Hacktivist campaigns increase as United States, Iran, and Israel conflict intensifies

2026-03-06T08:51:42Zc1d28c076ece1d87e53a7d633a8bac1215bed4a7f4f26f531ee0cbd93ebbbdf8
Active Adversary ReportCiscoFirewall v22IranIsraelOperation Epic FurySD-WANSophos CTUWorkspace ProtectionX-Opsactive exploitationcyber advisoryhacktivismthreat-research

What happened

Sophos published multiple posts warning of increased hacktivist activity tied to the U.S.–Israel–Iran escalation (including references to Operation Epic Fury) and issued a CTU/X‑Ops cyber advisory with defensive recommendations. Their coverage also highlights the 2026 Active Adversary Report and product updates (Sophos Workspace Protection, Firewall v22). Separately, Sophos reported active exploitation of Cisco SD‑WAN vulnerabilities (CVE-2026-20127 and CVE-2022-20775).

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sophos_news
Record identifier
c1d28c076ece1d87e53a7d633a8bac1215bed4a7f4f26f531ee0cbd93ebbbdf8
Enrichment time
2026-03-06T08:51:42Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.