The 2026 U.S. Midterms Election Season, Weakened Defenses: The Cyber L...
The 2026 U.S. Midterms Election Season, Weakened Defenses: The Cyber Landscape Ahead In late April 2026, Army General Joshua Rudd, the head of U.S. Cyber Command and the NSA, testified before the Sena...
SOCRadar Attack Surface Management Now Integrates with ArmorCode ASPM
SOCRadar Attack Surface Management Now Integrates with ArmorCode ASPM Your team has a process for triaging vulnerabilities. The question is whether findings from your external attack surface ever reac...
Metree and WuBook Leaks, SonicWall Access, Campus.gov.il Data, and Ken...
Metree and WuBook Leaks, SonicWall Access, Campus.gov.il Data, and Kenya Vehicle Database SOCRadar Dark Web Team identified several new underground posts, including an alleged Metree e-commerce databa...
Citrix NetScaler Zero-Days FAQ: CVE-2026-88771 & 88772
Citrix NetScaler Zero-Days FAQ: CVE-2026-88771 & 88772 Citrix has released emergency security updates for eight vulnerabilities affecting customer-managed NetScaler ADC and NetScaler Gateway appli...
Operation Talked: A Russia-Linked Cyber Espionage Campaign Targeting U...
Operation Talked: A Russia-Linked Cyber Espionage Campaign Targeting Ukraine’s Defense Industry TL;DR: OPERATION TALKED is an ongoing Russia-linked espionage campaign, exposed after the actor left the...
Dark Web Profile: Blue Locker Ransomware
Threat Actor Profile: Blue Locker Ransomware Blue Locker Ransomware, first detected in late 2021, the group stayed low-profile for years before making global headlines in August 2025 with a targeted a...
Roundcube SQLi (CVE-2026-48842) Exploited
Roundcube SQLi (CVE-2026-48842) Exploited A pre-authentication SQL injection vulnerability in Roundcube Webmail is reportedly being exploited in the wild months after patches became available. Tracked...
Check Point Pre-Auth Flaws Under Attack
Check Point Pre-Auth Flaws Under Attack Check Point has warned that two critical, pre-authentication vulnerabilities affecting its security products are being actively exploited. CVE-2026-85102 affect...
Operation Master: Deconstructing a Multi-Tiered Intrusion and Monetiza...
Operation Master: Deconstructing a Multi-Tiered Intrusion and Monetization Pipeline SOCRadar Threat Research Unit (STRU) has uncovered an end-to-end cybercrime operation dubbed Operation Master, in wh...
Closing the Dark Web Blind Spot in EclecticIQ Intelligence Center with...
Closing the Dark Web Blind Spot in EclecticIQ Intelligence Center with SOCRadar Your analysts start the morning in their threat intelligence platform, working the feeds, cases, and detections in front...
CVE-2026-94127: F5 BIG-IP APM RCE Under Active Exploitation
CVE-2026-94127: F5 BIG-IP APM RCE Under Active Exploitation F5 has released emergency engineering hotfixes for CVE-2026-94127, a critical heap-based buffer overflow in BIG-IP Access Policy Manager (AP...
ShinyHunters Claims Access to FBI Systems
ShinyHunters Claims Access to FBI Systems Days after hijacking Clop’s Dark Web leak site, ShinyHunters claims it breached the FBI, defaced part of its recruitment website, and stole sensitive informat...
CVE-2026-87902 in WordPress Enables Conditional RCE
CVE-2026-87902 in WordPress Enables Conditional RCE Security updates released for WordPress address CVE-2026-87902, a severe unauthenticated path traversal flaw within its page-template resolution mec...
Berlin Data Leak: What Rhysida Published, and What Is Still Unresolved
Berlin Data Leak: What Rhysida Published, and What Is Still Unresolved This post consolidates what has been confirmed by the State of Berlin, what remains the threat actor’s own claim, and what the pu...
Operation Conflict Compass: Konni Targets Ukraine via Malicious LNK Lu...
Operation Conflict Compass: Konni Targets Ukraine via Malicious LNK Lures Since 2009, the Democratic People’s Republic of Korea (DPRK) has fully integrated cyber operations into its national strategy,...
August 2026: GTA VI Leak, Keyv & Carhartt Breaches
August 2026: GTA VI Leak, Keyv & Carhartt Breaches August 2026 brought a wide mix of cyber incidents, from large-scale data breaches affecting millions of people to software supply chain attacks t...
Click2Shell: WordPress Flaw Enables RCE Chain
Click2Shell: WordPress Flaw Enables RCE Chain Click2Shell is a vulnerability in WordPress Core that allows a logged-in administrator’s browser to be manipulated into installing and previewing a theme ...
Clop Hack: ShinyHunters Hijacks Data Leak Site
Clop Hack: ShinyHunters Hijacks Data Leak Site [Update] September 23, 2026: ShinyHunters Alleges Breach of the FBI ShinyHunters has turned the tables on rival cybercrime operation Clop (a.k.a. Cl0p), ...
Dominican Republic Leak, Celestial Malware, Money Network Sale, CVV Au...
Dominican Republic Leak, Celestial Malware, Money Network Sale, CVV Auction, and US VPN Access SOCRadar Dark Web Team identified several new underground posts, including an alleged Dominican Republic ...
CVE-2026-91843: Check Point Root RCE
CVE-2026-91843: Check Point Root RCE Check Point has patched CVE-2026-91843, a critical stack-based buffer overflow flaw in the login process of its Security Management and Log Server products. If exp...
