FACTUALRISK Cyber Intelligence
Mise ร  jour : 29 May 2026 ยท 18:02
๐Ÿ—ž Briefing๐Ÿ›ก Dashboard๐Ÿ’ฅ Attaques๐Ÿ”ง Patches๐Ÿฆ  Ransomware๐Ÿ“ก Exploitation๐ŸŒ Gรฉopolitique๐Ÿ•ต๏ธ Acteursโ›“ Supply Chain๐ŸŽฏ IOC Tracker๐Ÿ“‹ Compliance๐Ÿ“ฐ News๐Ÿ“ˆ Statistiques
โ† Retour FactualRisk
Pays attaquants
5
Threat Actors connus
13
Acteurs observรฉs
13
CVEs attribuรฉs
77
๐ŸŒ Pays d'origine identifiรฉs
๐Ÿ‡ท๐Ÿ‡บ RU26 CVE(s)
๐ŸŒ ??19 CVE(s)
๐Ÿ‡จ๐Ÿ‡ณ CN19 CVE(s)
๐Ÿ‡ฐ๐Ÿ‡ต KP9 CVE(s)
๐Ÿ‡ฎ๐Ÿ‡ท IR4 CVE(s)
๐Ÿ•ต๏ธ Threat Actors (base + observรฉs)
๐Ÿ‡ท๐Ÿ‡บ APT29observรฉ11 CVE(s)
๐Ÿ‡ท๐Ÿ‡บ APT28observรฉ9 CVE(s)
๐Ÿ‡ฐ๐Ÿ‡ต Lazarusobservรฉ9 CVE(s)
๐Ÿ‡จ๐Ÿ‡ณ Volt Typhoonobservรฉ9 CVE(s)
๐ŸŒ Cl0pobservรฉ7 CVE(s)
๐Ÿ‡จ๐Ÿ‡ณ APT41observรฉ6 CVE(s)
๐Ÿ‡ท๐Ÿ‡บ Sandwormobservรฉ6 CVE(s)
๐ŸŒ RansomHubobservรฉ5 CVE(s)
๐Ÿ‡จ๐Ÿ‡ณ Salt Typhoonobservรฉ4 CVE(s)
๐Ÿ‡ฎ๐Ÿ‡ท MuddyWaterobservรฉ4 CVE(s)
๐ŸŒ Akiraobservรฉ3 CVE(s)
๐ŸŒ LockBitobservรฉ2 CVE(s)
๐ŸŒ BlackCatobservรฉ2 CVE(s)
CVEs avec attribution gรฉopolitique
๐Ÿ•ต๏ธ Sandworm๐Ÿ‡ท๐Ÿ‡บ RUScore: 283
Progress Kemp LoadMaster OS Command Injection Vulnerability
๐Ÿ•ต๏ธ APT29๐Ÿ‡ท๐Ÿ‡บ RUScore: 280
Microsoft Outlook Improper Input Validation Vulnerability
๐Ÿ•ต๏ธ Sandworm๐Ÿ‡ท๐Ÿ‡บ RUScore: 228
HTTP/2 Rapid Reset Attack Vulnerability
๐Ÿ•ต๏ธ APT41๐Ÿ‡จ๐Ÿ‡ณ CNScore: 228
Atlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability
๐Ÿ•ต๏ธ RansomHub๐ŸŒ ??Score: 228
Apache ActiveMQ Deserialization of Untrusted Data Vulnerability
๐Ÿ•ต๏ธ Lazarus๐Ÿ‡ฐ๐Ÿ‡ต KPScore: 228
Apache Log4j2 Remote Code Execution Vulnerability
๐Ÿ•ต๏ธ APT29๐Ÿ‡ท๐Ÿ‡บ RUScore: 218
Citrix ADC, Gateway, and SD-WAN WANOP Appliance Code Execution Vulnerability
๐Ÿ•ต๏ธ Volt Typhoon๐Ÿ‡จ๐Ÿ‡ณ CNScore: 218
Fortinet Multiple Products Authentication Bypass Vulnerability
๐Ÿ•ต๏ธ Volt Typhoon๐Ÿ‡จ๐Ÿ‡ณ CNScore: 218
Ivanti Connect Secure and Policy Secure Command Injection Vulnerability
๐Ÿ•ต๏ธ LockBit๐ŸŒ ??Score: 218
Atlassian Confluence Data Center and Server Improper Authorization Vulnerability
๐Ÿ•ต๏ธ Cl0p๐ŸŒ ??Score: 218
Fortra GoAnywhere MFT Remote Code Execution Vulnerability
๐Ÿ•ต๏ธ Volt Typhoon๐Ÿ‡จ๐Ÿ‡ณ CNScore: 218
Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability
๐Ÿ•ต๏ธ APT29๐Ÿ‡ท๐Ÿ‡บ RUScore: 218
Microsoft SharePoint Server Privilege Escalation Vulnerability
๐Ÿ•ต๏ธ Akira๐ŸŒ ??Score: 218
Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability
๐Ÿ•ต๏ธ RansomHub๐ŸŒ ??Score: 218
Atlassian Confluence Data Center and Server Broken Access Control Vulnerability
๐Ÿ•ต๏ธ Cl0p๐ŸŒ ??Score: 218
Progress MOVEit Transfer SQL Injection Vulnerability
๐Ÿ•ต๏ธ APT28๐Ÿ‡ท๐Ÿ‡บ RUScore: 218
Microsoft Windows Print Spooler Remote Code Execution Vulnerability
๐Ÿ•ต๏ธ MuddyWater๐Ÿ‡ฎ๐Ÿ‡ท IRScore: 218
Microsoft Exchange Server Remote Code Execution Vulnerability
๐Ÿ•ต๏ธ MuddyWater๐Ÿ‡ฎ๐Ÿ‡ท IRScore: 218
Microsoft Exchange Server Privilege Escalation Vulnerability
๐Ÿ•ต๏ธ BlackCat๐ŸŒ ??Score: 218
Microsoft Exchange Server Security Feature Bypass Vulnerability
๐Ÿ•ต๏ธ Lazarus๐Ÿ‡ฐ๐Ÿ‡ต KPScore: 218
Microsoft Windows Internet Shortcut Files Security Feature Bypass Vulnerability
๐Ÿ•ต๏ธ APT28๐Ÿ‡ท๐Ÿ‡บ RUScore: 217
RARLAB WinRAR Code Execution Vulnerability
๐Ÿ•ต๏ธ RansomHub๐ŸŒ ??Score: 217
Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability
๐Ÿ•ต๏ธ APT29๐Ÿ‡ท๐Ÿ‡บ RUScore: 216
JetBrains TeamCity Authentication Bypass Vulnerability
๐Ÿ•ต๏ธ Volt Typhoon๐Ÿ‡จ๐Ÿ‡ณ CNScore: 216
Fortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability
๐Ÿ•ต๏ธ Sandworm๐Ÿ‡ท๐Ÿ‡บ RUScore: 206
Veeam Backup & Replication Cloud Connect Missing Authentication for Critical Function Vulnerability
๐Ÿ•ต๏ธ LockBit๐ŸŒ ??Score: 183
F5 BIG-IP and BIG-IQ Centralized Management iControl REST Remote Code Execution Vulnerability
๐Ÿ•ต๏ธ APT41๐Ÿ‡จ๐Ÿ‡ณ CNScore: 183
Atlassian Confluence Server and Data Center Server-Side Template Injection Vulnerability
๐Ÿ•ต๏ธ Volt Typhoon๐Ÿ‡จ๐Ÿ‡ณ CNScore: 183
GitLab Community and Enterprise Editions Remote Code Execution Vulnerability
๐Ÿ•ต๏ธ Lazarus๐Ÿ‡ฐ๐Ÿ‡ต KPScore: 183
F5 BIG-IP Missing Authentication Vulnerability
๐ŸŽฏ Attaques APT / espionnage (flux RSS)
New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacks
๐Ÿ“… 29 May 2026๐Ÿ“ฐ TheHackerNews
A previously undocumented threat actor dubbed GREYVIBE has been attributed to ongoing and persistent attacks targeting Ukraine and Ukraine-related entities since at least August 2025. GREYVIBE, per W
Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code Tunnels
๐Ÿ“… 29 May 2026๐Ÿ“ฐ TheHackerNews
The North Korean state-sponsored threat actor known as Kimsuky (aka Velvet Chollima) has been attributed to a fresh set of cyber attacks targeting South Korean military and corporate entities through
[remote] Microsoft - NTLMv2 Hash Capture
๐Ÿ“… 29 May 2026๐Ÿ“ฐ Exploit-DB
Microsoft - NTLMv2 Hash Capture
Russia-Linked โ€˜GreyVibeโ€™ Attackers Use AI to Supercharge Cyberattacks
๐Ÿ“… 28 May 2026๐Ÿ“ฐ SecurityWeek
Researchers warn GreyVibeโ€™s extensive use of ChatGPT, Gemini, and other AI tools offers a glimpse into how future cybercriminal and state-aligned groups will operate. The post Russia-Linked โ€˜GreyVi