mitre-t1059
1368 articles with this tag
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
MEDIUM
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
USN-8621-1: Samba vulnerabilities
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
Mirage Kitten targets Middle East and Africa region with new malware
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update
PTC Windchill Vulnerability Exploited in Ransomware Campaign
MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection
Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials
TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments
Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
Golden Chickens malware-as-a-service resurfaces with four new families
AI assistant used in cyberattack on Thailand's Ministry of Finance
BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
The Signs Were There: What the First Autonomous Ransomware Case Confirms
Beyond the Play Store: How Android threats really spread
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
Lampion banking malware continues to target Portuguese organizations
Thailand's Ministry of Finance targeted with an AI agent running with approval prompts disabled
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
Russian hackers exploit Zimbra zero-click flaw for email theft
Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
China-Nexus JadeProx Uses New TriBack Loader in Government and Healthcare Attacks
Russian Global Webmail Espionage
TAG-195 Upgrades MaaS Ecosystem with Modular Tools
Iranian Hackers Target Siemens and Schneider Industrial Systems, CISA Warns
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
[NEU] [hoch] pg_partman: Mehrere Schwachstellen
[NEU] [hoch] n8n: Mehrere Schwachstellen
What the recent SharePoint bugs told us about the patch race
[NEU] [hoch] Budibase: Mehrere Schwachstellen
Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channel
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
TrickBot variant uses DNS tunneling for command and control
North Korean hackers target South Korean software vendors
wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution
Malware is targeting AI tools in software development environments
VU#360868: Analog Way Picturall Quad Compact Mark II contains a local privilege escalation vulnerability
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
JADEPUFFER agentic ransomware returns, targets AI assets with ENCFORGE payload
OpenAI says model test was behind Hugging Face hack
Qilin exploits Palo Alto Networks GlobalProtect VPN firewalls
Sophisticated crypter service Cruciferra evades detection with advanced techniques
A Sneaky Hacking Tool Targeting AI Infrastructure Is Lurking in Victims’ Blind Spots
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
What happens if you visit a WordPress site hacked through wp2shell?
Your AI agent’s config is now the payload: How attackers are targeting the developer agent harness
[NEU] [hoch] Synacor Zimbra: Mehrere Schwachstellen
Estée Lauder Discloses Impact From Oracle EBS Zero-Day Hack
Ukraine warns fake CAPTCHAs are being used to make you hack yourself
NCSC-2026-0251 [1.00] [M/H] Kwetsbaarheden verholpen in IBM Langflow OSS
ACR Stealer: Two observed intrusion chains amid increased threat activity
'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover
HollowGraph malware uses Microsoft 365 calendar for command and control
Ecopetrol confirms ransomware attempt, data stolen from 3,300 accounts
Attackers Combo Up Evasion Tactics for BEC Phishing
Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
SleeperGem attack targets Ruby ecosystem with malicious gems
HelloNet campaign abuses ViPNet update mechanism to target Russian organizations
New npm malware cluster targets Vite ecosystem
HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050
Microsoft 365 calendars become spy drop boxes in HOLLOWGRAPH campaign
Cruciferra Crypter Uses Process Ghosting to Evade Detection
SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch
JadePuffer Returns With Ransomware Designed to Wipe AI Models
Researchers Build WordPress Exploit Using OpenAI's GPT
New ACR Stealer campaigns use WebDAV, MSHTA to evade detection
New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications
Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs
Hugging Face Hacked in Autonomous AI Attack
World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access
wp2shell (CVE-2026-63030) update: public working exploit now available for the WordPress core pre-auth RCE
Pixels to Payload: Dissecting a Four-Stage Bitmap-Steganography Dropper Delivering AsyncRAT :: Rhys Downing
Proxying to Compromise: SonicWall Secure Mobile Access 0-day Exploitation
Inc Ransomware Exploits SonicWall SMA Zero-Days
Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT
New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage
Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy
Fake TTF files deliver stealthy malware in global phishing campaign
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV
Joomla SP Page Builder RCE
ACR Stealer: Two observed intrusion chains amid increased threat activity
Russian hackers use fake CAPTCHA to infect Ukrainian targets
Google Mandiant warns of exposed serverless functions as attack vector
Chinese actors leverage AI tools for automated cyberattacks on government and financial systems
Daxin malware resurfaces with new backdoor targeting Taiwan manufacturer
New TELEPUZ malware spreads via ClickFix lures
OkoBot malware targets hardware wallet users with recovery phrase phishing
Attackers execute a complete ransomware operation in under 24 hours
Russian hacker uses Google's AI tool to operate botnet
CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilities
HelloNet campaign — new malicious modules launched through the ViPNet update system
Phishing Campaign Hides Lua Loader as TrueType Font File