♡ Follow 0
Critical CVEs
Microsoft has disclosed a maximum-severity remote code execution vulnerability in its cloud-based identity and access management service, Microsoft Entra ID (formerly Azure…
Cloud Security
CVE-2026-68820
CVE-2026-69836
Deserialization
August 21, 2026
♡ Follow 0
Attack Groups
North Korean IT workers are increasingly infiltrating government agencies and businesses by applying for remote jobs, passing interviews, and obtaining legitimate credentials.…
AI
ANY.RUN
ANY.RUN Sandbox
ANY.RUN Threat Intelligence Feeds
August 13, 2026
♡ Follow 0
Attack Groups
The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched Microsoft Windows…
afd.sys
backdoor
Check Point Research
CVE-2025-49113
August 12, 2026
♡ Follow 0
Malware
Troy is a previously unseen backdoor deployed by the Lazarus Group in Operation Dream Job attacks. It is loaded directly into memory…
backdoor
Lazarus Group
Memory-only
Troy
August 12, 2026
♡ Follow 0
Malware
MISTPEN is a lightweight downloader used by Lazarus Group to communicate with C2 servers via Microsoft Graph API and OneDrive. It retrieves…
downloader
Lazarus Group
Microsoft Graph API
MISTPEN
August 12, 2026
♡ Follow 0
Malware
ForestTiger, also known as ScoringMathTea, is a backdoor used by Lazarus Group to provide remote access to compromised hosts. It is deployed…
backdoor
ForestTiger
Lazarus Group
ScoringMathTea
August 12, 2026
♡ Follow 0
Malware
FudModule is a kernel-mode rootkit used by Lazarus Group since at least 2022. Version 3.1 adds the ability to disable Windows Smart…
FudModule
Lazarus Group
ML-KEM
rootkit
August 12, 2026
♡ Follow 0
Malware
RelayShell is a previously undocumented PHP web shell used by Lazarus Group to compromise Roundcube webmail servers. It enables command and response…
Lazarus Group
RelayShell
Roundcube
web shell
August 12, 2026
♡ Follow 0
Cyber Products
SecurityPDF is a trojanized PDF viewer that appears to be a legitimate product but contains malicious code. It is used by Lazarus…
Lazarus Group
PDF Viewer
SecurityPDF
Trojanized
August 12, 2026
♡ Follow 0
Critical CVEs
Microsoft released its August 2026 Patch Tuesday updates, addressing a total of 398 vulnerabilities, with 62 rated Critical. The most urgent fix…
Check Point Research
CVE-2026-55040
CVE-2026-59124
CVE-2026-62815
August 11, 2026