Skip to main content

Threat Intelligence News & Analysis Articles

2 Articles
Threat Intelligence News & Analysis
2026-08-306 min read

Cl0p Ransomware Exploits PTC Windchill CVE-2026-12569: Shell, Philips, GE Among 47 Named Victims

The Cl0p extortion group exploited CVE-2026-12569, a deserialization flaw in PTC Windchill and FlexPLM, to steal engineering data from Shell, Philips, General Electric, Fiserv, and roughly 45 other companies. Unlike Cl0p's MOVEit campaign, this operation skips file encryption and targets CAD files, blueprints, and supply chain documentation.

Threat Intelligence News & Analysis
2026-08-284 min read

DOJ and FBI Seize QScan and QTRouter: China-State Hacking Platforms Targeting U.S. Critical Infrastructure

The U.S. Justice Department and FBI seized domains powering the QScan and QTRouter platforms operated by PRC-state group QTFY (Nanjing Xinjiuwei Network Technology Company), used since at least 2018 to target NASA, the Federal Reserve, DOE, DOJ, HHS, NIH, and the U.S. Senate. DOJ later corrected its statement to clarify the agencies were targets, only some of which were compromised.