mitre-t1021
274 articles with this tag
CRITICAL
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
CRITICAL
MEDIUM
CRITICAL
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
INFO
HIGH
HIGH
CRITICAL
CRITICAL
MEDIUM
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
MEDIUM
CRITICAL
CRITICAL
CRITICAL
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
🕵️‍♂️ SonicWall SMA1000 (CVE-2026-15409): SSRF to Erlang RCE chained into automated DCSync from the appliance
Angry Birds: Toy Ghouls’ new toys
The Models That Found 10,000 Zero-Days Broke Into Three Companies Using Weak Passwords
AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit
SonicWall's SMA1000 boxes under active attack again
The Models That Found 10,000 Zero-Days Broke Into Three Companies Using Weak Passwords
Impersonating IT support: how threat actors turn a remote session into enterprise-wide access
New Android RAT uses worm to target exposed ADB services
N-able patches critical N-central RCE flaw amid exploit concerns
🚨 Redis Cryptomining Botnet Compromised 3,562 Servers, Exposed by the Operator's Own Files
CISA tells operators to harden Siemens S7 PLCs. Here’s how to do it without disrupting production
Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution
THost9 Android RAT Pairs Packed Loader With ADB Worm
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
LG TV flaws could let attackers listen in, even in standby mode
Free streaming boxes may be routing criminal traffic through your home
Attackers exploit zero-days in consistently besieged SonicWall product
Counterfeit installers turn routine software downloads into enterprise breaches
Impersonating IT support: how threat actors turn a remote session into enterprise-wide access
AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit
Breeze Comet threat actor targets Brazilian financial sector with sophisticated attacks
Anatomy of a Silent Domain Takeover
Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages
Gambling Goblin Turns Brazilian Government Sites Into SEO Weapons
Authorities Turn Sality's P2P Network Against Itself, Cutting Off New Malware Payloads
Counterfeit installers to system compromise: Tracking a deceptive software download campaign
Another Artifactory CVE under attack by AI agents or humans
TerminalFix looks like ClickFix, but delivers a very different payload
PaperCut Exploitation Escalates to Active Intrusions
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets
[NEU] [hoch] Langflow OSS: Mehrere Schwachstellen
OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face
Dark Caracal group enhances cyberespionage with new GoCaracal malware
FBI seizes China-linked QScan and QTRouter platforms used to target US critical infrastructure
Officials disrupt Chinese espionage operation that hit multiple federal agencies
More than 100 water systems were hit in July cyberattacks
FBI Disrupts Chinese Proxy Tools Used in Mass Hacking of US Agencies and Infrastructure
Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel
Iran-linked cyberattack shut down a UK power plant
WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords
Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor
🎥 Operation CameraSwarm: over 14,000 Dahua cameras compromised across Ukraine and Russia
The Taiwan attack was built with two free downloads from vendors nobody rates
New Agent Tesla Malware Variant Boosts Evasion Capabilities
Backdoored Rust packages hit crates.io, exposing developers to malware at build time
Grandoreiro Resurfaces in Mexico With New DLL Sideloading Campaign
Over 500 Critical Infrastructure Organizations Hit by Medusa Ransomware
Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics
Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies
Autonomous AI attacks pose 'clear and present danger' to critical infrastructure
Global Threat Campaign Hits Critical VMware vCenter Flaw
AI agents wage near-autonomous cyberattack on Asian government networks
Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure
Akira ransomware scum blocked victim's security tools – and broke their own encryptor
NCSC-2026-0283 [1.00] [M/H] Kwetsbaarheden in Veeam ONE
Kimwolf v7: An Evolution of the Kimwolf Botnet
Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
Attackers breach Polish CHP plant using private APN and Fortinet device
USN-8626-1: systemd vulnerabilities
N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
TeamPCP Traced Back to 2020 Cryptojacking Operation
How a software provider closed unknown paths to cloud compromise
OpenAI Didn’t Notice Its AI Agents Using a Message Board to Plan Their Hacking Spree
QuickFox VPN targeted in long-standing supply chain attack delivering FDMTP backdoor
TP-Link Omada ZTP systems vulnerable to fleet-wide compromise
The Minnesota attackers may hold a better backup of your plant than you do
CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises
INC Ransomware chains two SonicWall SMA 1000 zero-days in attacks
INC Ransomware Emerges as Dominant Actor Exploiting SonicWall SMA 1000 Flaws
South Korea warns of nation-state actors using phishing and compromised websites
Recent SonicWall Vulnerabilities Exploited in Ransomware Attacks
N-able Says Attackers Take Over N-central Servers After Initial Fix Proves Incomplete
Chinese Hacker Commands DeepSeek via Telegram to Launch Autonomous Attacks
Anthropic’s Claude escaped test sandbox to attack three organizations
CISA Urges Water and Wastewater Systems Sector to Protect OT Against Activity Targeting PLCs
Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend
SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT
Toy Ghouls’ new toy: the GenieLocker ransomware
OpenAI explains how its AI agent breached Hugging Face
OpenAI rogue AI agent’s attack expanded beyond Hugging Face
OpenAI’s Rogue AI Ventured Beyond Hugging Face
JFrog Zero-Days Exploited in OpenAI-Hugging Face Hack
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
Unpacking the AsyncAPI npm supply chain compromise and import-time payload delivery
Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption
The Sub-10-Minute Cloud Takeover: How Exposed IAM Keys, Misconfiguration and AI Are Rewriting the Rules of Cloud Breaches
US warns of Iran-linked attacks on critical infrastructure
In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws
Thailand's Ministry of Finance targeted with an AI agent running with approval prompts disabled
OpenAI’s AI “goes rogue” and hacks Hugging Face: what you need to know
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
Iran-linked crews are probing more flavors of US industrial kit
When AI Attacks: OpenAI Models Autonomously Hack Hugging Face
OpenAI model escape puts enterprise AI defenses on notice
Open AI Claims Its AI Models Went Rogue and Hacked Another Company
OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark
OpenAI admits it was the source of the agent swarm that attacked Hugging Face
A new extortion cocktail: office printers, small ransoms, and BitLocker