Threat Intelligence Report — May 15, 2026 | 2 New KEVs · 168 Victims

Report Date: 2026-05-15

New KEVs: 2Critical CVEs: 5Ransomware Victims: 168

2 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Cisco products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Turla (Russia). Ransomware activity is moderate with 168 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

Threat Intelligence Report — May 14, 2026 | 2 New KEVs · 168 Victims

Report Date: 2026-05-14

New KEVs: 2Critical CVEs: 5Ransomware Victims: 168

2 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Cisco products show the strongest concentration of risk signals this week. Ransomware activity is moderate with 168 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

Threat Intelligence Report — May 13, 2026 | 2 New KEVs · 168 Victims

Report Date: 2026-05-13

New KEVs: 2Critical CVEs: 5Ransomware Victims: 168

2 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Berriai products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference MuddyWater (Iran). Ransomware activity is moderate with 168 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

Threat Intelligence Report — May 12, 2026 | 3 New KEVs · 198 Victims

Report Date: 2026-05-12

New KEVs: 3Critical CVEs: 5Ransomware Victims: 198

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Berriai products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference MuddyWater (Iran). Ransomware activity is moderate with 198 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more

Threat Intelligence Report — May 11, 2026 | 3 New KEVs · 192 Victims

Report Date: 2026-05-11

New KEVs: 3Critical CVEs: 5Ransomware Victims: 192

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Berriai products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference MuddyWater (Iran) and Cl0p. Ransomware activity is moderate with 192 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more

Threat Intelligence Report — May 10, 2026 | 3 New KEVs · 187 Victims

Report Date: 2026-05-10

New KEVs: 3Critical CVEs: 5Ransomware Victims: 187

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Berriai products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Salt Typhoon (China) and MuddyWater (Iran). Ransomware activity is moderate with 187 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more

Threat Intelligence Report — May 9, 2026 | 3 New KEVs · 178 Victims

Report Date: 2026-05-09

New KEVs: 3Critical CVEs: 5Ransomware Victims: 178

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Berriai products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Salt Typhoon (China) and MuddyWater (Iran). Ransomware activity is moderate with 178 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more

Threat Intelligence Report — May 8, 2026 | 3 New KEVs · 179 Victims

Report Date: 2026-05-08

New KEVs: 3Critical CVEs: 5Ransomware Victims: 179

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Berriai products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Salt Typhoon (China) and MuddyWater (Iran). Ransomware activity is moderate with 179 new victims posted to leak sites over the last 7 days, with Qilin posting the most victims.

Read more

Threat Intelligence Report — May 7, 2026 | 3 New KEVs · 237 Victims

Report Date: 2026-05-07

New KEVs: 3Critical CVEs: 5Ransomware Victims: 237

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Linux products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Salt Typhoon (China) and MuddyWater (Iran). Ransomware activity is moderate with 237 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more

Threat Intelligence Report — May 6, 2026 | 3 New KEVs · 260 Victims

Report Date: 2026-05-06

New KEVs: 3Critical CVEs: 5Ransomware Victims: 260

3 vulnerabilities were added to the CISA Known Exploited Vulnerabilities catalog this period, of which 1 is linked to active ransomware campaigns. 5 additional critical-severity CVEs have been published to the NVD but not yet confirmed as exploited — Linux products show the strongest concentration of risk signals this week. Threat intelligence sources this period reference Salt Typhoon (China) and MuddyWater (Iran). Ransomware activity is moderate with 260 new victims posted to leak sites over the last 7 days, with Thegentlemen posting the most victims.

Read more