Exploited in the wild Dahua Cameras Lazarus nation-state Coldcard BCA LTD
MEGANews. Cамые важные события в мире инфосека за август
CVE Tools coverage
Security researchers at Hunt.io have uncovered details of a widespread intrusion campaign dubbed CameraSwarm, which resulted in the compromise of over 14,530 Dahua IP cameras. The malicious activity persisted for at least 35 days between mid-June and late July 2026, with the majority of confirmed victims identified in Russia and Ukraine. This discovery was made possible when operators left an HTTP server directory unprotected, allowing analysts to download hundreds of megabytes of data that included shell histories, stolen credentials, and camera footage.