Skip to content
September 28, 2026
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Data
    • CVE Watchtower
    • Top Exploited CVEs
    • CVE Stats by Vendor
    • Q2 2026 Report
    • CVE Alerts
    • CVE Alert Settings
    • Pricing
  • Cyber Criminals
  • Data Leak
  • Free Tools
    • CVSS 3.1 Calculator
    • Certificate Viewer
    • DNS Lookup
    • Encoder & Hash Generator
    • IP / Subnet Calculator
    • Whois Lookup
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Weekly Recap
Light/Dark Button
  • Home
  • News
  • Cyber Security
  • British GCHQ Director: U.K. has launched a major cyberattack on the Islamic State (IS) terrorist organization
  • Cyber Security

British GCHQ Director: U.K. has launched a major cyberattack on the Islamic State (IS) terrorist organization

Do Son April 17, 2018 2 minutes read
Cybercrime activity
Add Daily CyberSecurity as a preferred source on Google

According to securityaffairs reports recently, British intelligence agency GCHQ director Jeremy Fleming announced last week that the United Kingdom has launched a major cyber attack against Islamic State (IS) terrorist organizations. Fleming said at an online UK conference in Manchester that these actions have contributed greatly to the coalition’s suppression of Daesh’s propaganda activities, such as hindering his ability to coordinate attacks and protecting coalition forces on the battlefield.

It is reported that the attack was initiated by GCHQ in cooperation with the British Ministry of National Defense. They conducted distributed operations against the Islamic State. GCHQ believes that this cyber attack is the first systematic and continuous reduction of an opponent’s online operations and also as part of a broader military operation.

Although Fleming did not disclose too many details about the attack, he stated that the attack showed a targeted and effective offensive network and believed that the success of the attack was a threat against the misuse of technical communication and propaganda. Make an example. In addition to the British GCHQ, U.S. Internet Communication and Europol have also been conducting cyber attacks against Islamic countries.

Fleming also talked about Russia’s definition of cyber activities as “unacceptable cyber behavior,” which is a “growing threat” to the West. Therefore, Britain indicated that it will continue to cooperate with international partners such as the United States to deal with malicious network activities together.

Fleming believes that in addition to facing bold Russia, they also notice that the tectonic plates of the Middle East are moving. They saw Iran and its agents intervene in the entire region and used chemical weapons in Syria.

Finally, Flaming quoted a summary of the events in the United Kingdom and the United States attributed to Russia’s NotPetya ransomware attack on Ukraine:

“They’re not playing to the same rules, they’re blurring the boundaries between criminal and state activity.”

Source: SecurityAffairs 

Related coverage

  • Hackers attack Belarusian Railway systems
  • What is URL Phishing and How to Avoid It
  • Kaspersky Highlights Key Trends in Financial Cybersecurity for 2024
  • Orangeworm hackers group attack the hospital’s X-Ray and MRI machines
  • Chinese APT UNC6384 Pivots to Europe, Exploits Windows LNK Flaw to Deploy PlugX via Canon DLL Sideloading
  • Astaroth Phishing Kit Bypasses 2FA, Steals Accounts
Track all actively exploited CVEs →

Support Our Threat Intelligence

Find our threat intelligence and malware analysis helpful? Support our work today and unlock a 100% ad-free reading experience!

Buy Me a Coffee Logo Buy Me a Coffee
Select your plan
Free Pro Team

Hover over a plan to see its benefits.

Get Zero-Hour Vulnerability Alerts

Critical CVEs, CVSS scores, and PoC updates — straight to your inbox every week.

We respect your inbox. Unsubscribe anytime.

SHARE
Share on FacebookShare on XShare on LinkedInShare on TelegramShare on BlueskyShare on Mastodon
Written by
@DdoS · Security Researcher

Do Son

Do Son is the Founder and Editor of SecurityOnline.info. Working in cybersecurity since 2013, he reports on vulnerabilities, malware, and emerging threats, providing timely analysis to help organizations and individuals stay ahead of evolving risks.

Tags: cyberattack Islamic State

Search

Translation

CVE ALERTS
📈

EPSS Spike Alerts
Catch risk spikes before they make headlines.

🎯

Custom EPSS/CVSS
Set score thresholds to effectively filter noise.

🛡️

Exploit Intel
Real-world exploit signals beyond the KEV catalog.

🐙

GitHub Issues
Auto-create alert tickets without duplication.

📬

Weekly Digest
Clean summaries, eliminating email spam.

🏷️

Watchlist Groups
Tag vulnerabilities by team (Infra/AppSec/SOC).

🔀

Smart Routing
Route chat channels based on severity levels.

🚨

RBP Tracker
Early warning detection and tracking system.

Subscribe – $7/mo or try free for 14 days →

🚨 Active Exploits in the Wild

  • CVE-2026-88772
    Memory overflow vulnerability leading to remote code execution or denial of service.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-88771
    Remote code execution due to improper input validation that can allow an unauthenticated attacker to execute arbitrary commands.
    Admin intelCISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 27, 2026
  • CVE-2026-65660CVSS 8.8
    Improper control of generation of code (\'code injection\') in Microsoft Office SharePoint allows an authorized attacker to execute...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 25, 2026
  • CVE-2026-5430CVSS 10.0
    The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-71362CVSS 9.1
    Adobe Commerce is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could...
    CISA KEV📅 Added to KEV: Sep 24, 2026
  • CVE-2026-48842CVSS 8.1
    Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1 has Pre-authentication SQL injection in the virtuser_query plugin via...
    Admin intel📅 Updated: Sep 23, 2026
  • CVE-2026-87902
    Unauthenticated path traversal in page-template resolution leading to conditional RCE An unauthenticated attacker can make get_page_template() page-template resolution...
    Admin intelCISA KEV📅 Added to KEV: Sep 25, 2026📅 Updated: Sep 23, 2026
  • CVE-2026-94127CVSS 9.8
    When a BIG-IP APM access policy and an OAuth profile is configured on a virtual server, specific malicious...
    Admin intelCISA KEV📅 Added to KEV: Sep 22, 2026📅 Updated: Sep 22, 2026
Powered by CVE Watchtower

Critical Vulnerabilities

  • CVE-2026-20192CVSS 10.0
    As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE)...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101039CVSS 10.0
    A vulnerability was identified in FAST FAC1900R 20190827_2.0.2. Affected by this issue is the function copy_msg_element of the...
    📅 Updated: Sep 28, 2026
  • CVE-2026-88771CVSS 9.5
    Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37,...
    CISA KEV📅 Added to KEV: Sep 27, 2026📅 Updated: Sep 28, 2026
  • CVE-2026-101001CVSS 10.0
    A vulnerability was identified in Netcore NBR200V2 1.3.241127.071246. This impacts the function eval of the file /www/cgi-bin/network_tools of...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101007CVSS 9.3
    A vulnerability has been found in aaPanel BaoTa up to 11.8.0. This issue affects the function InputSql of...
    📅 Updated: Sep 28, 2026
  • CVE-2026-101038CVSS 9.4
    A vulnerability was determined in FAST FAC1200R 5.0_20201119_1.0.2. Affected by this vulnerability is the function MmtAtePrase of the...
    📅 Updated: Sep 28, 2026
  • CVE-2026-81867CVSS 9.4
    A Deserialization of Untrusted Data vulnerability in the JavaScript Task in Google Cloud Application Integration versions prior to...
    📅 Updated: Sep 28, 2026
  • CVE-2026-19759CVSS 9.4
    An Incorrect Authorization vulnerability in the task configuration in Google Cloud Application Integration versions prior to 2026-06-17 on Google...
    📅 Updated: Sep 28, 2026
Powered by CVE Watchtower

Daily CyberSecurity

  • About SecurityOnline.info
  • Advertise with us
  • Announcement
  • Contact
  • Contributor Register
  • Login
  • Disclaimer
  • DCMA
  • Privacy Policy
  • About SecurityOnline.info
  • Advertise on SecurityOnline.info
  • Contact Us

When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works

  • CVE Watchtower
  • CVE Statistics by Vendor 2026
  • Q2 2026 Report
  • Top Exploited CVEs
  • Bluesky
  • Facebook
  • Linkedin
  • Mastodon
  • RSS
  • Twitter
  • Youtube
© 2017 - 2026 Daily CyberSecurity. All Rights Reserved.