CVE-2026-20127: Cisco Catalyst SD-WAN Auth Bypass Exploited In The Wil...
CVE-2026-20127: Cisco Catalyst SD-WAN Auth Bypass Exploited In The Wild Cisco recently disclosed a zero-day, tracked as CVE-2026-20127, warning that the issue is already being actively exploited in re...
Finance Industry Under Pressure: What U.S. Institutions Need to Know i...
Finance Industry Under Pressure: What U.S. Institutions Need to Know in 2026 The digital transformation of the financial industry has revolutionized how we bank and trade, but it has also afforded cyb...
AI-Based Browsers: Are They Really Safe?
AI-Based Browsers: Are They Really Safe? AI-based browsers are web browsers that integrate Large Language Models (LLMs) or other AI systems directly into the browsing layer to analyze content, make de...
Top 10 DDoS Attacks
Top 10 DDoS Attacks A Distributed Denial of Service attack occurs when attackers overwhelm a targeted server or network with a high volume of traffic generated from numerous distributed systems. The g...
SolarWinds Serv-U 15.5.4 Fixes Four Privileged RCE Vulnerabilities
SolarWinds Serv-U 15.5.4 Fixes Four Privileged RCE Vulnerabilities SolarWinds has released Serv-U 15.5.4 to address four high-impact vulnerabilities affecting Serv-U 15.5. While these issues require a...
How to Make a Digital Asset Inventory?
How to Make a Digital Asset Inventory? In modern enterprises, the concept of a defensive perimeter has all but vanished. Today, the attack surface is “massive and hyper-dimensional”, expanding far bey...
Critical Elasticsearch Exposure: 544M Plain-Text Credentials Found Pub...
Critical Elasticsearch Exposure: 544M Plain-Text Credentials Found Publicly Accessible SOCRadar’s AI-powered Sensitive Data Exposure Monitoring service identified a publicly accessible and misconfigur...
Alleged Wendy’s Franchise Data Listing, WhatsApp Exploit, and Origin G...
Alleged Wendy’s Franchise Data Listing, WhatsApp Exploit, and Origin GPT Surface on Forums SOCRadar’s Dark Web Team identified several new underground posts this week, including an alleged Wendy’s fra...
Spain Under DDoS Barrage: Weekly DDoS Threat Intelligence Analysis
Spain Under DDoS Barrage: Weekly DDoS Threat Intelligence Analysis Analysis Period: February 16 – 23, 2026 Between February 16 and 23, 2026, SOCRadar identified an extensive coordinated DDoS campaign ...
How U.S. Organizations Have One of the Largest Attack Surfaces Globall...
How U.S. Organizations Have One of the Largest Attack Surfaces Globally The United States sits at the center of the modern digital economy. It leads in cloud adoption, SaaS deployment, financial innov...
How Surface Web Monitoring Turns Public Exposure Into Actionable Defen...
How Surface Web Monitoring Turns Public Exposure Into Actionable Defense Exposure does not always originate from hidden forums or underground marketplaces. In many cases, the earliest signals attacker...
Dark Web Profile: Lotus Blossom
Dark Web Profile: Lotus Blossom Lotus Blossom is a long-running cyber espionage Advanced Persistent Threat (APT) group active since at least 2009 and widely attributed to the People’s Republic of Chin...
Severe VS Code Extension CVEs Expose Developers to RCE and File Exfilt...
Severe VS Code Extension CVEs Expose Developers to RCE and File Exfiltration A recent report highlighted a coordinated disclosure affecting four popular Visual Studio Code (VS Code) extensions: Live S...
Dark Web Profile: Sinobi Ransomware
Dark Web Profile: Sinobi Ransomware Sinobi Ransomware is a cybercrime operation that emerged in mid-2025, operating as a Ransomware-as-a-Service model. It is believed that the group is a rebrand or di...
Public Elasticsearch Instances Expose 43M+ Records Including Credentia...
Public Elasticsearch Instances Expose 43M+ Records Including Credentials, Credit Cards, and Customer Data SOCRadar’s AI-powered Sensitive Data Exposure Monitoring service has identified three publicly...
What U.S. CISOs Should Track in Early 2026?
What U.S. CISOs Should Track in Early 2026? Midway through the first quarter of 2026, it’s observed that U.S.-based Chief Information Security Officers (CISOs) face a cyber landscape defined by unprec...
Political DDoS Pivots to Japan: Weekly DDoS Threat Intelligence Analys...
Political DDoS Pivots to Japan: Weekly DDoS Threat Intelligence Analysis Analysis Period: February 9 – 15, 2026 Between February 9 and 15, 2026, SOCRadar identified an extensive coordinated DDoS campa...
CVE-2026-2441: Chrome Zero-Day Enables In-Sandbox Code Execution
CVE-2026-2441: Chrome Zero-Day Enables In-Sandbox Code Execution Google has patched CVE-2026-2441, noting that it is “aware that an exploit for CVE-2026-2441 exists in the wild” as of the Stable Chann...
Operation TwinBrand: Massive Fortune 500 Brand Impersonation Campaign ...
Operation TwinBrand: Massive Fortune 500 Brand Impersonation Campaign Uncovered SOCRadar’s Threat Hunting Team has uncovered a sophisticated phishing operation that has been targeting Fortune 500 comp...
Alleged Discord Exploit Sale & WormGPT Database Leak Detected
Alleged Discord Exploit Sale & WormGPT Database Leak Detected SOCRadar’s Dark Web Team identified several new underground posts this week, including an alleged Discord zero-day RCE exploit sale, a...