mitre-t1078
812 articles with this tag
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
CRITICAL
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
MEDIUM
USN-8621-1: Samba vulnerabilities
MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection
Golden Chickens malware-as-a-service resurfaces with four new families
Beyond the Play Store: How Android threats really spread
NCSC-2026-0264 [1.00] [M/H] Kwetsbaarheden verholpen in Check Point Security Management producten
Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
Tycoon2FA takedown reshapes the phishing landscape
AgentForger proves AI agents can become persistent insider threats
Year-long Russian attacks infect users as soon as they look at an email
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite
Iran-linked crews are probing more flavors of US industrial kit
TAG-195 Upgrades MaaS Ecosystem with Modular Tools
Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers
What the recent SharePoint bugs told us about the patch race
New Dolphin X Stealer Employs AI Profiling to Prioritize Targets
Brazilian Banking Trojan Actively Spreading in Portugal
German law enforcement claims to have ‘dismantled’ mega phishing-as-a-service group Kratos
Ubuntu snap-confine vulnerability grants root access
Hugging Face ‘attacker’ revealed to be OpenAI agents that escaped testing sandbox
Malware is targeting AI tools in software development environments
SharePoint vulnerability steals machine keys; fourth recent exploit
TrickBot Ditches HTTP for DNS Tunneling in Latest Variant
Sneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profits
Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)
Ubuntu snap-confine Vulnerability Enables Local Root Access
FBI warns of scammers impersonating agency online
Kratos phishing-as-a-service kit loses its battle with international law enforcement
A Sneaky Hacking Tool Targeting AI Infrastructure Is Lurking in Victims’ Blind Spots
New ClickLock Stealer locks your Mac until you hand over your password
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
SleeperGem attack targets Ruby ecosystem with malicious gems
HelloNet campaign abuses ViPNet update mechanism to target Russian organizations
New npm malware cluster targets Vite ecosystem
New ACR Stealer campaigns use WebDAV, MSHTA to evade detection
New North Korean campaign uses fake coding interviews to steal developer credentials
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
Pixels to Payload: Dissecting a Four-Stage Bitmap-Steganography Dropper Delivering AsyncRAT :: Rhys Downing
OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials
Stolen identities cause 79% of ransomware attacks, says Sophos report
New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
New macOS stealer uses social engineering and coercion
PhantomEnigma campaign hijacks Brazilian government websites for malware delivery
Chinese actors leverage AI tools for automated cyberattacks on government and financial systems
Daxin malware resurfaces with new backdoor targeting Taiwan manufacturer
Russian hacker uses Google's AI tool to operate botnet
CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilities
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign
Unpacking the AsyncAPI npm supply chain compromise and import-time payload delivery
CISA warns that three SharePoint Server bugs are actively exploited
Investigating Persistence Mechanisms in AWS
New Windows Bind Link techniques let attackers evade EDR, security controls
LegacyHive: 'Bone-shattering' zero-day from Microsoft's serial tormentor not the haymaker that was promised
Compromised Logins Surge as the Most Common Entry Point for Ransomware Attacks
MacOS ‘CrashStealer’ malware poses as crash reporter to steal credentials
This fake Apple app can unlock your Mac’s password vault
ShinyHunters group exploits OAuth trust, prompting Microsoft security upgrades
OAuth Client ID Spoofing Lets Attackers Validate Stolen Microsoft Entra Credentials
Warning: Scammers are using FaceTime to empty bank accounts
Phishing for dummies: Forg365 lowers barrier to M365 account takeovers
Multiple Jscrambler Packages Impacted by Supply Chain Attack
Defending SaaS-based applications against ShinyHunters OAuth abuse
Argentine Football Association systems reportedly compromised after nearly year-old infostealer infection
Russia’s FSB attacks critical infrastructure, says 12 Western nations
Threat Actors Achieve Persistence After SQL Injection
Officials once again warn defenders that Russian hackers are targeting network devices
Pakistani Police Systems Hit by Chinese and Indian Espionage
World Cup grudge attackers may have scored Argentine FA access via year-old infostealer infection
RabbitMQ flaws expose OAuth secrets, risk complete takeover of the broker
Ciblage et compromission d’entités françaises au moyen du mode opératoire d’attaque Turla (13 juillet 2026)
Targeting and Compromise of French Entities Using the Turla Intrusion Set (13 juillet 2026)
NCSC-2026-0227 [1.00] [M/H] Kwetsbaarheden verholpen in Palo Alto Networks PAN-OS
NCSC-2026-0225 [1.00] [M/H] Kwetsbaarheden verholpen in Siemens SICORE
No Manners Here: The Ruthless Rise of The Gentlemen Ransomware
Silver Fox group uses new Rust-based MODBEACON RAT
New Ransomware Exploits Malicious Driver to Remove Cybersecurity Protections
‘GodDamn’ ransomware deploys PoisonX driver to kill EDR
Threat actor uses AI-generated malware in network intrusion
CitrixBleed 2 (CVE-2025-5777) 7Steps to Dragonforce Ransomware | Huntress
AI-Coded Malware | Analyzing Vibe-Coded AD Enumeration | Huntress
Hackers selling UK government login credentials on dark web amid FortiBleed campaign
Suspected Russian Threat Actor Impersonates Legitimate Crypto Wallets to Deploy Remote Utilities
Lone Attacker Uses AI to Breach AWS Cloud Environment in 72 Hours
FortiBleed: Credential Reuse, Legacy Hashes, and the Risk of Internet-Exposed FortiGate Devices
Accenture Confirms Data Breach After Hacker Claims Source Code Theft
China-Linked APT Expands Arsenal With New ‘Leash’ Backdoors
VU#849433: Adalo Database API Enables Cross-App User Data Extraction via Over-Fetching and Missing Authorization Controls
New Ghost Phishing Wave Is Breaking Traditional Email Security
CAI cloud worm gives competitors' malware the boot, then steals secrets and mines for coin
Suspected Chinese espionage group used a Roundcube exploit chain to burrow into universities
NCSC-2026-0221 [1.00] [M/H] Kwetsbaarheden verholpen in UniFi-producten van Ubiquiti Networks
Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks
Armored Likho APT Targeting Government, Electric Power Entities
USN-8506-1: Request Tracker vulnerabilities
Cavern Manticore: Exposing Iran-Linked Modular C2 Framework
Suspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT
Researchers Claim First Fully Agentic Ransomware: JadePuffer
Windows Service - Playbook & Detection Strategies
Warning Over “Industrialized” Cyber-Attacks After Ransomware Gang Partners With TeamPCP
Defending the Authentication Flow: Device Code Phishing with Selena Larson