logo

Chinese threat actor exploits maximum-severity Dell zero-day.

ID: eb3e5706-5ed0-571e-a414-fda27d420491

STIX ID: report--eb3e5706-5ed0-571e-a414-fda27d420491

Feed Name: The CyberWire

Threat Score
88/100

Date Published: 2026-02-21

Date Updated: 2026-04-23

...
...

This news roundup highlights several high-risk developments: a PRC-nexus APT (UNC6201) exploiting a Dell RecoverPoint zero-day (CVE-2026-22769) for root access and persistence; an infostealer discovered extracting OpenClaw AI assistant configuration and secrets; the CRESCENTHARVEST campaign targeting Iranian protesters via malicious LNK lures; the Starkiller phishing framework that proxies live login pages to bypass detections; and a sharp rise in ransomware against industrial organizations (3,300 affected, 119 groups active in 2025).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.