| CVE | Vendor / Product | Vulnerability | Added | Due |
|---|---|---|---|---|
CVE-2026-58644 | Microsoft SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2026-07-16 | 2026-07-19 |
CVE-2026-25089 | Fortinet FortiSandbox | Fortinet FortiSandbox OS Command Injection Vulnerability | 2026-07-16 | 2026-07-19 |
CVE-2026-39808 | Fortinet FortiSandbox | Fortinet FortiSandbox OS Command Injection Vulnerability | 2026-07-16 | 2026-07-19 |
CVE-2026-46817 | Oracle E-Business Suite | Oracle E-Business Suite Improper Privilege Management Vulnerability | 2026-07-15 | 2026-07-18 |
CVE-2023-4346 | KNX Association KNX Protocol Connection Authorization Option 1 | KNX Association KNX Protocol Connection Authorization Option 1 Overly Restrictive Account Lockout Mechanism Vulnerability | 2026-07-15 | 2026-07-29 |
CVE-2026-56155 | Microsoft Active Directory Federation Services | Microsoft Active Directory Federation Services Insufficient Granularity of Access Control Vulnerability | 2026-07-14 | 2026-07-28 |
CVE-2026-56164 | Microsoft SharePoint Server | Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability | 2026-07-14 | 2026-07-17 |
CVE-2026-15409 | SonicWall SMA1000 Appliances | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability | 2026-07-14 | 2026-07-17 |
CVE-2026-15410 | SonicWall SMA1000 Appliances | SonicWall SMA1000 Appliances Code Injection Vulnerability | 2026-07-14 | 2026-07-17 |
CVE-2008-4128 | Cisco IOS | Cisco IOS Cross-Site Request Forgery Vulnerability | 2026-07-13 | 2026-07-16 |
CVE-2026-56291 | Balbooa Forms | Balbooa Forms Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-10 | 2026-07-13 |
CVE-2026-48939 | iCagenda iCagenda | iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-10 | 2026-07-13 |
CVE-2026-48908 | JoomShaper SP Page Builder | JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-07-07 | 2026-07-10 |
CVE-2026-55255 | Langflow Langflow | Langflow Authorization Bypass Through User-Controlled Key Vulnerability | 2026-07-07 | 2026-07-10 |
CVE-2026-56290 | Joomlack Page Builder | Joomlack Page Builder Improper Access Control Vulnerability | 2026-07-07 | 2026-07-10 |
CVE-2026-48282 | Adobe ColdFusion | Adobe ColdFusion Path Traversal Vulnerability | 2026-07-07 | 2026-07-10 |
CVE-2026-45659 | Microsoft SharePoint Server | Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability | 2026-07-01 | 2026-07-04 |
CVE-2026-48558 | SimpleHelp SimpleHelp | SimpleHelp Authentication Bypass Vulnerability | 2026-06-29 | 2026-07-02 |
CVE-2026-12569 | PTC Windchill and FlexPLM | PTC Windchill and FlexPLM Improper Input Validation Vulnerability | 2026-06-25 | 2026-06-28 |
CVE-2026-20230 | Cisco Unified Communications Manager | Cisco Unified Communications Manager Server-Side Request Forgery (SSRF) Vulnerability | 2026-06-25 | 2026-06-28 |
CVE-2025-67038 | Lantronix EDS5000 | Lantronix EDS5000 Code Injection Vulnerability | 2026-06-23 | 2026-06-26 |
CVE-2026-34910 | Ubiquiti UniFi OS | Ubiquiti UniFi OS Improper Input Validation Vulnerability | 2026-06-23 | 2026-06-26 |
CVE-2026-34909 | Ubiquiti UniFi OS | Ubiquiti UniFi OS Path Traversal Vulnerability | 2026-06-23 | 2026-06-26 |
CVE-2026-34908 | Ubiquiti UniFi OS | Ubiquiti UniFi OS Improper Access Control Vulnerability | 2026-06-23 | 2026-06-26 |
CVE-2026-20253 | Splunk Enterprise | Splunk Enterprise Missing Authentication for Critical Function Vulnerability | 2026-06-18 | 2026-06-21 |
| Indicator | Type | Malware | Threat | Conf. | First seen |
|---|---|---|---|---|---|
149.28.128.253:34567 | ip:port | Aisuru | botnet_cc | 100% | 2026-07-20 21:56:30 UTC |
hometwfrbas.com | domain | Unknown malware | payload_delivery | 70% | 2026-07-20 21:42:30 UTC |
64.52.80.235:80 | ip:port | Unknown malware | payload_delivery | 70% | 2026-07-20 21:42:22 UTC |
wakgo.jbgroup21.com | domain | ClearFake | payload_delivery | 100% | 2026-07-20 21:40:27 UTC |
zztz.jetourmexico.com | domain | ClearFake | payload_delivery | 100% | 2026-07-20 21:27:10 UTC |
206.166.251.123:8591 | ip:port | Unknown malware | botnet_cc | 70% | 2026-07-20 21:21:00 UTC |
45.76.182.55:8001 | ip:port | Aisuru | botnet_cc | 100% | 2026-07-20 21:18:00 UTC |
117.72.175.125:8090 | ip:port | Cobalt Strike | botnet_cc | 100% | 2026-07-20 21:05:09 UTC |
154.12.86.154:33306 | ip:port | Cobalt Strike | botnet_cc | 100% | 2026-07-20 21:05:08 UTC |
117.72.178.246:8081 | ip:port | Cobalt Strike | botnet_cc | 100% | 2026-07-20 21:05:07 UTC |
117.72.178.246:6379 | ip:port | Cobalt Strike | botnet_cc | 100% | 2026-07-20 21:05:07 UTC |
15.235.3.224:443 | ip:port | AdaptixC2 | botnet_cc | 100% | 2026-07-20 21:05:05 UTC |
http://162.33.178.68/msedge.txt | url | Unknown malware | payload_delivery | 80% | 2026-07-20 21:01:16 UTC |
149.56.12.51:443 | ip:port | Unknown malware | botnet_cc | 75% | 2026-07-20 21:01:07 UTC |
162.33.178.68:80 | ip:port | Unknown malware | botnet_cc | 75% | 2026-07-20 21:01:07 UTC |
testewin.com | domain | Unknown malware | botnet_cc | 75% | 2026-07-20 21:00:58 UTC |
https://theprosperinghouse.com/ | url | Unknown malware | payload_delivery | 90% | 2026-07-20 21:00:37 UTC |
https://theholecompany.net/ | url | Unknown malware | payload_delivery | 90% | 2026-07-20 21:00:37 UTC |
http://193.149.187.77/ | url | Unknown malware | payload_delivery | 75% | 2026-07-20 20:51:12 UTC |
193.149.187.77:80 | ip:port | Unknown malware | payload_delivery | 75% | 2026-07-20 20:51:07 UTC |
txvii.hazaratbet.bet | domain | ClearFake | payload_delivery | 100% | 2026-07-20 20:37:24 UTC |
syshash4392.top | domain | MintsLoader | botnet_cc | 75% | 2026-07-20 20:30:12 UTC |
logintrust5845.lol | domain | MintsLoader | botnet_cc | 75% | 2026-07-20 20:30:12 UTC |
basehex1267.top | domain | MintsLoader | botnet_cc | 75% | 2026-07-20 20:30:11 UTC |
1629bqt9p34elwv.top | domain | MintsLoader | botnet_cc | 75% | 2026-07-20 20:30:11 UTC |
| Pulse | Author | Tags | IOCs | Created |
|---|---|---|---|---|
| Still Circling: Toolkit Keeps Evolving | AlienVault | hvnc, njrat, banking fraud, vbscript dropper, asyncrat, limerat, process injection, apt-c-36 | 6 | 2026-07-18 |
| Unpacking "Cruciferra": An Analysis of a Sophisticated Crypter Service | AlienVault | adaptixc2, defense-evasion, darkcloud stealer, malware-as-a-service, formbook, winos4.0, crypter-service, xworm | 80 | 2026-07-20 |
| Vishing actors target Entra passkey enrollment | AlienVault | passkey enrollment, pink dls, vishing, phone-based social engineering, data extortion, operator-controlled phishing, microsoft entra | 6 | 2026-07-10 |
| Inside the FortiBleed Open Directory: A Technical Analysis of What the Attacker Left Behind | AlienVault | vpn compromise, hash cracking, fortibleed, hashtopolis, fortigate, initial access broker, fortinet, credential harvesting | 0 | 2026-06-19 |
| Operation Poisson – Analyzing a Cybercriminal’s Entire Operation | AlienVault | tailscale, rustdesk, poisson, credential-theft, france, keylogger, fileless-attack, openssh | 11 | 2026-06-19 |
| Popa: From Sourcing to Distribution | AlienVault | residential proxy, netnut, neupop, sdk, moneytiser, hopanet, popa, loopop | 211 | 2026-06-18 |
| Klue Integration Abused in Salesforce Data Theft | Threat Spotlight | AlienVault | salesforce, unc6395, oauth abuse, api exfiltration, third-party integration, klue integration, shinyhunters, crm data theft | 0 | 2026-06-18 |
| Botnet Analysis: A Product-Grade Threat for the AI Service Era | AlienVault | shodan intelligence, credential harvesting, polymorphic, ai infrastructure targeting, mcp exploitation, botnet, autonomous scanning, go-based | 6 | 2026-07-17 |
| Contagious Interview malware in SVG images: DPRK campaign | AlienVault | developer targeting, cryptocurrency wallet theft, supply chain attack, svg, ottercookie, steganography, fake job interviews, beavertail | 13 | 2026-07-17 |
| Behind the Refund: From GST Phishing to Remcos RAT Through a Multi-Stage .NET Infection Chain | AlienVault | bitmap steganography, fileless execution, multi-stage loader, dynamic dns, india targeting, credential theft, gst phishing, remcos rat | 6 | 2026-07-17 |