mitre-ta0003
628 articles with this tag
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
MEDIUM
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
MEDIUM
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
More JFrog Artifactory bugs under attack, and all 3 have patches
PaperCut Flaws Exploited in AI-Powered Attacks
Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware
VU#687587: AOMEI Backupper amwrtdrv.sys local privilege escalation vulnerability allows arbitrary writes to physical disks
Stealth rootkit targeting F5 BIG-IP could expose enterprise identity gateways
An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation
Angry Birds: Toy Ghouls’ new toys
Another Artifactory CVE under attack by AI agents or humans
Shai-Hulud hackers: two men charged over TeamPCP’s global supply chain crime spree that hit OpenAI, and thousands more
ClickFix Campaigns Abuse Legitimate Services for Persistent Access
CVE-2026-69380 Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2026-69641 Microsoft Exchange Server Elevation of Privilege Vulnerability
RMM Tools for MSPs: Features, Risks & How to Stay Secure
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
Modified ScreenConnect Clients Used in Worm-Like Campaign
Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner
ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
Attackers Turn Trusted Node.js Runtime Into Malware Delivery Tool in Targeted Attacks
Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access
Exploited JFrog Artifactory bug puts software supply chain on alert
Microsoft identifies ‘TerminalFix’ campaign spreading Python reverse tunnel
An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation
Silver Fox uses adware to distribute ValleyRAT backdoor
Another Artifactory CVE under attack by AI agents or humans
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
USN-8708-1: sudo-rs vulnerability
Infostealer malware compromises Claude accounts, bypassing 2FA
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity
ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions
Trusted Chrome, Edge extensions weaponized in supply chain campaign
TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
New campaign targets Cambodia with Spark RAT using BYOVD technique
China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access
Dark Caracal group enhances cyberespionage with new GoCaracal malware
WindRelay Combines NFC Relay Malware and Remote Access for Mobile Fraud
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Spark RAT Targets Cambodia, Abuses Vulnerable OPSWAT Driver to Disable Security Tools
Nimbus Manticore expands infrastructure and malware arsenal
Dark Caracal Adds New Malware to Cyber Espionage Arsenal
Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler
Mobile banking trojans expand capabilites; 66% now allow full device takeover
RMM Abuse: How Attackers Exploit Remote Access Tools | Huntress
AI helps Chinese-speaking hackers speed up attacks on exposed servers
You don't want this Sleepwalker backdoor on your Windows machine
Windows Defender’s own driver can leave systems defenseless
Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain
TrueConf flaws enabling attacks on meeting participants added to KEV catalog
Hackers poison popular Rust crates to steal developers' credentials
CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities
New Android banking Trojan ToxicPanda 2.0 expands victim targeting
ShieldBreak: The Windows Defender Zero-Day With No Patch — Detect It, Mitigate It, With Qualys
ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud
UAT-10147 deploys SPECTRE: A cross-platform implant with Linux rootkit and BYOVD capabilities
VU#874418: RDK-B WebUI contains multiple vulnerabilities
SilkParasite Threatens Central Asian Orgs With Flurry of RATs
SilkParasite Espionage Campaign Targets Central Asian Governments with Five New RATs
ValleyRAT campaign uses fake GSTR-3B overdue notice targeting Indian taxpayers
Silent 'TwinLoot' Cyber Threat Operates Entirely From Microsoft's Cloud
New PATCHCORD backdoor targets Afghan telecom and South Asian infrastructure
Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth
Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure
APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit
Global Threat Campaign Hits Critical VMware vCenter Flaw
vCenter Flaw Exploited Just Five Days After Disclosure
AI agents wage near-autonomous cyberattack on Asian government networks
Critical VMware vCenter Vulnerability in Attackers’ Crosshairs
Critical VMware vCenter flaw actively exploited in 47 countries
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
WindRelay Malware Pairs With SpyNote RAT in Live-Call Scam
Lazarus Used Post-Quantum Key Exchange to Deliver Zero-Day
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
ChainDrop supply chain compromise: Anatomy of a self-propagating worm
421 bugs in Microsoft's Patch Tuesday release, and the Norks have already attacked one
CVE-2026-64921 Microsoft SharePoint Server Elevation of Privilege Vulnerability
Mandatory User Profile for Persistence & EDR Evasion
Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
Rockwell Automation/Allen-Bradley MicroLogix PLCs Attack
Hacktivist group Head Mare exploits TrueConf vulnerabilities to deliver backdoors
WordPress Plugins Compromised Without a Single File Change
“Ghostjacking” Exploits AI Agents’ Trusted Access to Evade Firewall Controls
N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free · Tencent Zhuque Lab
ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets
Living off the coding agent: Two tales of tunnels and LaunchAgents
N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands
ChainDrop: Inside a Self-Propagating npm Worm
Researcher Claims Control of ChatGPT Secure Sandbox
Attackers hid malware inside Oracle Database after SQL injection breach
A Security Pro Hacked North Korean Hackers. He Found They’d Breached Hundreds of Networks Worldwide
QuickFox VPN targeted in long-standing supply chain attack delivering FDMTP backdoor
“SparkKitty” Malware Targets Mobile Users with Stealthy Data Theft
ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs
Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack
ChainDrop supply chain compromise: Anatomy of a self-propagating worm
ChainDrop credential stealing worm infects over 400 npm packages