Centre Ophtalmologique dErmont2026-07-01
the-gentlemenransomwareUnited States
El Centre Ophtalmologique d'Ermont, una clínica especializada en cuidados oculares en Francia, ha sido afectada por un ataque de ransomware atribuido al grupo "the gentlemen". El incidente o...
canopybrands.us2026-07-01
settraransomwareUnited States
La empresa canopybrands.us, una holding que se centra en la seguridad de personas a alturas peligrosas, ha sufrido un ataque de ransomware atribuido al grupo settra. El incidente revela una ...
Daily Dark Web: Pinned: New Linux "pedit COW" Privilege Escalation Exploit Published Security researcher Massimiliano Oldani has released a public proof-of-concept (PoC) exploit, **packet_edit_meme**, for the Linux kernel vulnerability **CVE-2026-46331**, nicknamed **pedit COW**. * The flaw resides in Linux's **net/sched act_pedit** traffic control subsystem and allows an unprivileged local user to escalate privileges to **root** by corrupting shared page-cache memory.2026-06-28
x-ctivulnerabilityUnited States
Daily coverage of dark web activities, cybercrime forums and underground market intelligence.
Ido Cohen: The Icarus supply chain extortion campaign continues to unfold. The group has now added 5 additional victims, all with their identities partially concealed. The guessing game has officially begun. How many organizations were impacted through this supply chain incident? And are we witnessing the emergence of a serious competitor to CLOP in the supply chain extortion arena? We'll know more soon.2026-06-23
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Ido Cohen: Supply Chain Extortion Alert The Icarus ransomware group has escalated pressure tactics against a major Canadian consulting and competitive intelligence provider. After initially naming the organization, the group is now threatening to release data belonging to the company's clients, giving them a deadline to make contact before publication begins.2026-06-21
ido_cohen2ransomwareUnited StatesT1566
Independent cyber threat research covering malware campaigns, phishing infrastructure and vulnerability exploitation.
Stardust Chollima2026-06-20
north-koreareferenceNorth Korea
Stardust Chollima es un actor APT (Advanced Persistent Threat) atribuido al grupo regional de North Korea. Con alias como APT38, ElectricFish, BlueNoroff y TA444, este actor ha sido identifi...
WASSONITE operations rely on deploying DTrack malware for remote access to victim machines2026-06-20
north-koreareferenceIndia
WASSONITE es un grupo de ciberdelincuencia asociado a Corea del Norte, conocido por su uso de malware como DTrack para obtener acceso remoto a dispositivos victimas. Este ataque se centra en...