ShinyHunters Hacked Clop. Now What About Clop's Victims?
2026-09-21T20:51:32Z•ba874b5e05607ea2a4203dc072d501115c09af52df4cb0772fd881fe6c63ac35
CVE-2026-76460CVE-2026-85706AI securityAPTAndroid banking trojanChinaCiscoCisco ISEClopCyclops BlinkGigabudGitLabNorth KoreaOAuth abuseSandwormShinyHuntersVectraRATcredential theftcritical-vulnerabilitiescybersecuritymalwaremalware-as-a-servicephishingransomwarevulnerability-management
What happened
Dark Reading feed covering active cyber threats, ransomware victim targeting, malware campaigns, phishing and OAuth abuse, AI-enabled attacks, APT activity, and high-severity vulnerabilities. Notable entries include Cisco ISE authentication bypass CVE-2026-76460, GitLab path traversal CVE-2026-85706, exploitation of Cisco flaws to deploy Cyclops Blink, and malware-as-a-service offerings targeting Windows enterprises.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- ba874b5e05607ea2a4203dc072d501115c09af52df4cb0772fd881fe6c63ac35
- Enrichment time
- 2026-09-21T20:51:32Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.