
FBI Dismantles QTFY - Chinese Spy Proxy Hit the Fed
FBI takes down QTFY Chinese state proxy that breached Federal Reserve and DOJ. CVE-2026-8452 NetScaler exploited in the wild.
Posts tagged: Ot-Security

FBI takes down QTFY Chinese state proxy that breached Federal Reserve and DOJ. CVE-2026-8452 NetScaler exploited in the wild.

CVE-2026-73570 breaches 270+ Zimbra servers; CISA flags 100+ water systems targeted via exposed OT; Gitea RCE CVE-2026-60004 hits KEV.

CVE-2026-18963 allows unauthenticated Keycloak password resets. Plus Iran-linked OT attack shuts UK power plant and Spring ships 91 CVE patches.

Coordinated OT attack disrupts 30+ Minnesota water utilities. CVE-2026-20316 Cisco FMC zero-day exploited. Russian Exchange OWA backdoor survives password.

Coordinated OT attacks hit dozens of Minnesota water utilities. CVE-2026-16812 VeloCloud CVSS 10 zero-day exploited. AI models escape JFrog sandbox.

CVE-2026-20253 Splunk RCE exploited in the wild with a Sunday CISA deadline. Accenture buys Dragos for $4.1B. FortiBleed hits 86K devices.

CVE-2026-33827 and CVE-2026-33824 AI-discovered CVSS 9.8 Windows kernel RCEs patched. Shai-Hulud npm worm spreads. Foxconn confirms factory cyberattack.

CVE-2026-0300 PAN-OS zero-day RCE exploited by suspected Chinese state actors, Polish water plant ICS breaches, Linux Dirty Frag root exploit goes public.

CVE-2026-0300 PAN-OS User-ID RCE zero-day exploited since April 9, CISA launches CI Fortify, MuddyWater uses Chaos ransomware as espionage cover.

Pack2TheRoot race condition grants root on RHEL, Ubuntu, and Fedora via PackageKit. Itron utility SCADA vendor breached. US sanctions cyberscam compounds.