PROJECT

CTI-AI

CTI Workbench

LIVE OPERATIONS

Breaches & Malware Command Center Fiserv Threat Intelligence

Real-Time Breach Incident Matrix, Exploited CVE Correlation & Adversary Attribution

CVE Center →← Back to Workbench
Category Focus:
Breach Incident Matrix (9 Active Records)
Last Sync: Just nowSorted By: latestDate (desc)
No
Breaches & Malware
Breach Date
IOCsTTPs
CVEs
Detections
TechnologyIndustry
Actors
Source & Article
1
Threat Icon
SourTrade (In-Browser Bun PE Assembly)Social EngineeringMalvertising & In-Browser Splicing
25 Jul 2618614218
Bun Runtime
Financial
SourTrade Cluster
Splunk Security Research
2
Threat Icon
LockBit 3.0 Core Banking ExtortionRansomwareZero-Day Exploit & Compromised VPN
24 Jul 26412289319
Windows Server
Financial
LockBit Supporter Group
DarkReading / CISA KEV
3
Threat Icon
Entra ID OAuth Consent Abuse & Token TheftSaaS & OAuthSaaS Application Consent Phishing
22 Jul 269468212
Azure AD
Financial
Storm-0875
Microsoft Threat Intelligence
4
Threat Icon
Progress ShareFile RCE & Data ExfiltrationVulnerabilitiesUnauthenticated Remote Code Execution
20 Jul 26310185415
Progress ShareFile
Financial
Cl0p Ransomware Gang
Progress Security Advisory
5
Threat Icon
DPRK Lazarus Group Infiltrates Global Financial & Crypto Clearing Gateway ($1.5B)Financial Theft & Crypto HijackingSupply Chain Malicious Package & LinkedIn Phishing
13 Aug 26310142338
Financial SWIFT
Financial
DPRK State Cyber Cluster (Lazarus / RGB)
CISA & FBI Joint Advisory
6
Threat Icon
ShinyHunters Claims Theft of 560M Ticketmaster & Santander Cloud RecordsSaaS & OAuthUn-MFA'd Enterprise Cloud Credential Scraping
12 Aug 2618576122
Snowflake Cloud Data Warehouse
Financial
ShinyHunters
Mandiant Intelligence
7
Threat Icon
CL0P Exploits Enterprise MFT Zero-Days in Mass Banking ExtortionVulnerabilitiesZero-Day SQL Injection & Web Shell Injection
11 Aug 26520215442
MOVEit Transfer MFT
Financial Services
CL0P Ransomware Group (TA505)
CISA & BleepingComputer
8
Threat Icon
7 States' Water Systems Hit by Cyberattacks Likely Tied to IranCritical Infrastructure & OTPublic-Facing OT SCADA Exploit & Default Passwords
01 Aug 266854224
Unitronics PLC
Utilities
CyberAv3ngers / Iranian State Threat Group
WIRED Security
9
Threat Icon
OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central AsiaCyber-EspionageMemory Injected Plugins & Shell Launching
01 Aug 264962233
Windows (Endpoint OS)
Government
OctLurk Cluster
Kaspersky (Securelist)
LIVE OSINT FEED
[--:--:--]RansomHub infrastructure detected actively scanning public repositories for secrets.[--:--:--]New leak: 14k internal developer credentials tied to corporate git repos posted on BreachForums.[--:--:--]OSINT Warning: Known ShinyHunters OAuth app redirect domains resurfacing via dynamic DNS.[--:--:--]Active exploit attempting to abuse Salesforce Experience Cloud Aura endpoints detected on multiple enterprise portals.[--:--:--]AI Security Alert: Abnormal volume of OpenAI API token requests from hijacked cloud GPU instances.[--:--:--]Threat group UNC6780 (Team PCP) observed pushing poisoned NPM package updates.[--:--:--]GitHub Breach Alert: Actor selling access to compromised corporate developer repositories.[--:--:--]RansomHub infrastructure detected actively scanning public repositories for secrets.[--:--:--]New leak: 14k internal developer credentials tied to corporate git repos posted on BreachForums.[--:--:--]OSINT Warning: Known ShinyHunters OAuth app redirect domains resurfacing via dynamic DNS.[--:--:--]Active exploit attempting to abuse Salesforce Experience Cloud Aura endpoints detected on multiple enterprise portals.[--:--:--]AI Security Alert: Abnormal volume of OpenAI API token requests from hijacked cloud GPU instances.[--:--:--]Threat group UNC6780 (Team PCP) observed pushing poisoned NPM package updates.[--:--:--]GitHub Breach Alert: Actor selling access to compromised corporate developer repositories.[--:--:--]RansomHub infrastructure detected actively scanning public repositories for secrets.[--:--:--]New leak: 14k internal developer credentials tied to corporate git repos posted on BreachForums.[--:--:--]OSINT Warning: Known ShinyHunters OAuth app redirect domains resurfacing via dynamic DNS.[--:--:--]Active exploit attempting to abuse Salesforce Experience Cloud Aura endpoints detected on multiple enterprise portals.[--:--:--]AI Security Alert: Abnormal volume of OpenAI API token requests from hijacked cloud GPU instances.[--:--:--]Threat group UNC6780 (Team PCP) observed pushing poisoned NPM package updates.[--:--:--]GitHub Breach Alert: Actor selling access to compromised corporate developer repositories.