Cl0p Targets 40+ Organizations Through PTC Windchill Flaw

2026-08-21T08:51:37Zfc43d6ed8e15e437f23590d277ce28732278cbf7b4fe32e3fbdeb1b47b57bb12
CVE-2026-33824CVE-2026-64849AI-assisted-attacksAndroid-malwareCISA-KEVCl0pDahuaFlexPLMICSIoTIranian-threat-actorsMLflowMacSync-StealerManicPTC-WindchillSCADASSRFSiemens-S7WordPress-compromiseactive-exploitationbanking-trojancamera-botnetcyber-espionageinfostealer exposed-secrets Stripe-API-keys macOS SharePoint-VM-malware-deliveryransomwarespyware

What happened

SecurityAffairs feed covering major cyber threats and incidents, including Cl0p exploitation of a PTC Windchill/FlexPLM flaw, Android banking spyware, active attacks against Siemens S7 PLCs, an actively exploited MLflow SSRF vulnerability, Iranian cyber espionage indictments, compromised WordPress infrastructure, mass Dahua camera takeovers, macOS infostealer activity, exposed Stripe secrets, and multiple CISA KEV additions. The overall threat level is critical due to active exploitation, critical infrastructure targeting, large-scale compromise, and substantial credential and data exposure.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
fc43d6ed8e15e437f23590d277ce28732278cbf7b4fe32e3fbdeb1b47b57bb12
Enrichment time
2026-08-21T08:51:37Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.