View Ridge Security
Back to Cyber HoseActive Exploits & Incidents

US charges alleged operators of Russian bulletproof hosting service

🚨 ACTIVE EXPLOITS & INCIDENTS

  • US charges alleged operators of Russian bulletproof hosting service β€” BleepingComputer
    U.S. prosecutors charged three Russian nationals running a bulletproof hosting (BPH) service that supported ransomware gangs responsible for over $62M in global damages. This takedown disrupts a critical infrastructure node enabling ransomware operations.

πŸ”“ VULNERABILITIES & CVEs

  • CVE-2026-15583: SSRF (confused deputy) in Grafana MCP Server β€” CVE ThreatInt
    Unauthenticated remote attackers can exploit a confused-deputy SSRF flaw via the X-Grafana-URL header to exfiltrate environment-configured Grafana service-account tokens. This allows potential privilege escalation and lateral movement in compromised environments. Patch or mitigate immediately.

  • CVE-2026-15804: SQL Injection in MetaGuru HCM β€” CVE ThreatInt
    Authenticated remote attackers can inject SQL commands through specific parameters, risking data confidentiality and integrity. Affects MetaGuru’s Human Capital Management software. Prioritize patching and review database access controls.

  • CVE-2026-14251: Missing allowednamespace check in OpenShift GitOps operator β€” CVE ThreatInt
    Namespace-scoped Argo CD instances can trigger unauthorized reconciliation of ClusterRole objects due to lack of ownership validation, enabling privilege escalation within Kubernetes clusters. Critical for organizations using OpenShift GitOps to apply fixes or implement compensating controls.

πŸ“‹ VENDOR BULLETINS & ADVISORIES

πŸ“° LESSER-KNOWN / UNDER-REPORTED

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check