Brazil Fiscal Leak, US Fullz, Telecom Access, Endesa IBANs, and Mexico...
Brazil Fiscal Leak, US Fullz, Telecom Access, Endesa IBANs, and Mexico Fortinet Access SOCRadar Dark Web Team identified several new underground posts involving alleged large-scale data exposure and i...
XSS2Shell (CVE-2026-64638): Patch WordPress Now
XSS2Shell (CVE-2026-64638): Patch WordPress Now A new WordPress Core vulnerability chain called XSS2Shell turns a login page XSS bug into a much more serious risk for exposed WordPress sites. The issu...
Cracking Kynx: The Stealer Hunting for Your Wallets, Games, and AI Too...
Cracking Kynx: The Stealer Hunting for Your Wallets, Games, and AI Tools Kynx is a new Malware-as-a-Service infostealer, built in C++ with AI assistance and promoted on a Turkish game cheating forum. ...
Cisco Catalyst SD-WAN and IOS XE: Critical Flaws Fixed
Cisco Catalyst SD-WAN and IOS XE: Critical Flaws Fixed Cisco published a new set of security advisories, addressing vulnerabilities across Catalyst SD-WAN, IOS XE, Cisco Integrated Management Controll...
Snowflake Hacker Pleads Guilty, Faces 32 Years
Snowflake Hacker Pleads Guilty, Faces 32 Years Snowflake hacker Connor Riley Moucka pleaded guilty on August 5, 2026, in the U.S. District Court for the Western District of Washington, admitting to co...
Formula 1 Phishing Campaign & Kit Analysis
Formula 1 Phishing Campaign & Kit Analysis SOCRadar Threat Research Unit (STRU) has identified and analyzed a sophisticated, multi-stage phishing campaign that exploits the high-intensity demand f...
Dark Web Market: Vortex Market
Dark Web Market: Vortex Market Vortex Market describes itself as a “classic wallet escrow market,” and that self-description is accurate. It is a general-purpose Dark Web marketplace built around anon...
Why Was Telegram Removed From the App Store?
Why Was Telegram Removed From the App Store? [Update] August 5, 2026: Durov Claims “Takedown Extortionist” Triggered App Store Removal Telegram briefly disappeared from the App Store worldwide on Mond...
Dark Web Profile: Mustang Panda
Dark Web Profile: Mustang Panda Mustang Panda is one of the most persistent China-nexus cyber espionage groups operating today. Active since at least 2012, the group has targeted government agencies, ...
CVE-2026-48449: Adobe Campaign Classic RCE
CVE-2026-48449: Adobe Campaign Classic RCE Adobe Campaign Classic is affected by CVE-2026-48449, a critical incorrect authorization vulnerability allowing Remote Code Execution (RCE). With a maximum s...
Introducing DOUBLECUP, a ClickFix Loader Delivering CountLoader and De...
Introducing DOUBLECUP, a ClickFix Loader Delivering CountLoader and DeviceManager RATs SOCRadar’s Threat Research Unit (STRU) identified and analyzed DOUBLECUP, a Russian Loader-as-a-Service (LaaS) fo...
CVE Exploit Sale, Pakistan Telecom Data Claim, WineStyle Leak, RDWeb A...
CVE Exploit Sale, Pakistan Telecom Data Claim, WineStyle Leak, RDWeb Access, and Moscow Health Database Sale SOCRadar Dark Web Team identified several new underground posts involving alleged exploit s...
Minnesota Water Cyberattack: FBI and EPA Warn of PLC Attacks Across Se...
Minnesota Water Cyberattack: FBI and EPA Warn of PLC Attacks Across Seven States Key Takeaways A coordinated cyberattack hit operational technology at more than 30 Minnesota community water systems o...
Top 10 MSSPs in Belgium (2026)
Top 10 MSSPs in Belgium (2026) Belgium has quietly become one of Europe’s most demanding cybersecurity markets. It hosts the EU institutions and NATO, carries a dense concentration of critical infrast...
Tracing SNOWLIGHT: A China-Nexus Campaign Against Government Infrastru...
Tracing SNOWLIGHT: A China-Nexus Campaign Against Government Infrastructure SOCRadar Threat Research Unit (STRU) identified and analyzed an exposed adversary-operated staging server containing a full ...
CVE-2026-20316: Cisco Secure FMC Static-Credential Flaw Exploited in Z...
CVE-2026-20316: Cisco Secure FMC Static-Credential Flaw Exploited in Zero-Day Attacks Cisco has confirmed that CVE-2026-20316 is actively exploited against Cisco Secure Firewall Management Center (FMC...
Critical VMware vCenter and ESX Flaws Fixed
Critical VMware vCenter and ESX Flaws Fixed Broadcom has released a new VMware advisory, VMSA-2026-0006, addressing five vulnerabilities in VMware vCenter, ESX, Workstation, Fusion, and related VMware...
Russia Charges Pavel Durov: What It Means for Cybercrime
Russia Charges Pavel Durov: What It Means for Cybercrime On July 29, 2026, Russia’s Federal Security Service charged Telegram founder Pavel Durov with aiding terrorist activity and placed him on an in...
Operation Talked: A Russia-Linked Cyber Espionage Campaign Targeting U...
Operation Talked: A Russia-Linked Cyber Espionage Campaign Targeting Ukraine’s Defense Industry TL;DR: OPERATION TALKED is an ongoing Russia-linked espionage campaign, exposed after the actor left the...
Dark Web Profile: Section9 Ransomware
Dark Web Profile: Section9 Ransomware Section9 or SECTION9, is a ransomware operation that skipped the slow, quiet build-up most new brands go through before any victim ever appears on a leak site. Wi...
