Threats Affecting Iran
View all threats affecting or targeting Iran. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Affecting Iran
Click on any threat for detailed analysis and mitigation recommendations
Critical VMware vCenter Vulnerability in Attackers’ Crosshairs 0 CVE-2026-59310 is a critical directory traversal vulnerability in VMware vCenter's Syslog server that allows remote attackers with network access to execute arbitrary code. The flaw was patched by Broadcom on July 29, 2026, but attackers began exploiting it shortly after disclosure. An advanced persistent threat (APT) actor has used this vulnerability to gain persistent access to vulnerable vCenter servers by deploying a reverse SSH shell. Over 360 victim IP addresses across 47 countries have been identified, with significant concentration in Germany, the US, Turkey, Iran, and France. The exploitation campaign started around August 3, 2026, closely following the public disclosure. Organizations with publicly accessible vCenter servers are advised to verify detections carefully due to the dual-use nature of the reverse SSH tool used by attackers. Join the discussion | SecurityWeek | 08/13/2026, 09:06:40 UTC Added: 08/13/2026, 09:11:14 UTC |
Showing 1 to 1 of 1 result