A previously unknown threat actor has been observed exploiting a recently disclosed cPanel vulnerability to target government and military entities in Southeast Asia, as well as managed service providers and hosting providers in the Philippines, Laos, Canada, South Africa, and the United States. The activity was detected by Ctrl-Alt-Intel on May 2, 2026.
