Iranian threat actors deploy GhostFetch, CHAR, and HTTP_VIP malware targeting Middle East and North Africa organizations

Weekly insights on threats, vulnerabilities, and security best practices.

CRESCENTHARVEST campaign deploys custom RAT malware against Iran protest supporters, demonstrating advanced surveillance TTPs for long-term information theft and monitoring operations.

Russian threat actors coordinate cyberattacks with kinetic missile strikes while Predator spyware bypasses iOS security indicators, revealing advanced nation-state TTPs for 2026.

Cisco SD-WAN zero-day CVE-2026-20127 exploited for 3 years by sophisticated APT group with minimal forensic evidence. Critical infrastructure targeting via network edge compromise.