Vallanx

Vallanx Cyber Threat Monitor
Your central hub for security-relevant information

In the Cyber Threat Monitor you will find continuously updated, daily information on threat actors, vulnerabilities & exploits, and recent incidents. In addition, the Cyber Threat Monitor provides a current risk assessment by country for a total of 12 sectors. The risk ratings are composed of factors from current cyber security & threat intelligence.

The Cyber Threat Monitor is available in the dashboard and on the website in the desktop version.

Current cyber risk level per country for

Real-time analysis for week 33/2026

The Cyber Threat Indicator reflects the weekly updated risk value for each country, broken down by sector.

The risk models are continuously calculated based on current cyber threat indicators.

For more information on the individual categories on the left, simply click on the category name.

Common Vulnerabilities & Exploits

186 new vulnerabilities in the last 24 hours

Date CVE ID Severity Info Report
Aug 14, 2026 MAL-2026-14039
NPM
Amazon
iOS
WebKit
Apple
Kernel
Scheme
Navigator
macOS
Safari
Malicious code in @cdnshell/loader (npm)
Open details
Aug 14, 2026 MAL-2026-14041
NPM
Amazon
HTML
iOS
.NET
Malicious code in @demopack/www (npm)
Open details
Aug 14, 2026 MAL-2026-14043
NPM
Amazon
JavaScript
Origin
Malicious code in @divineubg/divine (npm)
Open details
Aug 14, 2026 MAL-2026-14042
NPM
Amazon
TypeScript
Malicious code in @devmikets/hyperliquid-sdk (npm)
Open details
Aug 14, 2026 CVE-2026-35511
OAuth
Links
Google
GitHub
Unix
Apple
Discord
Microsoft
Authorizer: Zero-click account takeover via OAuth identity linking to unverified email accounts
Open details
Aug 14, 2026 CVE-2026-73673
Netis
Netis NC63 router firmware V3.0.0.3327 contains an unauthenticated firmware update vulnerability that allows unauthenticated ...
Open details
Aug 14, 2026 CVE-2026-19626
A remote code execution vulnerability exists in Tenable Security Center's report generation functionality. An authenticated, non-administrative user could exploit this issue by supplying specially crafted input that is later processed unsafely during server-side report rendering, resulting in arbitrary code execution with the privileges of the service account.
Open details
Aug 14, 2026 bltf1a88d39228081cf_en-us
Google
Project CAV3RN abuses trusted Google infrastructure for resilient espionage
Open details
Aug 14, 2026 CVE-2026-73850
SQL
PHP
Emlog is an open source website building system. In 2.6.20 and earlier, there is a SQL injection vulnerability in the queryDa...
Open details
Aug 14, 2026 CVE-2026-73849
PHP
Emlog is an open source website building system. In 2.6.26 and earlier, install.php accepts action=reinstall without authenti...
Open details
Aug 14, 2026 CVE-2026-73847
PHP
Chrome
SQL
Emlog is an open source website building system. In 2.6.26 and earlier, missing CSRF protection on the AI Assistant execute_t...
Open details
Aug 14, 2026 CVE-2026-72970
Microsoft
Edge
Chromium
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Open details
Aug 14, 2026 CVE-2026-63361
HTML
LimeSurvey Community Edition 7.0.5 contains an authenticated reflected cross-site scripting vulnerability in the HTML editor ...
Open details
Aug 14, 2026 CVE-2026-49282
Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's public `cs_insn_name()` API forwards caller-su...
Open details
Aug 14, 2026 CVE-2026-49263
Capstone is a disassembly framework. Prior to version 6.0.0-Alpha9, Capstone's WebAssembly backend accepts attacker-controlle...
Open details
Aug 14, 2026 CVE-2026-48528
SQL
PostgreSQL
Metacat is data repository software that helps researchers preserve, share, and discover data. Metacat versions 2.0.0 through...
Open details
Aug 14, 2026 CVE-2026-19847
totolink
A security flaw has been discovered in TOTOLINK A800R 4.1.2cu.5137_B20200730. Affected is the function setWiFiWpsConfig of th...
Open details
Aug 14, 2026 CVE-2026-19846
totolink
A vulnerability was identified in TOTOLINK A800R 4.1.2cu.5137_B20200730. This impacts the function setUrlFilterRules of the f...
Open details
Aug 14, 2026 CVE-2026-19682
A command injection vulnerability exists in Security Center where a remote, unauthenticated attacker could exploit this issue...
Open details
Aug 14, 2026 CVE-2026-19681
An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker cou...
Open details

Current cyber attacks in the last 14 days

102 documented cases in the past two weeks

Date Affected services Details Report
Aug 14, 2026 Not specified PATCHCORD Malware Cluster Targets Telecom and Critical Infrastructure
Open report
Aug 14, 2026 Not specified GhostDesk via Fake Softwares
Open report
Aug 14, 2026 Not specified WindRelay and SpyNote Drive NFC Fraud
Open report
Aug 14, 2026 Beacon (UK) A compromised AWS key exposes data from organizations.
Open report
Aug 14, 2026 Shell (UK) The CL0P group steals 89 GB of data through a software vulnerability.
Open report
Aug 14, 2026 Not specified Project CAV3RN abuses trusted Google infrastructure for resilient espionage
Open report
Aug 13, 2026 Not specified Jewelbug: APT Group Runs Espionage and Crypto Fraud Operations Side by Side
Open report
Aug 13, 2026 Not specified Sandworm-Linked Group Uses Fake Job Interviews to Deploy Trojanized WireGuard Client
Open report
Aug 13, 2026 Trezor (WW) Supply-chain attack on logistics partner exposes data of 14,000 customers.
Open report
Aug 12, 2026 Not specified Aeternum Botnet
Open report
Aug 12, 2026 Not specified Gunra Ransomware expands its operations
Open report
Aug 12, 2026 Not specified A new variant of the Kimwolf botnet identified in the wild
Open report
Aug 12, 2026 Not specified Chaos Malware Variant Targeting Linux Cloud Infrastructure
Open report
Aug 12, 2026 Berri AI (WW) Terabytes of access data compromised through a supply-chain attack on LightLLM.
Open report
Aug 12, 2026 Threema (CH) Messaging service repeatedly brought down again and again by DDoS attacks.
Open report
Aug 11, 2026 Not specified DeadLock Ransomware Combines Resource-Aware Encryption with Resilient Extortion Protocols
Open report
Aug 11, 2026 Ágape Consultoria (BR) The City Hall and Chamber of Vila Pavão are affected by a hacker attack that took down portals in Espírito Santo.
Open report
Aug 11, 2026 CH BIOTECH R&D CO., LTD. (TW) Todays Information
Open report
Aug 11, 2026 Bloctel (FR) Cybercriminals Stole 3 Million Phone Numbers From French Government Anti-Telemarketing List Bloctel On 11 August 2026
Open report
Aug 11, 2026 Darlington County (US) Darlington County, South Carolina, takes systems offline after cybersecurity incident
Open report

Current ransomware attacks

54 registered incidents in the last 48 hours

Date Affected org. Details Report
Aug 14, 2026 granjarinya.com (ES) granjarinya.com became a victim of a ransomware attack by Safepay on the Aug 14, 2026.
Open report
Aug 14, 2026 Columbia University Information (Dental) (US) Columbia University Information (Dental) became a victim of a ransomware attack by Global Secret Group on the Aug 14, 2026.
Open report
Aug 14, 2026 Connections (BE) Connections became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 Connell Enterprises LLC (US) Connell Enterprises LLC became a victim of a ransomware attack by Interlock on the Aug 14, 2026.
Open report
Aug 14, 2026 Turner and Townsend (GB) Turner and Townsend became a victim of a ransomware attack by Coinbasecartel on the Aug 14, 2026.
Open report
Aug 14, 2026 Serruya private equity (US) Serruya private equity became a victim of a ransomware attack by Coinbasecartel on the Aug 14, 2026.
Open report
Aug 14, 2026 Sweet Water Holdings (US) Sweet Water Holdings became a victim of a ransomware attack by Coinbasecartel on the Aug 14, 2026.
Open report
Aug 14, 2026 Keystops (US) Keystops became a victim of a ransomware attack by Akira on the Aug 14, 2026.
Open report
Aug 14, 2026 Cozad Asset Management (US) Cozad Asset Management became a victim of a ransomware attack by Akira on the Aug 14, 2026.
Open report
Aug 14, 2026 Aletex Group (ES) Aletex Group became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 Pierce Township (US) Pierce Township became a victim of a ransomware attack by Rhysida on the Aug 14, 2026.
Open report
Aug 14, 2026 Radiant (SG) Radiant became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 ZEBRA.COM (US) ZEBRA.COM became a victim of a ransomware attack by Clop on the Aug 14, 2026.
Open report
Aug 14, 2026 Lercher Werkzeugbau (AT) Lercher Werkzeugbau became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 3f (DK) 3f became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 PenLink (US) PenLink became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 Urban Worldwide (NL) Urban Worldwide became a victim of a ransomware attack by Qilin on the Aug 14, 2026.
Open report
Aug 14, 2026 tecnoabi.com (BR) tecnoabi.com became a victim of a ransomware attack by M3rx on the Aug 14, 2026.
Open report
Aug 14, 2026 Cook Medical LLC (US) Cook Medical LLC became a victim of a ransomware attack by Shinyhunters on the Aug 14, 2026.
Open report
Aug 14, 2026 Gravity Coffee (US) Gravity Coffee became a victim of a ransomware attack by Thegentlemen on the Aug 14, 2026.
Open report

Information about Threat Actors, APT & Cyber Crime Groups

Current Database: 1.497 Groups at Aug 15, 2026


Fetching Profile ...

Where does the data come from?

Vallanx operates an AI-powered reporting & detection system for capturing cyber security incidents. Additional information on cyber attacks comes from a wide variety of sources. These include analyses from our own security and monitoring systems, which we operate for companies and organizations around the world. Furthermore, information from news portals, press agencies, publications from government agencies and authorities, etc. is incorporated. In addition, closed and OSINT sources are used for evaluation and verification, as well as direct reports from companies.

Sources of Cyber Threat Monitoring

Title Title
Al Jazeera https://www.aljazeera.com
Arab News https://www.arabnews.com/
ArsTechnica https://arstechnica.com/
Associated Press https://apnews.com/
Avast Threat Labs https://decoded.avast.io/
Basic Thinking https://www.basicthinking.de/
BBC https://www.bbc.com
Beobachter https://www.beobachter.ch/
Berliner Zeitung https://www.berliner-zeitung.de/
BlackBerry https://blogs.blackberry.com/
Bleeping Computer https://www.bleepingcomputer.com/
Blocks & Files https://blocksandfiles.com/?
Bloomberg https://bloomberg.com
Brisbane Times https://www.brisbanetimes.com.au
Brookings https://www.brookings.edu
Business Insider (DE) https://www.businessinsider.de
Business Insider (EN) https://www.businessinsider.com
Buzzfeed https://www.buzzfeednews.com
C4ISR https://www.c4isrnet.com/
Canberra Times https://www.canberratimes.com.au/
CBC Canada https://www.cbc.ca/
CBS News https://www.cbsnews.com
Channel News Asia https://www.channelnewsasia.com/
Chip.de https://www.chip.de
CISA ICS Alerts https://www.cisa.gov/
Cisco Talos Intelligence Group https://talosintelligence.com/
Cisco https://blogs.cisco.com/
CNBC https://www.cnbc.com
CNET https://www.cnet.com/
CNN https://www.cnn.com
Common Vulnerability Scoring System (CVSS) https://www.first.org/cvss/
Computer Bild https://www.computerbild.de/
Computer World https://www.computerworld.com/
ComputerWeekly.com https://www.computerweekly.com
Corriere della Serra https://www.corriere.it/esteri/
CriminalIP https://www.criminalip.io/
CVE Details https://www.cvedetails.com/
Cybereason https://www.cybereason.com/blog/rss.xml
CyberGeeks https://cybergeeks.tech/
CyberScoop https://www.cyberscoop.com/
CybersecAsia https://www.cybersecasia.net/news/feed/
Cybersecurity Insiders https://www.cybersecurity-insiders.com
Cynber Security News https://cybersecuritynews.com/?wd=ad
Cyble https://www.cyble.com/?/
Daily Record EU https://eu.dailyrecord.com
Dark Reading https://www.darkreading.com/
DataBreaches https://www.databreaches.net/feed/
Decode39 https://decode39.com/
Defense One https://www.defenseone.com/
Der Standard https://www.derstandard.at/
Der Tagesspiegel https://plana-beratung.de/profil/
Deutschlandfunk https://www.deutschlandfunk.de/
Die Welt https://www.welt.de/
DPA International https://dpa-international.com
Dragos https://www.dragos.com/
Economic Times India CIO https://cio.economictimes.indiatimes.com/
Economic Times India Telecom https://telecom.economictimes.indiatimes.com/
Economist https://www.economist.com
Eesti Päevaleht https://epl.delfi.ee/
EFF Deeplinks https://www.eff.org/
El Mundo https://www.elmundo.es/
El Pais https://elpais.com/
Euractiv https://www.euractiv.com/
Euro News https://www.euronews.com/
Euro topics https://www.eurotopics.net/
Exploit Database https://www.exploit-db.com/
F5 Labs Threats https://www.f5.com/
Financial Times https://www.ft.com
Forbes https://www.forbes.com
Fortiguard https://www.fortiguard.com/
Fortune https://fortune.com/
Fox Business https://www.foxbusiness.com
Fox News https://www.foxnews.com
FoxIT https://blog.fox-it.com/
Frankfurter Allgemeine Zeitung https://www.faz.net/
Gazeta Wyborcza https://wyborcza.pl/
Gdata https://www.gdata.de/
GitHub https://github.com/
Golem https://www.golem.de/
Google Threat Analysis Group https://blog.google/threat-analysis-group/rss/
GovInfo Security https://www.govinfosecurity.com
Group-IB https://blog.group-ib.com/
Haaretz News https://www.haaretz.com/
Hacker News https://news.ycombinator.com/
Hackread https://www.hackread.com/
Handelsblatt Online https://www.handelsblatt.com/
Heise https://www.heise.de/
Help Net Security https://www.helpnetsecurity.com
Huffington Post https://www.huffingtonpost.com
Human Rights Watch https://www.hrw.org/publications
IBM X-Force Exchange https://exchange.xforce.ibmcloud.com/
Indian Express https://indianexpress.com/about/cyber-security/
Infosecurity Magazine https://www.infosecurity-magazine.com
Insight Crime https://insightcrime.org/news/
International Business Times https://www.ibtimes.com
Internet World Business https://www.internetworld.de/
Intrusion Truth https://intrusiontruth.wordpress.com/
IronNet https://www.ironnet.com/blog/tag/threat-research
Japan Times https://www.japantimes.co.jp
Jerusalem Post https://www.jpost.com/
Just Security https://www.justsecurity.org
Jylands Posten https://jyllands-posten.dk/
Kaspersky Threat Intelligence Portal https://opentip.kaspersky.com/
Kleine Zeitung https://www.kleinezeitung.at/
Krebs on Security https://krebsonsecurity.com
Kurier.at https://www.kurier.at
La Repubblica https://www.repubblica.it/
La Stampa https://www.lastampa.it/
LA Times https://www.latimes.com
La Vanguardia https://www.lavanguardia.com/
Lawfare Blog https://www.lawfareblog.com/
Le Figaro https://www.lefigaro.fr/
Le Monde https://www.lemonde.fr
Les Echos https://www.lesechos.fr
LookingGlass https://lookingglasscyber.com/
Malwarebytes Labs https://blog.malwarebytes.com/feed/
Mandiant Resources Blog https://www.mandiant.com/
Microsoft On the Issues https://blogs.microsoft.com/on-the-issues/
Microsoft Security https://www.microsoft.com/
MIT Technology Review https://www.technologyreview.com/
MITRE CVE https://cve.mitre.org/
n-tv https://www.n-tv.de/
Naked Security https://www.nakedsecurity.sophos.com
National Vulnerability Database (NVD) https://nvd.nist.gov/
NBC News https://www.nbcnews.com
NDR - Netzwelt https://www.ndr.de/nachrichten/netzwelt/index.html
Netzpolitik https://netzpolitik.org/
Netzwelt https://www.netzwelt.de/
Neue Zürcher Zeitung https://www.nzz.ch/
New York Times https://www.nytimes.com/
News.com https://www.news.com.au/
NPR https://www.npr.org
Open Source Vulnerability Database (OSVDB) https://www.osvdb.org/
Palo Alto Unit42 https://unit42.paloaltonetworks.com/
Politico EU https://www.politico.eu/
Politico https://www.politico.com
Politiken https://politiken.dk/
Postimees https://news.postimees.ee/
ProofPoint https://www.proofpoint.com/
QuoIntelligence https://quointelligence.eu/
Ransomware Live https://www.ransomware.live/
Rapid7 Vulnerability & Exploit Database https://www.rapid7.com/db/
ReadMe by Synack https://readme.security/
Reaqta https://reaqta.com/
Recorded Future Insikt Group https://www.recordedfuture.com/
Red Alert https://redalert.nshc.net/
Redaktionsnetzwerk Deutschland https://www.rnd.de/
Reuters https://www.reuters.com/
RFE/RL https://www.rferl.org/
RSF https://rsf.org/
Rzeczpospolita https://www.rp.pl/
SC Magazine UK https://www.scmagazineuk.com
Schneier on Security https://www.schneier.com/
Securelist by Kaspersky https://securelist.com/
Security Affairs https://securityaffairs.com/
Security Insider https://www.security-insider.de/
Security Middle East & Africa https://securitymea.com/
Security Middle East Magazine https://www.securitymiddleeastmag.com/
Security Week https://www.securityweek.com/
Security-Incidents.de https://www.security-incidents.de/sicherheitsvorfall-datenbank/
SecurityBrief Asia https://securitybrief.asia/
Securonix https://www.securonix.com/
Sentinel One Blog https://de.sentinelone.com/blog/
Sky News https://news.sky.com/
SocRadar https://socradar.io/blog/
Softpedia News https://news.softpedia.com/
South China Morning Post https://www.scmp.com
SPIEGEL Online https://www.spiegel.de/
Sydney Morning Herald https://www.smh.com.au
Symantec https://symantec-enterprise-blogs.security.com/
Süddeutsche Zeitung https://www.sueddeutsche.de/
t3n https://t3n.de/
Tagespiegel https://www.tagesspiegel.de/
Tarnkappe.info https://tarnkappe.info/
Tech Radar https://www.techradar.com/
TechCrunch https://techcrunch.com/
Technology Review https://www.technologyreview.com/
TechRepublic https://www.techrepublic.com/
The Atlantic https://www.theatlantic.com/
The Christian Science Monitor https://www.csmonitor.com/
The Cipher Brief https://www.thecipherbrief.com/
The Citizen Lab https://citizenlab.ca
The Daily Swig https://portswigger.net/
The Diplomat https://thediplomat.com/
The Guardian https://www.theguardian.com/
The Hacker News https://www.thehackernews.com
The Hill https://www.thehill.com
The Independent https://www.independent.co.uk
The Intercept https://theintercept.com
The Record https://therecord.media/
The Register https://www.theregister.com/security/cyber_crime/
The Start https://www.thestar.com.my/
The Telegraph https://www.telegraph.co.uk/
The Times UK https://www.thetimes.co.uk/
The Verge https://www.theverge.com
The Washington Post https://www.washingtonpost.com/
ThreatConnect https://threatconnect.com/
Threatpost https://threatpost.com/
Time https://time.com/
Trend Micro https://www.trendmicro.com/
Twitter https://twitter.com
USA Today Europe https://eu.usatoday.com/
USA Today https://www.usatoday.com/
Voice of America News https://www.voanews.com
Volexity https://www.volexity.com/blog/
Volkskrant https://www.volkskrant.nl
Vox https://www.vox.com
Vulners https://vulners.com/
Wall Street Journal https://www.wsj.com/
War on the Rocks https://warontherocks.com/
Washington Post https://www.washingtonpost.com
WeLiveSecurity https://www.welivesecurity.com/
Wired https://www.wired.com/
Wirtschaftswoche https://www.wiwo.de/
ZDnet https://www.zdnet.com/
ZeeNews India https://zeenews.india.com
ZEIT Online https://www.zeit.de/
DFIR Report https://thedfirreport.com/feed/
Imprint

nsakldnalksd mlasödalsdmklasmdlasm lakms ksadm klam klasm kldmaslkd m
Contact Vallanx

Which use case do you want to implement?

Talk to us. We are happy to answer your initial questions about Cyber Security & Compliance for your company!