rss:Recorded Future
—
05:42 KSA
CRITICAL
vulnerability
January 2026 CVE Landscape: 23 Critical Vulnerabilities Mark 5% Increase, APT28 Exploits Microsoft Office Zero-Day
January 2026 recorded 23 actively exploited critical vulnerabilities, marking a 5% increase in threat activity. Russian APT28 group exploited a zer…
rss:Recorded Future
—
05:42 KSA
CRITICAL
apt
Preparing for Russia’s New Generation Warfare in Europe
Russia is conducting a coordinated full-scale hybrid warfare campaign against NATO combining cyber attacks, sabotage operations, and influence campaigns. This New Generation Warfare approach poses significa…
SIEM Detection
—
05:05 KSA
HIGH
Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
GitHub Advisory
—
05:05 KSA
HIGH
Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
Threat Intelligence
—
05:05 KSA
CRITICAL
DarkSide Ransomware v3
New ransomware variant targeting Saudi oil & gas sector with double extortion techniques, encrypting OT systems and threatening data exposure on dark web leak sites.
CRITICAL
CVE-2026-1234 Zero-Day Exploit
Active exploitation of zero-day vulnerability in government web application frameworks. Remote code execution with no authentication required. Patches pending from vendor.
CRITICAL
APT41 Banking Trojan
Advanced persistent threat group targeting Saudi financial institutions with custom banking malware through spear-phishing campaigns impersonating SAMA communications.
SIEM Detection
—
21:48 KSA
HIGH
Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
GitHub Advisory
—
21:48 KSA
HIGH
Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
HIGH
Cloud Misconfiguration Wave
Multiple exposed S3 buckets and Azure storage accounts found across Saudi organizations, revealing PII, financial records, and internal documents to the public internet.
MEDIUM
DNS Hijacking Campaign
DNS hijacking attacks redirecting Saudi government and education domains to phishing infrastructure hosted in Eastern Europe.
Honeypot Network
—
21:48 KSA
MEDIUM
IoT Botnet Targeting Smart Cities
New IoT botnet variant scanning Saudi smart city infrastructure for default credentials on surveillance cameras and building management systems.
CRITICAL
Ransomware
Active ransomware campaign targeting Saudi banking infrastructure
HIGH
Phishing Campaign
Sophisticated spear-phishing targeting government officials
CRITICAL
Zero-Day Exploit
Critical zero-day in major cloud provider affecting KSA organizations
MEDIUM
DDoS Attack
Distributed denial of service targeting Saudi telecom operators
HIGH
Supply Chain
Supply chain compromise affecting energy sector vendors
Threat Intelligence
—
21:48 KSA
CRITICAL
DarkSide Ransomware v3
New ransomware variant targeting Saudi oil & gas sector with double extortion techniques, encrypting OT systems and threatening data exposure on dark web leak sites.
CRITICAL
CVE-2026-1234 Zero-Day Exploit
Active exploitation of zero-day vulnerability in government web application frameworks. Remote code execution with no authentication required. Patches pending from vendor.
CRITICAL
APT41 Banking Trojan
Advanced persistent threat group targeting Saudi financial institutions with custom banking malware through spear-phishing campaigns impersonating SAMA communications.
HIGH
Supply Chain
Supply chain compromise affecting energy sector vendors
MEDIUM
DDoS Attack
Distributed denial of service targeting Saudi telecom operators
CRITICAL
Zero-Day Exploit
Critical zero-day in major cloud provider affecting KSA organizations
HIGH
Phishing Campaign
Sophisticated spear-phishing targeting government officials
CRITICAL
Ransomware
Active ransomware campaign targeting Saudi banking infrastructure
CRITICAL
APT41 Banking Trojan
Advanced persistent threat group targeting Saudi financial institutions with custom banking malware through spear-phishing campaigns impersonating SAMA communications.
Honeypot Network
—
21:47 KSA
MEDIUM
IoT Botnet Targeting Smart Cities
New IoT botnet variant scanning Saudi smart city infrastructure for default credentials on surveillance cameras and building management systems.
MEDIUM
DNS Hijacking Campaign
DNS hijacking attacks redirecting Saudi government and education domains to phishing infrastructure hosted in Eastern Europe.
HIGH
Cloud Misconfiguration Wave
Multiple exposed S3 buckets and Azure storage accounts found across Saudi organizations, revealing PII, financial records, and internal documents to the public internet.
SIEM Detection
—
21:47 KSA
HIGH
Credential Stuffing Campaign
Large-scale credential stuffing attacks targeting Saudi e-commerce platforms and loyalty programs using leaked credentials from international breaches.
GitHub Advisory
—
21:47 KSA
HIGH
Supply Chain Compromise - npm packages
Malicious npm packages detected targeting Saudi developers with credential-stealing capabilities embedded in popular dependency names through typosquatting.
Threat Intelligence
—
21:47 KSA
CRITICAL
DarkSide Ransomware v3
New ransomware variant targeting Saudi oil & gas sector with double extortion techniques, encrypting OT systems and threatening data exposure on dark web leak sites.
CRITICAL
CVE-2026-1234 Zero-Day Exploit
Active exploitation of zero-day vulnerability in government web application frameworks. Remote code execution with no authentication required. Patches pending from vendor.