Threat Intelligence Report — July 30, 2026 | 3 New KEVs · 230 Victims

Report Date: 2026-07-30

New KEVs: 3  ▼ -3 vs last weekRansomware Victims: 230  ▲ +52 vs last week

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. Cisco products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Lazarus Group (DPRK). Ransomware activity is moderate with 230 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

Threat Intelligence Report — July 29, 2026 | 3 New KEVs · 257 Victims

Report Date: 2026-07-29

New KEVs: 3  ▼ -4 vs last weekRansomware Victims: 257  ▲ +93 vs last week

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. Arista products show the strongest concentration of risk signals this week. Ransomware activity is moderate with 257 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more

Threat Intelligence Report — July 28, 2026 | 4 New KEVs · 268 Victims

Report Date: 2026-07-28

New KEVs: 4  ▼ -3 vs last weekRansomware Victims: 268  ▲ +108 vs last week

4 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. Microsoft products show the strongest concentration of risk signals this week. Ransomware activity is moderate with 268 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

Threat Intelligence Report — July 27, 2026 | 7 New KEVs · 268 Victims

Report Date: 2026-07-27

New KEVs: 7  — unchanged vs last weekRansomware Victims: 268  ▲ +98 vs last week

7 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. Microsoft products show the strongest concentration of risk signals this week. Ransomware activity is moderate with 268 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

CVE-2026-16812 — Arista VeloCloud Orchestrator: OS Command Injection | CVSS 10.0 CRITICAL

CRITICAL

CVSS 10.0 CRITICAL  ·  EPSS N/A  ·  Arista VeloCloud Orchestrator

Read more