CVE Exploit Sale, Pakistan Telecom Data Claim, WineStyle Leak, RDWeb A...
CVE Exploit Sale, Pakistan Telecom Data Claim, WineStyle Leak, RDWeb Access, and Moscow Health Database Sale SOCRadar Dark Web Team identified several new underground posts involving alleged exploit s...
Minnesota Water Cyberattack: FBI and EPA Warn of PLC Attacks Across Se...
Minnesota Water Cyberattack: FBI and EPA Warn of PLC Attacks Across Seven States Key Takeaways A coordinated cyberattack hit operational technology at more than 30 Minnesota community water systems o...
Top 10 MSSPs in Belgium (2026)
Top 10 MSSPs in Belgium (2026) Belgium has quietly become one of Europe’s most demanding cybersecurity markets. It hosts the EU institutions and NATO, carries a dense concentration of critical infrast...
Tracing SNOWLIGHT: A China-Nexus Campaign Against Government Infrastru...
Tracing SNOWLIGHT: A China-Nexus Campaign Against Government Infrastructure SOCRadar Threat Research Unit (STRU) identified and analyzed an exposed adversary-operated staging server containing a full ...
CVE-2026-20316: Cisco Secure FMC Static-Credential Flaw Exploited in Z...
CVE-2026-20316: Cisco Secure FMC Static-Credential Flaw Exploited in Zero-Day Attacks Cisco has confirmed that CVE-2026-20316 is actively exploited against Cisco Secure Firewall Management Center (FMC...
Critical VMware vCenter and ESX Flaws Fixed
Critical VMware vCenter and ESX Flaws Fixed Broadcom has released a new VMware advisory, VMSA-2026-0006, addressing five vulnerabilities in VMware vCenter, ESX, Workstation, Fusion, and related VMware...
Russia Charges Pavel Durov: What It Means for Cybercrime
Russia Charges Pavel Durov: What It Means for Cybercrime On July 29, 2026, Russia’s Federal Security Service charged Telegram founder Pavel Durov with aiding terrorist activity and placed him on an in...
Operation Talked: A Russia-Linked Cyber Espionage Campaign Targeting U...
Operation Talked: A Russia-Linked Cyber Espionage Campaign Targeting Ukraine’s Defense Industry TL;DR: OPERATION TALKED is an ongoing Russia-linked espionage campaign, exposed after the actor left the...
Dark Web Profile: Section9 Ransomware
Dark Web Profile: Section9 Ransomware Section9 or SECTION9, is a ransomware operation that skipped the slow, quiet build-up most new brands go through before any victim ever appears on a leak site. Wi...
Dark Web Price Index 2026: How Much Is Your Data Worth?
Dark Web Price Index 2026: How Much Is Your Data Worth? TL;DR: Personal records sell for $1 to $4, payment cards from $5, medical records $250 to $310, bank logins $200 to $500, and corporate network ...
Are Meta’s AI Smart Glasses a Privacy Risk?
Are Meta’s AI Smart Glasses a Privacy Risk? Meta’s AI smart glasses and data privacy concerns come from a simple issue: the device puts cameras, microphones, and AI assistant features into eyewear tha...
Dark Web Profile: ExfilSquad
Dark Web Profile: ExfilSquad ExfilSquad is an emerging data-extortion group that surfaced with a rapid wave of public claims and a Tor-hosted Data Leak Site (DLS). The group is associated with an “onl...
Meccha Chameleon Discord Server Hijacked After Steam Workshop Malware ...
Meccha Chameleon Discord Server Hijacked After Steam Workshop Malware Incident The compromise removed official staff from the community server and turned a trusted communication channel into a potenti...
Cyber Risks for Wearable Technologies
Cyber Risks for Wearable Technologies A smartwatch can unlock a door, approve a payment, display an authentication prompt, read a message, and record a user’s heart rhythm without ever leaving the wri...
Alleged Healthcare, Military, RDP, SEP Tlaxcala, and GulfJobs Data Lea...
Alleged Healthcare, Military, RDP, SEP Tlaxcala, and GulfJobs Data Leaks SOCRadar Dark Web Team identified several new underground posts involving alleged healthcare data exposure, military infrastruc...
CVE-2025-66376: Russian APT Exploits Zimbra Zero-Day
CVE-2025-66376: Russian APT Exploits Zimbra Zero-Day CVE-2025-66376 is a stored cross-site scripting vulnerability in the Classic UI of Zimbra Collaboration Suite, creating a path to mailbox theft and...
WP Botnet Master: How a Security Researcher’s Paid Course Built a 2.1-...
WP Botnet Master: How a Security Researcher’s Paid Course Built a 2.1-Million-Credential WordPress Botnet On 13 July 2026, SOCRadar Researchers recovered the complete toolkit behind a distributed Word...
SharedRoot: Sandbox Escape in Claude Cowork
SharedRoot: Sandbox Escape in Claude Cowork SharedRoot is the name researchers gave to a sandbox-escape chain affecting the local execution mode of Claude Cowork on macOS. The chain uses CVE-2026-4633...
Iranian Hackers Broaden PLC Attacks on US Critical Infrastructure
Iranian Hackers Broaden PLC Attacks on US Critical Infrastructure On July 22, 2026, seven US government agencies updated joint Cybersecurity Advisory AA26-097A, first published in April, warning that ...
Oracle July 2026 CPU: 1,449 Patches, 10 Score Max
Oracle July 2026 CPU: 1,449 Patches, 10 Score Max Oracle July 2026 Critical Patch Update ships 1,449 patches covering 1,434 CVEs across 334 products in 32 product families, making it the largest quart...
