mitre-ta0040
812 articles with this tag
MEDIUM
LOW
MEDIUM
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
INFO
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
CRITICAL
CRITICAL
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
Ukrainian lawyer's second career as a Conti coder earns him 4 years behind bars
Ukrainian Conti Ransomware Developer Sentenced to 4 Years in US Prison
No Extensions? You Forgot One: Writing Shared Objects to RCE via SQLite's dbpage
CISA: WatchGuard Firebox bug exploited in ransomware campaigns
MantaxOtax Android Malware Combines Ransomware With Spyware
Fortinet Code Execution Flaw Exploited in PivotC2 RAT Attacks
Orkes Conductor Evaluator Remote Code Execution
Mantax Otax: Indonesian Mobile Ransomware with Spyware Integration
VU#718077: UEFI Shell module embedded in SPI Flash can be used to bypass Secure Boot
Rhysida Publishes Berlin Government Data After €2m Extortion Demand Refused
AI agents help compress ransomware intrusion to under 10 hours, raising stakes for CISOs
Dogged Russia-based botnet dismantled after 23-year run
Ransomware Gang Claims Nutex Health Data Breach
McKesson copes with fallout from data theft extortion attack
ATF investigating cybersecurity incident designated a major incident
A fake resume invoked China’s defence tech elite, then installed VShell
Two alleged TeamPCP members arrested and charged after months of software supply-chain chaos
Boston Scientific Reveals Global Disruption After Cyber Incident
Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services
Boston Scientific discloses 'global disruption' in ongoing cyberattack
DDoS Attack Hits Norwegian Government Services
Wordfence Argus Finds Complex 6 Step Critical RCE in Avada Theme with 1 Million Sales
VU#308749: Remote Code Execution and Arbitrary File Read Vulnerabilities in Kaltura Servers
Suspected Iran-linked attack knocked UK power plant offline for days
Iran-Linked Hackers Shut Down UK Power Plant for Four Days
US Bank investigates LockBit ransomware claims of data breach
North Korean Hackers Tied to Rust Supply Chain Attack
Medusa ransomware gang has hit over 500 organizations, CISA warns
DeadLock ransomware: Rust-based encryptor with decentralized recovery infrastructure
Encrypted messaging provider Threema hit by large-scale DDoS attacks
Detecting cloud ransomware in Azure with Tenable One’s cloud detection and response capabilities
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
Akira ransomware reboots into Windows Safe Mode to knock EDR offline
When You Pay the Ransom - Taking Apart an Interlock ESXi Decryptor | Maldbg
DDoS attacks hit record scale as 1 Tbps+ campaigns become more common
Akira ransomware attacker uses Safe Mode reboot to evade EDR
Colombia's Ministry of Justice hit by ransomware attack
Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition
Microsoft SharePoint Server bug exploited in ransomware attacks
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
CopyEscape: Container-to-host arbitrary file write via docker cp (CVE-2026-17106)
Suisan City, California, Responds to Cyber Incident Amid Wave of US Local Government Attacks
Ransomware gangs don’t need control system access to disrupt industrial production
U.S., South Korean government agencies caution to be on lookout for Gunra ransomware gang
DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure
#StopRansomware: Gunra Ransomware
4 million fake applications and one blind spot: A SOC playbook for OAuth client ID spoofing
Ransomware gangs skip the CEO, head straight for the 40-something IT manager
Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix
How a $50,000 Exploit Chain Turned Bixby Against Samsung Phones
Flaws in Google APK for Python Unlock Agent-to-Agent Attack
What stops attackers wrecking industrial plants is knowing how
Keyv, cacheable npm supply chain attack hits 400-plus packages
Prolific ransomware group behind SonicWall zero-day attacks
River Bank reports hackers deleted data stolen in June ransomware attack
River Bank Says Hackers Deleted Data Stolen in Ransomware Attack
JetBrains says a crafted HTTP request could break TeamCity
Microsoft confirms an AI worm is propagating through Copilot and other MS apps
A Leaked Memo Ties Cyberattacks on Minnesota Water Utilities to Iran
WordPress Core Unauthenticated RCE (WP2Shell)
VU#281278: SGLang contains six different vulnerabilities including RCE, data exfiltration, and credential disclosure
KindaRails2Shell: arbitrary file read to RCE in Rails Active Storage via libvips (CVE-2026-66066)
Russian spies take their half-click email attack from Zimbra to Outlook
Iran-linked CyberAv3ngers suspected in attacks on Minnesota water systems
Dozens of Minnesota Water Utilities Targeted in Coordinated OT Attacks
Coordinated “cyberattack” on Minnesota water utilities: What you need to know
Arista patches maximum severity vulnerability that is already being exploited
PTC Windchill & FlexPLM RCE
Chaos in Teams vishing
Coca-Cola Reveals Subsidiary Fairlife Suffered Data Breach
Coca-Cola confirms hackers stole data in Fairlife ransomware attack
Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack
The Signs Were There: What the First Autonomous Ransomware Case Confirms
Ransomware Attacks Targeting Universities on the Rise
CVE-2026-63136 Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service
Ransomware Attack Puts a Chill On Japanese Frozen-Food Chain
NuGet typosquat targets Digitain game results
wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution
GigaWiper: Anatomy of a destructive backdoor assembled from multiple malware
JADEPUFFER agentic ransomware returns, targets AI assets with ENCFORGE payload
JadePuffer returns with ransomware built to target AI models and infrastructure
A new extortion cocktail: office printers, small ransoms, and BitLocker
JadePuffer Returns With Ransomware Designed to Wipe AI Models
wp2shell (CVE-2026-63030, CVE-2026-60137): Frequently asked questions about remote code execution chain in WordPress Core
Coca-Cola's Fairlife dairy subsidiary hit by ransomware attack, suspending US production
Government Agencies Falling Victim to Ransomware Daily, Warns Study
Spirals ransomware locks down victim systems in under 24 hours
Ransomware attack halts Coca-Cola’s Fairlife US milk production
Joomla SP Page Builder RCE
Attackers execute a complete ransomware operation in under 24 hours
VU#885548: Denial-of-service vulnerability in HTTP/2 servers via stalled flow-control conditions
SonicWall customers under threat as attackers exploit 2 zero-days
CVE-2026-15409, CVE-2026-15410: SonicWall SMA 1000 zero-day vulnerabilities exploited in the wild
(More) Unauthenticated Arbitrary Code Execution in ServiceNow
CVE-2026-50653 Azure Active Directory Denial of Service Vulnerability
CVE-2026-49788 HTTP/2 Denial of Service Vulnerability
Hacker Extradited from Ukraine Pleads Guilty to Ryuk Ransomware Charges
Armenian man pleads guilty to deploying Ryuk ransomware
Armenian national pleads guilty to Ryuk ransomware attacks