In April 2026, security researchers uncovered a massive Vidar stealer campaign distributing data theft and cryptocurrency mining...
News
At a glance Actor UNK_MassTraction — suspected China-aligned espionage cluster Activity Roundcube exploitation for credential theft, webshells,...
At a glance Actor UAT-7810 — assessed China-nexus APT (Cisco Talos, high confidence) Activity Building and expanding...
Hydro-Québec recently disclosed a severe privilege escalation flaw impacting its electric vehicle charging network. This critical vulnerability...
At a Glance Malware Family: AsyncRAT Threat Actor: Unknown cybercriminals Target or Victims: Individual consumers and corporate...
Speeding Up Threat Hunts Microsoft recently shared insights on its smart systems. Thus, smart tech now hastens...
TL;DR Summary WatchTowr researchers disclosed a critical remote code execution flaw in Veeam Backup & Replication. The...
Market research firm StatCounter frequently publishes statistics on operating systems, browsers, and other products. Recently, their June...
At a glance Actor / group Russian FSB Center 16 (aka Berserk Bear, Dragonfly, Static Tundra) Activity...
At a glance Actor / group Unattributed malicious cyber actors Activity Mass exploitation of CMS flaws to...
At a Glance Actor or group: Cavern Manticore APT (suspected Iran-linked) Activity type: Cyber-espionage and network infiltration...
TL;DR A critical flaw in WAGO System I/O field devices now has a fix. Tracked as CVE-2026-4769,...
At a Glance Actor or group: Armored Likho APT (suspected) Activity type: Spear-phishing and information theft Targets...
At a Glance Malware Family: Indirect Prompt Injection (IPI) Threat Actor: Suspected GitHub user (Open-Agent-Utilities) Target: Autonomous...
Yesterday, Elon Musk and Sam Altman engaged in a fierce public dispute on X. Meanwhile, an opportunistic...
Cursor is an AI code editor acquired by Elon Musk for 60 billion dollars. The company is...
Last week brought a heavy load for defenders. This weekly CVE report from CVE WATCHTOWER counts 1,571...
At a Glance Malware Family: Mycelium Framework Threat Actor: Unknown (suspected underground developer) Targets or Victims: Enterprise...
TL;DR Apache has patched a new flaw in Apache Log4j, tracked as CVE-2026-49844. The bug lets an...
TL;DR A high-severity decompress npm vulnerability lets crafted archives write files outside the extraction folder. Tracked as...
TL;DR Apache IoTDB has patched three flaws in its time-series database. The worst is a critical path...
At a glance Actor A Silver Fox (UTG-Q-1000) Ghost distributor — assessed “hybrid threat actor” Activity SEO-poisoned...