasecartel | 16 |
| storm | 16 |
| incransom | 14 |
| kazu | 9 |
| titan | 9 |
| pear | 8 |
| dragonforce | 7 |
Ransomware tracker · Dark web API
Rising entities
Apt Group
- Apt29NEW
- CyberAv3ngersNEW
- Sapphire SleetNEW
- ICE RelicNEW
- SilkParasiteNEW
Attack Type
Campaign
Company
- Ethereum+156%
- Azure+91%
- Polygon+400%
- Apollo Global Management+350%
- Viasat+600%
Country
- Iran+64%
- Russia+48%
- United States+18%
- Switzerland+300%
- United Kingdom+114%
Cve
- CVE-2026-59310+400%
- CVE-2026-12569+150%
- CVE-2026-52958+300%
- CVE-2026-53045+100%
- CVE-2026-53002+100%
Cwe
Industry
- Energy+49%
- Construction+200%
- Automotive+100%
- Legal+100%
- Food And AgricultureNEW
Malware
- Grandoreiro+400%
- Vidar+400%
- Emotet+200%
- Qakbot+200%
- BadboxNEW
Mitre Attack
Ransomware Group
- Medusa+140%
- Lockbit+150%
- The Gentlemen+100%
- Cl0p+20%
- Ransomhub+100%
Tool
- Microsoft Teams+300%
- Python+250%
- Google Cloud+67%
- Npm+100%
- Gmail+100%
Vulnerability
Entity type distribution
| Entity type | Count |
|---|---|
| Cve | 1874 |
| Platform | 431 |
| Company | 299 |
| Tool | 211 |
| Malware | 130 |
| Country | 107 |
| Mitre Attack | 87 |
| Campaign | 72 |
| Apt Group | 46 |
| Vulnerability | 43 |
| Industry | 41 |
| Cwe | 39 |
| Attack Type | 31 |
| Ransomware Group | 27 |
| Eth | 2 |