
Threat Intelligence Snapshot: Week 7, 2026
Exchange URL Rule Failure Sparks Mass Email Quarantine, ZeroDayRAT Spyware, SSH Botnets and DPRK LinkedIn Fraud Expand Global Threat Landscape

Exchange URL Rule Failure Sparks Mass Email Quarantine, ZeroDayRAT Spyware, SSH Botnets and DPRK LinkedIn Fraud Expand Global Threat Landscape

GitHub repositories used to distribute SmartLoader and Lumma Stealer | Yemen’s Houthis to resume attacks on Israeli ships

Urgent patches for actively exploited VMware zero-day | ENISA launches NIS360 to assess cyber maturity and criticality across NIS2 sectors

Chinese state-sponsored Salt Typhoon exploits Cisco router vulnerabilitieS | US signals efforts toward normalizing relations with Russia

Chinese state-sponsored Salt Typhoon exploits Cisco router vulnerabilities | Eurosystem updates the TIBER-EU framework to align with DORA

Mirai-based botnet exploits zero-day, Ivanti Secure Connect zero-days are actively exploited in the wild | US imposes sanctions on a

Malware designed to terminate Siemens engineering processes, Mirai targets Juniper SSR devices | Italy’s Data Protection Authority fines OpenAI for

Russian state-sponsored Earth Koshchei targets high-profile EU Orgs, Lazarus Group evolves its infection chain | ECB Calls for Stronger Bank
Try searching our blog

Threat Actor Abuses Salesforce and ServiceNow Guest Portals at Telecommunications, Financial, and Public Sector Organizations | Germany Warns of Daily Hybrid Warfare After Suspected Drone Attack

DOUBLECUP Loader Powers ClickFix Campaigns Against Corporate Users | Houthi Attacks Disrupt Gulf Shipping Traffic, Threatening Regional Supply Chain

LAUNDRY BEAR Exploits Zimbra Zero-Day to Steal Email from Western Organizations | US Forces and Interests Targeted in Jordan and Egypt

Chinese Operators Breach Government Systems and Target Financial Firms Using AI Coding Tools | Houthis Say They Attacked Two Saudi Tankers in Red Sea