Topic: initial access vectors
-
Ransomware disrupts industry without control system access
Ransomware attacks on industrial organizations rose 12% in Q2 2026 to 1,140 incidents, with manufacturing hardest hit (65% of cases), and attackers increasingly targeting enterprise IT systems like ERP and remote access rather than ICS directly to cause production shutdowns. Data theft has overta...
Read More » -
Iran-Linked Hacking Group Targets Israeli Government, IT Sectors
Since early 2026, a new Iran-linked hacking group called 'Cavern Manticore' has been targeting Israeli government agencies and IT organizations, with technical overlaps to known MOIS-linked groups MuddyWater and Lyceum. The group gains initial access by abusing existing remote monitoring and mana...
Read More » -
Ransomware Uses QEMU VMs to Evade Security Detection
A sophisticated ransomware campaign is using the legitimate QEMU virtualization tool to create hidden virtual machines, which act as stealthy backdoors to evade endpoint detection and launch attacks. Two distinct campaigns, STAC4713 and STAC3725, have been documented: the first is linked to the P...
Read More » -
Phishing Tops Cyber-Attack Entry Methods
Phishing has become the primary initial attack vector in over half of all cyber incidents investigated, a sharp increase from the previous quarter's one-third. Attackers are using sophisticated evasion methods, such as QR code phishing campaigns that bypass email gateways and use trusted cloud pl...
Read More » -
New "Vect" RaaS Variant Poses Critical Threat, Researchers Warn
A new, highly sophisticated ransomware-as-a-service operation named **Vect** is rapidly emerging, posing a critical threat by targeting organizations and actively recruiting affiliates for expansion. Vect distinguishes itself with custom-built malware using fast encryption techniques and advanced...
Read More »