Author: CWME Research & Threat Intelligence Desk

The CWME Research & Threat Intelligence Desk produces evidence-led cybersecurity coverage for Cyber Warriors Middle East, with a focus on threat intelligence, ransomware, cybercrime, vulnerabilities, defensive research and emerging security risks. Its reporting distinguishes verified developments, attributed research findings and unconfirmed threat-actor claims while prioritising source transparency, technical accuracy and defensive relevance.
Recent research from Check Point has revealed that the AI-enabled threat actor known as JadePuffer, tracked as Storm-3168, is leveraging compromised Azure service principals to automate destructive actions within cloud environments. This activity includes the deletion...
The FBI has reported a significant rise in online scams fueled by artificial intelligence, marking the first time the bureau has tracked AI-related complaints in its national internet crime report. In 2025, the FBI's Internet Crime...

CrowdStrike enhances Falcon Cloud Security with AI-driven third-party application insights for risk management

CrowdStrike has announced significant enhancements to its Falcon Cloud Security platform, introducing AI-driven insights into third-party applications that aim to bolster risk management for...

Milk Dragon phishing campaign targets 66 countries with fake ecommerce sites to steal payment data

Security researchers from Group-IB have uncovered a widespread phishing campaign dubbed "Milk Dragon," which targets victims across 66 countries through fake e-commerce sites and...

AI’s evolving role in cyber threats and defenses highlighted in Microsoft’s 2026 Digital Defense Report

The 2026 Microsoft Digital Defense Report reveals a significant evolution in the role of artificial intelligence (AI) within the cybersecurity landscape, highlighting how threat...

Suspected ShinyHunters member Rey detained in Jordan, aiding FBI investigation

A suspected member of the ShinyHunters digital extortion group, known online as "Rey," has reportedly been detained by authorities in Jordan, as confirmed by...

Cisco Catalyst SD-WAN Manager API authentication bypass vulnerability CVE-2026-76504 actively exploited

On September 30, 2026, Cisco disclosed a critical API authentication bypass vulnerability, CVE-2026-76504, affecting its Catalyst SD-WAN Manager. This flaw, which has a CVSSv3.1...

Palo Alto Networks Unit 42 reports exploitation of NetScaler zero-day vulnerabilities CVE-2026-88771 and CVE-2026-88772 in the wild

Palo Alto Networks' Unit 42 has reported active exploitation of two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting Citrix NetScaler devices. These vulnerabilities, which...
rec5

Governments face rising cyber threats as phishing incidents surge to 23% of intrusions in 2026

In a significant shift, government agencies have emerged as the most targeted sector for cyber threats, accounting for 27% of observed activity in 2026,...

Vulnerability trends in AI frameworks reveal risks of arbitrary code execution and SSRF attacks

Recent analysis from Google Cloud highlights significant vulnerabilities within various AI frameworks, revealing a concerning trend of arbitrary code execution (RCE) and server-side request...

Purdue cybersecurity experts warn of evolving online scams leveraging AI techniques

Purdue University cybersecurity experts have raised alarms about the increasing sophistication of online scams, particularly those leveraging artificial intelligence (AI) techniques. Eugene Spafford, a...

CrowdStrike details ClickFix attacks and strategies to mitigate user-executed threats

ClickFix attacks represent a sophisticated social engineering technique that exploits user behavior to execute malicious commands on their systems. Observed by CrowdStrike Intelligence, these...

Police arrest 16-year-old suspected of running KillSec ransomware group in Spain

Spanish authorities have arrested a 16-year-old suspected of leading the KillSec ransomware group, which is accused of stealing sensitive data from various organizations and...

Red Hat releases important security update for pcp in RHEL 8.8

Red Hat has announced an important security update for the Performance Co-Pilot (pcp) in Red Hat Enterprise Linux (RHEL) 8.8, specifically targeting Update Services...
rec5

Recent articles

spot_img