Get Your Free Report
Start for Free
May 18, 2026
EDR Terminator Sale, Alleged Adobe Business Leak, Serbia MUP Data Offe...

EDR Terminator Sale, Alleged Adobe Business Leak, Serbia MUP Data Offer, and Argentina BCRA IOMA GDEBA Claims SOCRadar Dark Web Team identified several new underground posts, including a listing adver...

Learn More
May 15, 2026
Inside The Gentlemen Ransomware Leak: When the Hunter Becomes the Hunt...

Inside The Gentlemen Ransomware Leak: When the Hunter Becomes the Hunted Ransomware groups spend their days breaking into networks, stealing data, and pressuring victims into paying. They rarely find ...

Learn More
May 15, 2026
CVE-2026-20182: Cisco Catalyst SD-WAN Auth Bypass Added to CISA KEV

CVE-2026-20182: Cisco Catalyst SD-WAN Auth Bypass Added to CISA KEV Cisco has disclosed CVE-2026-20182, a critical authentication bypass affecting Cisco Catalyst SD-WAN Controller (formerly vSmart) an...

Learn More
May 14, 2026
CVE-2026-42945: NGINX Rewrite Heap Overflow Enables Remote DoS & Poten...

CVE-2026-42945: NGINX Rewrite Heap Overflow Enables Remote DoS & Potential RCE CVE-2026-42945 is a heap-based buffer overflow in NGINX that occurs in ngx_http_rewrite_module (the rewrite module). ...

Learn More
May 14, 2026
Top 5 Surface Web Hacker Forums in 2026

Top 5 Hacker Forums on the Surface Web Security teams often associate cybercrime forums exclusively with the Dark Web and Tor. However, several of the most active underground communities now operate o...

Learn More
May 14, 2026
BreachForums & TeamPCP Promote Supply Chain Competition as Cybercrime ...

BreachForums & TeamPCP Promote Supply Chain Competition as Cybercrime Gets Gamified Underground cybercrime communities are increasingly borrowing ideas from legitimate tech ecosystems: branding, p...

Learn More
May 13, 2026
SOCRadar’s Free Ransomware Intelligence Dashboard: Track Live Ransomwa...

SOCRadar’s Free Ransomware Intelligence Dashboard: Track Live Ransomware Activity The ransomware threat intelligence community has been doing incredible work making data more accessible from projects ...

Learn More
May 13, 2026
Dark Web Profile: Keymous+

Dark Web Profile: Keymous+ Keymous Plus, also known as Keymous+ threat group, markets itself as a hacktivist collective fighting for humanity. What intelligence investigations have documented is struc...

Learn More
May 13, 2026
May 2026 Patch Tuesday: 137 Vulnerabilities, No Zero-Days

May 2026 Patch Tuesday: 137 Vulnerabilities, No Zero-Days Microsoft released its May 2026 Patch Tuesday security updates, resolving a total of 137 vulnerabilities across Windows and a broad range of M...

Learn More
May 12, 2026
Top 10 Deep & Dark Web Forums in 2026

Top 10 Deep Web and Dark Web Forums in 2026 The top Deep Web and Dark Web Forums actively monitored in 2026 are XSS, Exploit.in, BHF, Dread, DarkForums, Altenen, CryptBB, Cracked, and DamageLib, based...

Learn More
May 12, 2026
10 Best Dark / Deep Web Browsers for Anonymity in 2026

10 Best Dark / Deep Web Browsers for Anonymity Whether you’re a security researcher, journalist, or privacy-conscious user, choosing the right Dark Web browser is the first step toward staying anonymo...

Learn More
May 12, 2026
Discord and Gemini Database Claims, Cisco FMC RCE Leak, Xia Stealer Sa...

Discord and Gemini Database Claims, Cisco FMC RCE Leak, Xia Stealer Sale, and IMSS Donor Records Listing SOCRadar Dark Web Team identified several new underground posts, including an alleged Discord d...

Learn More
May 11, 2026
Checkmarx Jenkins Plugin Backdoored in New TeamPCP Supply Chain Attack

Checkmarx Jenkins Plugin Backdoored in New TeamPCP Supply Chain Attack It hasn’t been long since TeamPCP made headlines for compromising Checkmarx’s GitHub Actions and OpenVSX extensions as part of a ...

Learn More
May 08, 2026
SOCRadar Recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthre...

SOCRadar Recognized in the 2026 Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies SOCRadar is positioned as a Visionary in the inaugural Magic Quadrant report for Threat Intelligence,...

Learn More
May 08, 2026
CVE-2026-6973: Authenticated Admin RCE In Ivanti EPMM Added to CISA KE...

CVE-2026-6973: Authenticated Admin RCE In Ivanti EPMM Added to CISA KEV Ivanti has patched CVE-2026-6973, a high-severity remote code execution (RCE) vulnerability affecting Ivanti Endpoint Manager Mo...

Learn More
May 07, 2026
Operation HookedWing: 4-Year Multi-Sector Attack Analysis

Operation HookedWing: 4-Year Multi-Sector Phishing Campaign From 2022 to the present, a persistent phishing campaign that has not been publicly documented until now, referred to in this report as Oper...

Learn More
May 07, 2026
CVE-2026-26956: vm2 Sandbox Escape Enables Host RCE in Node.js 25

CVE-2026-26956: vm2 Sandbox Escape Enables Host RCE in Node.js 25 CVE-2026-26956 is a critical sandbox escape affecting the Node.js sandbox library vm2. In vm2 3.10.4, attacker-controlled JavaScript e...

Learn More
May 06, 2026
CVE-2026-23918: Apache HTTP Server HTTP/2 Double Free With Possible RC...

CVE-2026-23918: Apache HTTP Server HTTP/2 Double Free With Possible RCE CVE-2026-23918 is a vulnerability in Apache HTTP Server (httpd) that affects its HTTP/2 implementation and can lead to a double ...

Learn More
May 06, 2026
CVE-2026-0300 Enables Root RCE in PAN-OS Captive Portal

CVE-2026-0300 Enables Root RCE in PAN-OS Captive Portal Palo Alto Networks disclosed CVE-2026-0300, a critical pre-authentication buffer overflow in the User-ID™ Authentication Portal (Captive Portal)...

Learn More
May 05, 2026
Trellix Source Code Repository Incident: What Defenders Should Know

Trellix Source Code Repository Incident: What Defenders Should Know Trellix publicly disclosed that it identified unauthorized access to a portion of its internal source code repository. The company s...

Learn More