#ShadowserverFoundation
A massive brute force attack campaign is targeting VPNs, firewalls, and gateways from vendors like Palo Alto Networks, Ivanti, and SonicWall. jpmellojr.blogspot.com/2025/02/web-...
#ShadowserverFoundation #BruteForceAttack #VPN #Firewall #NetworkSecurity #Botnet
Web Raiders Unleash Global Brute Force Attacks From 2.8M IPs
A massive brute force attack campaign is targeting VPNs, firewalls, and gateways from vendors like Palo Alto Networks, Ivanti, and SonicWa...
jpmellojr.blogspot.com
February 12, 2025 at 3:26 PM
N-able released emergency hotfix 2026.3 HF4 for CVE-2026-86218, a max-severity RCE in N-central that can let unauthenticated attackers execute code on exposed systems. #Ncentral #CVE202686218 #Huntress
N-able Patches Max Severity N-central Flaw Amid Ongoing Attacks
N-able has issued an emergency hotfix for CVE-2026-86218, a maximum-severity RCE flaw in its N-central RMM platform that could let unauthenticated attackers run malicious code on exposed systems. Shadowserver reports nearly 1,500 internet-facing N-central servers, while Huntress says on-premises customers should move to N-central 2026.3 HF4 immediately because HF3 remains vulnerable. #Ncentral #CVE202686218 #Nable #ShadowserverFoundation #Huntress
www.hendryadrian.com
September 7, 2026 at 8:45 AM
Glassworm botnet disrupted after four C2 channels were cut, including Solana, BitTorrent DHT, Google Calendar, and VPS links. It spread via malicious OpenVSX, VS Code, GitHub, and npm artifacts stealing wallets and credentials. #Glassworm #OpenVSX
Glassworm botnet disrupted after resilient C2 infrastructure takedown
CrowdStrike, Google, and The Shadowserver Foundation disrupted the Glassworm botnet by cutting off four coordinated command-and-control channels tied to Solana blockchain transactions, BitTorrent DHT, Google Calendar, and direct VPS connections. The botnet had been used since October 2025 in supply-chain attacks against developers through malicious OpenVSX, VS Code, GitHub, and npm artifacts that stole wallets and credentials. #Glassworm #CrowdStrike #Google #ShadowserverFoundation #OpenVSX #VSCode #GitHub #npm #Solana #BitTorrent
www.hendryadrian.com
May 27, 2026 at 3:00 PM
Interpol led Operation Ramz across 13 MENA countries, disrupting phishing, malware, and scam networks. The crackdown led to 201 arrests, 53 servers seized, and links to nearly 4,000 victims. #Interpol #MENA #Kaspersky
Interpol leads cybercrime crackdown across 13 countries in Middle East, North Africa
Interpol led Operation Ramz with 13 Middle East and North Africa countries to disrupt phishing services, malware, and scam operations, resulting in 201 arrests and the seizure of 53 servers. The operation also identified hundreds of suspects and helped link the criminal activity to nearly 4,000 victims, with support from companies including Group-IB, Kaspersky, Shadowserver Foundation, Team Cymru, and Trend Micro. #OperationRamz #Interpol #GroupIB #Kaspersky #ShadowserverFoundation #TeamCymru #TrendMicro
www.hendryadrian.com
May 18, 2026 at 8:45 PM