Russia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver Backdoor
More on Organizations
Other advisories
- osv:CVE-2026-105213noneZITADEL before 4.17.1 Authentication Bypass via Login V2 for Deactivated Organizations
- osv:CVE-2026-104914noneMISP: Soft-Deleted Attributes from Other Organizations Exposed via Attribute Search and Paginated View
- osv:CVE-2026-94455noneUnauthenticated /enterprise/create-user mints lifetime top-tier organizations and discloses their API key
- osv:CLEANSTART-2026-FD75876noneKeycloak provides a way to manage identity providers and organizations through its administrative API
- CVE-2026-18201noneKeycloak-services: keycloak-services: generic identity-provider creation can bind brokers to organizations without manage-organizations
- osv:CVE-2026-75542noneOAuth token exchange grants repository scopes for organizations the principal cannot access
- CVE-2026-75542noneOAuth token exchange grants repository scopes for organizations the principal cannot access
- osv:CVE-2026-58417noneREST API exposes organization membership of private organizations to public
Other news entries
- Newsbleepingcomputer2026-10-10Criminal IP Introduces AITEM as the Next Evolution of Attack Surface Management
- Newsvmware-security2026-10-09Mastering Cybersecurity with VMware vDefend and Avi via Hands-on Labs
- Newsbleepingcomputer2026-10-09How to keep AI agents within their permissions
- Newsbleepingcomputer2026-10-08FBI disrupts Chinese hacking tools used to breach critical infrastructure
- Newsthehackernews2026-10-08FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
- Newsdarkreading2026-10-08Russian Spies Give 'MatchBoil' Malware a Stealthy Facelift
- Newsthehackernews2026-10-08Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks
- Newsthehackernews2026-10-08ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms
Source: https://thehackernews.com/2026/09/russias-star-blizzard-targets-100.html
ID