What cybersecurity experts are talking about in 2026
ID: 25947de2-9ebe-5dbc-bf8e-ee00e4db6099
STIX ID: report--25947de2-9ebe-5dbc-bf8e-ee00e4db6099
Feed Name: Virus Bulletin's blog
This VB2026 preview summarizes five active and emerging threats: (1) the Griffith intrusion set linking VB6 DarkMe and new GriffithRAT implants targeting fintech/iGaming; (2) a sophisticated Reservation Hijack fraud workflow abusing compromised hotel/partner accounts to defraud guests; (3) LANDFALL, a commercial-grade Android spyware delivered via malformed DNG images exploiting a Samsung image-processing zero-day and tied to a UAE-linked actor with parallel Windows intrusions; (4) Gorbag, a Russia-aligned espionage group using spear-phishing and lightweight but targeted backdoors/infostealers against Ukrainian military and defense industry; and (5) threats to agentic AI platforms from malicious skills, prompt-poisoning, and operational failures, together with defensive work (Sage/AARTS).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
