Silent Ransom Group (SRG): Switching To DNS Fast Flux Infrastructure
2026-06-05T20:51:44Z•de044eda85ad01f6fbdbd801c37c925c982193eb3768d8d1877fc0f0bbd54ecd
Silent Ransom Groupcisa-kevciscocisco-unified-cmcloud-abuseemail-relayespionagefast-flux-dnsfile-upload-injectiongamaredonillegal-streamingknown-exploited-vulnerabilitiesmirasvitoperation-kratosoutlook-compromisepcpjackpublic-pocransomware-grouproot-privilege-escalationsd-wanssrfvs-code-zero-daywinrar
What happened
Feed of security news covering multiple high-impact incidents and vulnerabilities: Resecurity exposed Silent Ransom Group’s move to DNS fast-flux infrastructure; Cisco disclosed an authenticated local privilege-escalation/file-upload command-injection (CVE-2026-20245) in Catalyst SD‑WAN Manager with no patch or workaround yet; Hunt.io uncovered PCPJack’s 230-node cloud-based covert email relay across AWS/GCP/Azure; SafeBreach demonstrated a new “Fake Context Alignment” attack against Google Gemini via notifications; CISA added Mirasvit Full Page Cache Warmer (CVE-2026-45247, CVSS 9.3) to its “
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- de044eda85ad01f6fbdbd801c37c925c982193eb3768d8d1877fc0f0bbd54ecd
- Enrichment time
- 2026-06-05T20:51:44Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.