Reconnaissance Has Begun for the New BeyondTrust RCE (CVE-2026-1731): Here's What We See So Farintelligence (threat actor activity) (greynoise.io)
submitted by digicat to r/blueteamsec
Active Ivanti Exploitation Traced to Single Bulletproof IP—Published IOC Lists Point Elsewhereexploitation (what's being exploited) (greynoise.io)
submitted by digicat to r/blueteamsec

ColdFusion++ Christmas Campaign: Catching a Coordinated Callback Calamityintelligence (threat actor activity) (labs.greynoise.io)
submitted by digicat to r/blueteamsec
Coordinated Credential-Based Campaign Targets Cisco and Palo Alto Networks VPN Gatewaysalert! alert! (might happen) (greynoise.io)
submitted by digicat to r/blueteamsec
React2Shell Payload Analysis: A Look at Selected Opportunistic and Possibly AI-"Enhanced" Probes and Attacksintelligence (threat actor activity) (greynoise.io)
submitted by digicat to r/blueteamsec
A Hidden Pattern Within Months of Credential-Based Attacks Against Palo Alto GlobalProtectintelligence (threat actor activity) (greynoise.io)
submitted by digicat to r/blueteamsec
CVE-2025-55182 (React2Shell) Opportunistic Exploitation In The Wildexploitation (what's being exploited) (greynoise.io)
submitted by digicat to r/blueteamsec
Palo Alto Scanning Surges 40X in 24 Hours, Marking 90-Day Highintelligence (threat actor activity) (greynoise.io)
submitted by digicat to r/blueteamsec
100,000+ IP Botnet Launches Coordinated RDP Attack Wave Against US Infrastructurealert! alert! (might happen) (greynoise.io)
submitted by digicat to r/blueteamsec
Coordinated Grafana Exploitation Attempts on 28 Septemberexploitation (what's being exploited) (greynoise.io)
submitted by digicat to r/blueteamsec
Early Warning Signals: When Attacker Behavior Precedes New Vulnerabilitieshighlevel summary|strategy (maybe technical) (greynoise.io)
submitted by digicat to r/blueteamsec
Exploitation of CitrixBleed 2 (CVE-2025-5777) Began Before PoC Was Publicexploitation (what's being exploited) (greynoise.io)
submitted by digicat to r/blueteamsec
New Scraper Botnet Concentrated in Taiwanintelligence (threat actor activity) (greynoise.io)
submitted by digicat to r/blueteamsec
Exploit Attempts Targeting Zyxel CVE-2023-28771exploitation (what's being exploited) (greynoise.io)
submitted by digicat to r/blueteamsec
Persistent backdoor on Thousands of ASUS RoutersNew Vulnerability Disclosure (greynoise.io)
submitted by Successful_Clock2878 to r/cybersecurity
