Indicators are what attackers leave behind. Stolen credentials are what they arrive with.
CVEHighVerifiedSignal 62/100EPSS 1.1%
CVE-2026-85706
First Seen
Sep 11, 2026
Last Seen
Sep 18, 2026
Found in 4 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
CVE
Known vulnerability being actively exploited in the wild.
MISP Category
vulnerability
EPSS Score
1.15%
EPSS Percentile
65.0th
Confidence
77%
Signal Score
62 / 100
IDS Rule
No
CVE Intelligence
Exploit Probability1.15%
65.0th percentile of all CVEs
Threat Context
Threat Actors1
Tags
Feed Intelligence Summary
4 reports77% confidence
SP
SOC Prime
Sep 14, 2026
1 IOC in report
CP
Cyber Press
Sep 12, 2026
1 IOC in report
CP
Cyber Press
Sep 11, 2026
GitLab Patches Critical Flaws Enabling Arbitrary File Read, Credential Theft and Remote Code Execution
4 IOCs in report
Activity Timeline
Sep 18Sep 11
Threat Activity Heatmap
· Peak: 2026-09-11LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
1
Minimal
30d
4
Moderate
3mo
4
Moderate
Threat ScoreMedium Risk
62
SIGNAL
Signal Score
77%
Confidence
4
Reports
First seenSep 11, 2026
Last seenSep 18, 2026
Verified IOC
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 11 days ago · Last seen 4 days ago
Appeared in 4 threat reports from 4 sources
Associated with: APT29