Tag: Cybersecurity Threat Advisory

Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: APT28 targets Windows and Office via MSHTML zero‑day

Cybersecurity Threat Advisory: APT28 targets Windows and Office via MSHTML zero‑day

Multiple security researchers and Microsoft have confirmed that the threat actor APT28 (Fancy Bear / Forest Blizzard) actively exploited a zero‑day vulnerability in the Microsoft MSHTML framework (CVE‑2026‑21513) prior to its fix in the February 2026 Patch Tuesday release. Read...

/ March 4, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: PromptSpy Android malware abusing Google Gemini AI

Cybersecurity Threat Advisory: PromptSpy Android malware abusing Google Gemini AI

Reported by SecurityWeek on February 20, 2026, PromptSpy is a newly identified Android malware family developed by threat actors. Its standout capability is using Google Gemini at runtime to analyze on‑screen content and help the malware remain installed and active...

/ March 2, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Zero-day Cisco Catalyst SD-WAN flaw

Cybersecurity Threat Advisory: Zero-day Cisco Catalyst SD-WAN flaw

A critical authentication‑bypass flaw in Cisco Catalyst SD‑WAN, tracked as CVE‑2026‑20127, is being actively exploited as a zero‑day. The vulnerability allows remote attackers to compromise controllers and introduce malicious rogue peers into targeted networks. Review the Cybersecurity Threat Advisory now...

/ February 27, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: VMware Aria Operations vulnerabilities

Cybersecurity Threat Advisory: VMware Aria Operations vulnerabilities

On February 24, 2026, Broadcom released a critical security advisory addressing three distinct vulnerabilities in VMware Aria Operations. These flaws—ranging from Command Injection to Privilege Escalation—can compromise the confidentiality, integrity, and administrative control of affected systems. Immediate patching is required...

/ February 26, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Critical SolarWinds Serv-U flaw

Cybersecurity Threat Advisory: Critical SolarWinds Serv-U flaw

CVE‑2025‑40538 is a critical broken access control vulnerability in SolarWinds Serv‑U, a self‑hosted managed file transfer (MFT) and FTP/SFTP/FTPS/HTTP(S) server used for secure file exchange. Review the Cybersecurity Threat Advisory now to protect your systems from this critical vulnerability. What...

/ February 25, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Dell RecoverPoint for Virtual Machines zero-day

Cybersecurity Threat Advisory: Dell RecoverPoint for Virtual Machines zero-day

Security researchers from Google Mandiant and the Google Threat Intelligence Group (GTIG) have identified active exploitation of a maximum‑severity zero‑day vulnerability in Dell RecoverPoint for Virtual Machines (RP4VM) by a suspected China‑nexus threat cluster tracked as UNC6201. Read this Cybersecurity...

/ February 23, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Chrome zero‑day exploit

Cybersecurity Threat Advisory: Chrome zero‑day exploit

Google has released emergency security updates for Chrome to fix CVE‑2026‑2441, a high‑severity zero‑day vulnerability in the browser’s CSS engine that attackers are already exploiting. The flaw is a use‑after‑free memory issue that allows a malicious or compromised website to...

/ February 20, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: ZeroDayRAT enables takeover on Android & iOS

Cybersecurity Threat Advisory: ZeroDayRAT enables takeover on Android & iOS

A new commercial mobile spyware platform, ZeroDayRAT, is being promoted to cybercriminals on Telegram as a tool that provides full remote control of compromised Android and iOS devices. Researchers at mobile threat hunting company iVerify describe it as a “complete...

/ February 13, 2026
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: Warlock (Storm-2603) exploits SmarterMail vulnerability

Cybersecurity Threat Advisory: Warlock (Storm-2603) exploits SmarterMail vulnerability

SmarterTools has confirmed that the Warlock ransomware group (Storm‑2603) breached its environment by exploiting an unpatched SmarterMail instance. Current intelligence indicates the same SmarterMail vulnerability is being actively used in the wild to gain initial access and deploy Warlock ransomware....

/ February 12, 2026