threat-intel Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials A threat actor is exploiting vulnerabilities in public Wi-Fi gateways, particularly at hotels and conference centers, to steal corporate credentials, including Microsoft 365 accounts, and is leveraging tactics similar to the Russian APT28 group. The attacks involve redirecting users to attacker-controlled infrastructur… SecurityWeek · Jul 27, 2026 High USINSAdnscaptive portalcredential theft
threat-intel 6 GHz Wi-Fi Flaws Could Disrupt Critical Systems Researchers at Pennsylvania State University and Idaho National Laboratory have identified significant security vulnerabilities within 6 GHz Wi-Fi Automated Frequency Coordination (AFC) systems. These flaws could allow a… Dark Reading · Jul 14, 2026 High 6ghzwi-fispoofing
threat-intel Segmentation Works for OT If Operators Are Paying Attention This Dark Reading article highlights the ongoing challenges of operational technology (OT) security, particularly concerning network segmentation. Despite the widely recommended practice of isolating systems to limit dam… Dark Reading · Jun 11, 2026 High ot securitynetwork segmentationcybersecurity
vulnerability Jinan USR IOT Technology Limited (PUSR) USR-W610 RS232/485 to Wi-Fi/Ethernet Converter This advisory details a critical vulnerability in the Jinan USR IOT Technology Limited (PUSR) USR-W610 RS232/485 to Wi-Fi/Ethernet Converter, specifically version 7.03T.07. The device contains hardcoded administrative cr… CISA Advisories · May 28, 2026 Critical CVE-2026-7786CNfirmwarecredentialsiot
threat-intel US and Canada arrest and charge suspected Kimwolf botnet admin US and Canadian authorities have arrested Jacob Butler, an administrator of the KimWolf DDoS botnet, following a multi-national operation targeting several botnets. The botnet, which infected nearly two million devices g… BleepingComputer · May 22, 2026 High USCADEddosbotnetiot
threat-intel When Wi-Fi Encryption Fails: Protecting Your Enterprise from AirSnitch Attacks This report details a novel attack technique, dubbed AirSnitch, that exploits vulnerabilities in Wi-Fi encryption protocols (WPA2 and WPA3-Enterprise) to bypass client isolation and intercept network traffic. The attack… Palo Alto Unit 42 · Apr 22, 2026 High wpa2wpa3wi-fi
threat-intel A Deep Dive Into Attempted Exploitation of CVE-2023-33538 This report details an ongoing attempt to exploit CVE-2023-33538, a vulnerability in older TP-Link Wi-Fi router models (TL-WR940N v2/v4, TL-WR740N v1/v2, TL-WR841N v8/v10). Automated scans, utilizing Mirai-like malware p… Palo Alto Unit 42 · Apr 16, 2026 High CVE-2023-33538USiotvulnerabilitymirai