Product
Nacos
- First Reported
- Jul 24, 2026
- Latest Reported
- Sep 3, 2026
Reported Context (2)
- Shellshock, Spring4Shell, Ghostcat, Shiro deserialization, Log4Shell, Grafana and Nexus path traversals, and a Nacos authentication bypass. Chinese-Speaking Operator Used AI Agents to Target Government and Education Systems Across Asia
- keys), reached a MinIO object store that was still on its default credentials, then pivoted to the Nacos configuration server and its backing production database. Researchers Report AI Agent Ran Ransomware Intrusion From Exploit to Data Destruction
CVE (9)
Malware (5)
People (1)
MITRE ATT&CK (19)
Vendors (6)
Products (26)
Tools (5)
Industries (9)
Countries (5)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.