mitre-ta0010
305 articles with this tag
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
INFO
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
MEDIUM
MEDIUM
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains
PTC Windchill Vulnerability Exploited in Ransomware Campaign
Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE
Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes
Russian espionage group using novel Zimbra exploit to steal sensitive data from Western countries
Year-long Russian attacks infect users as soon as they look at an email
Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations
Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite
Russian Global Webmail Espionage
Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife
Qilin exploits Palo Alto Networks GlobalProtect VPN firewalls
What happens if you visit a WordPress site hacked through wp2shell?
Estée Lauder Discloses Impact From Oracle EBS Zero-Day Hack
HollowGraph malware uses Microsoft 365 calendar for command and control
Ecopetrol confirms ransomware attempt, data stolen from 3,300 accounts
HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050
Microsoft 365 calendars become spy drop boxes in HOLLOWGRAPH campaign
New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications
Chinese actors leverage AI tools for automated cyberattacks on government and financial systems
GoSerpent: a persistent threat evolves with sophisticated data collection and exfiltration
20+ Hijacked Government Websites Became
an Attack Channel
Malicious ModHeader extension pulled from Chrome and Edge stores
The Memory Heist - How I tricked Claude into leaking your deepest, darkest secrets
Defending SaaS-based applications against ShinyHunters OAuth abuse
Australian Cyber Agency Warns of Global CMS Exploitation Campaign
New Helix data extortion group uses identity-focused tactics to target SharePoint
Armored Likho APT leverages AI-generated malware and BusySnake Stealer
Suspected Chinese spies target universities with Roundcube exploit
Accenture Confirms Data Breach After Hacker Claims Source Code Theft
VU#849433: Adalo Database API Enables Cross-App User Data Extraction via Over-Fetching and Missing Authorization Controls
Threat Actors Uses Agentic AI to Rapidly Compromise Cloud Target
Accenture acknowledges security incident following 35GB data theft claim
Windows is watching: Anti-piracy tool fingers Scattered Spider suspect
Hydro-Québec Le Circuit Electrique charging station backend
JadePuffer: The First Complete LLM-Driven Ransomware Attack
6th July – Threat Intelligence Report
Alleged Scattered Spider Hacker Extradited to US
Scattered Spider suspect extradited over $8 million ransom scheme
FortiBleed Credential Theft Linked to INC and Lynx Ransomware Operations
AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android
Mustang Panda Uses Zoho WorkDrive as Command Channel in Indian Government Attacks
More Klue Breach Victims Identified as Hackers Get Hacked
Why patch directives only go so far
Amadey, StealC malware operations disrupted in Operation Endgame action
When a vendor's breach becomes yours: lessons from the Klue incident
The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration
Klue breach exposed Salesforce CRM data through stolen OAuth tokens
Prevent data exfiltration: AWS egress controls for cloud workloads
New Prinz Eugen ransomware prioritizes recent files for encryption
Authorities disrupt Evil Corp’s SocGholish botnet
Cloudflare blocked 38.5 billion cyberattacks against civil society organizations
Icarus threat actors exploit Klue OAuth breach to steal Salesforce data
Klue OAuth breach linked to 'Icarus' Salesforce data theft attacks
Attackers drop DragonForce ransomware leveraging MS Teams relay systems
DragonForce ransomware uses Microsoft Teams for covert command and control
Crooks found a new way to collaborate using Teams – by hiding command-and-control traffic
EvilTokens: A phishing attack that doesn’t steal your password
China-linked group uses InfiniteRed malware to target medical research institutions
Chinese Hackers Abused Google Workspace Rules to Steal Research and Defense Emails
China-Nexus Actor Spied on US Researchers Undetected for a Year
Public and Private Medical Community Targeted by China-Nexus Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research
Chinese hackers breach REDCap servers, steal medical research
SearchLeak: How We Turned M365 Copilot Into a One-Click Data Exfiltration Weapon
ShinyHunters Uses Oracle Zero-Day to Rampage Higher Ed
PeopleSoft 0-day affecting hundreds of organizations steals gigabytes of data
ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities
Oracle mitigates PeopleSoft zero-day exploited in data theft attacks
ShinyHunters gang targets Oracle PeopleSoft servers in data theft attacks
Silent Ransom Group moves to in-person method if vishing attempt fails
New Pink cybercrime group targets corporate data using vishing and cloud theft
UNC3753 Used Vishing and Physical Intrusions in U.S. Data Theft Extortion Campaign
Credit card theft campaign abuses Stripe to host stolen payment info
Stock exchange executive’s Outlook mailbox stolen over course of 5 months
New HTTP/2 Bomb attack can take down web servers in seconds
MazeBolt launches AI module to simulate novel DDoS attack vectors
Hackers Target Global Stock Exchange in Espionage Operation
‘HTTP/2 Bomb’ Exploit Knocks Web Servers Offline in Seconds
New HTTP/2 Bomb Vulnerability Allows Remote DoS on NGINX, Apache, IIS, Envoy & Cloudflare
China Uses Dual-Method Cyberattack on Czech Orgs
China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan
North Korean hackers Kimsuky target South Korea with new malware variants
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploit
Silent Ransom Group Uses In-Person IT Impersonation to Breach Systems
Mini Shai Hulud: Compromised @antv npm packages enable CI/CD credential theft
Latin American Cybercriminals Hoover Up Government Data
BTMOB Android RAT poses significant threat with easy-to-use builder
FBI warns of in-person data theft attacks from extortion gang
LA Metro Cyberattack Linked to Iranian State-Sponsored Hackers
FBI: Hackers Sending Operatives in Person to Insert USB Drives and Steal Data
Laravel-Lang Packages Poisoned for Malware Delivery
Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and Canada
GitHub, Grafana Labs breaches traced back to TanStack supply chain compromise
WantToCry ransomware evades detection through SMB abuse, remote encryption
New Mini Shai-Hulud attack targets npm ecosystem
Grafana breach caused by missed token rotation after TanStack attack
GitHub says internal repositories were taken in poisoned VS Code extension attack
GitHub Actions Supply Chain Attack Redirects Tags to Steal CI/CD Credentials
When configuration becomes a vulnerability: Exploitable misconfigurations in AI apps
Expired domain leads to supply chain attack on node-ipc npm package
Funnel Builder WordPress plugin bug exploited to steal credit cards