New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacks
2026-05-29T13:24:15Z•bd1736783e06861949a0125750e3935004ca832aa91eaa3349e40a2c839a018b
AI‑assisted-attacksFortiClientGREYVIBEGiteaGlassWormGogsJINX-0164KimsukyKnowledgeDeliverMuddyWaterNimbus ManticoreNuGetRCESharePointcredential-theftcryptojackingmalicious-packagesnpmstate-sponsoredsupply-chainzero-day
What happened
A broad set of active threats and high-severity vulnerabilities were reported across multiple fronts: a newly identified Russian-linked actor dubbed GREYVIBE is conducting AI‑powered campaigns against Ukraine; multiple state-sponsored groups (Kimsuky, MuddyWater, Iranian actors, JINX-0164) expanded tooling and targeting; developer and supply‑chain attacks continue (GlassWorm takedown, malicious npm/NuGet packages exfiltrating secrets and AI user data); and several high/critical vulnerabilities are disclosed or actively exploited (unauthenticated Gitea private image exposure, critical Gogs RCE,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- bd1736783e06861949a0125750e3935004ca832aa91eaa3349e40a2c839a018b
- Enrichment time
- 2026-05-29T13:24:15Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.