Ongoing exploitation of Cisco Catalyst SD-WAN vulnerabilities

Cisco Talos tracks active exploitation of CVE-2026-20182, an authentication bypass vulnerability in Cisco Catalyst SD-WAN Controller and Manager, allowing remote attackers to obtain administrative privileges. The exploitation is attributed to UAT-8616, a sophisticated threat actor previously involved in similar attacks. Additionally, multiple threat clusters have been exploiting CVE-2026-20133, CVE-2026-20128, and CVE-2026-20122 since March 2026, following public release of proof-of-concept code by ZeroZenX Labs. Post-compromise activities include deployment of various webshells, including XenShell, Godzilla, and Behinder variants, along with cryptocurrency miners, red team frameworks like Sliver and AdaptixC2, and credential stealers. Ten distinct threat clusters have been identified, each utilizing different malicious tooling and infrastructure. Affected systems require immediate patching and security measures.

Pulse ID: 6a062c38dfdb5434bb2f0876
Pulse Link: https://otx.alienvault.com/pulse/6a062c38dfdb5434bb2f0876
Pulse Author: AlienVault
Created: 2026-05-14 20:10:32

Be advised, this data is unverified and should be considered preliminary. Always do further verification.

#Cisco #CyberSecurity #InfoSec #OTX #OpenThreatExchange #RAT #Sliver #Talos #Troll #Vulnerability #bot #cryptocurrency #AlienVault

LevelBlue - Open Threat Exchange

Learn about the latest cyber threats. Research, collaborate, and share threat intelligence in real time. Protect yourself and the community against today's emerging threats.

LevelBlue Open Threat Exchange
A Light in the Dark
https://atlas.whatip.xyz/post.php?slug=a-light-in-the-dark
<p>A thin sliver of Earth&amp;#8217;s edge is brightly illuminated against the vast darkness of space in
#artemis #sliver #space #light
A Light in the Dark

A thin sliver of Earth&#8217;s edge is brightly illuminated against the vast darkness of space in this April 3, 2026, image taken during the Artemis II mission. Artemis II was the first crewed fli...

New blog post!

This time I talk about my new favorite evasive shellcode loader, Charon. I give a brief overview about what it does, how it works and which techniques it uses.

Also a brief addendum for enjoyers of bloated Implants such as Sliver.

https://ti-kallisti.com/general/ms/descending-into-hades.html

#InfoSec #Malware #Shellcode #RedTeam #RedTeaming #Pentesting #Charon #Sliver #Merlin #Mythic

Descending into Hades

Traveling down the river Styx, undetected by AV and EDR.

Ti Kallisti

every block, just a

every block, just a 
sliver of sky – keep an eye 
on the horizon
.
20260424:2005
y

#avenue #block #city #dailyPost #eye #goals #haiku #horizon #keepAnEyeOn #newYorkCity #nyc #poem #poetry #postaday #skyscrapers #sliver #sliverOfSky #street
slivers

dreaming… a random bit ** in the ending of The Daily Post’s Weekly Photo Challenges from WordPress, here’s your Sunday Weekly Photo Prompt: travel ** medicine buddha mantra: Tay…

yi-ching lin photography

«Ждите гостей»: новые инструменты и тактики PhantomCore в атаках на российские компании

На примере новой атаки PhantomCore - одной из главных киберугроз для российских и белорусских компаний - показываем, как группировка развивает свои инструменты и тактики, внедряет новое ВПО и расширяет спектр используемых технологий, включая AI-решения. Одна из главных особенностей PhantomCore – её постоянная изменчивость: эта АРТ-группа быстро приспосабливается к новым условиям, оперативно меняет инструменты и изобретает нестандартные способы доставки ВПО до атакуемых организаций.

https://habr.com/ru/companies/F6/articles/1024486/

#phantomcore #apt #kermit_rat #фишинговые_письма #киберразведка #threat_intelligence #mattermost #cyberstrike_ai #mashagent #sliver

«Ждите гостей»: новые инструменты и тактики PhantomCore в атаках на российские компании

Киберпреступная группа  PhantomCore  – одна из главных угроз для российских и белорусских компаний. Впервые специалисты F6  обнаружили  её в 2024 году,...

Хабр
Movie TV Tech Geeks #MovieNews #BasicInstinct #Sliver #TheHousemaid Sydney Sweeney’s New Erotic Thriller Just Beat Sharon Stone’s ‘Basic Instinct’ Follow-Up at the Box Office http://dlvr.it/TQ3k3X

#Sliver (1993)

A book editor has an affair with a high-tech voyeur in an exclusive Manhattan apartment building.
#ObsessedMovies #FilmMastodon

Trailer https://www.youtube.com/watch?v=J2pcpvDFhoc

Hack Smarter: Sliver C2 Pentesting and Evasion Course now available

Tyler Ramsbey, a professional Pentester, has released his new (paid) course on Sliver C2: Pentesting and Evasion including 80 hours of fully hosted lab time.

SecBurg - InfoSec Blog
"The Seeker"

- and the last sliver inspired creature I've made.
Don't be surprised if more art inspired by Magic the Gathering pops up.

#drawing #pencil #ink #sakura #mikron #art #fantasy #fantasyart #darkart #sliver #mtg #magic