Anonymous ID: 356f88 Aug. 27, 2026, 8:12 a.m. No.24978383   🗄️.is 🔗kun   >>8395 >>8525 >>8856 >>8940 >>8992

Roughly 12–15 (depending on exact criteria) FBI-involved cybersecurity advisories, FLASH alerts, or joint CSAs in 2026 specifically about hacking groups, ransomware groups, APT/state-sponsored actors, or similar cyber threat actors targeting U.S. entities or critical infrastructure.

 

ic3.gov

 

The IC3.gov “2026 Industry Alerts” page (the primary public repository for many of these) lists ~23 total industry alerts/advisories year-to-date (as of late August 2026). Filtering to those focused on named or described hacking/ransomware/threat actor groups targeting the U.S. yields the core set below (dates approximate from public releases):Jan 8: North Korean Kimsuky actors (malicious QR codes / spearphishing targeting U.S. entities)

Mar 20: Government of Iran cyber actors (Telegram C2 malware)

Apr 7 (and update ~Jul 22): Iranian-affiliated actors exploiting PLCs in U.S. critical infrastructure

Apr 23: China-nexus covert networks of compromised devices

May 21: “First VPN Service” used by ransomware actors

May 26: Silent Ransom Group (SRG / Luna Moth / etc.) targeting U.S. law firms via social engineering

Jul 2: Cyber criminal group TeamPCP (supply-chain compromises)

Jul 13: Russian FSB Center 16 / state-sponsored actors targeting networking devices in critical infrastructure

Jul 23: Russian state-supported actors phishing Zimbra users

Aug 10: Gunra ransomware (targeting government/critical infrastructure)

Aug 18: Medusa ransomware (updated joint advisory; >500 victims including U.S. critical infrastructure)

Aug 19: Active threat to Siemens S7 Series PLCs (threat actors)

Aug 26: China-linked QTFY hacking group (targeting U.S. military, critical infrastructure, government agencies)

 

Related items (e.g., North Korean IT workers alert, some OT/hardening guidance, or broader PSAs) are sometimes counted depending on how strictly “hacking groups targeting America” is defined. Pure vulnerability alerts, non-actor-specific guidance, or non-U.S.-focused items are generally excluded from the 12–15 range.These appear regularly on fbi.gov, ic3.gov, and joint CISA/NSA releases. The pace in 2026 has been steady, with multiple per month in some periods (especially mid-to-late year). Exact public tallies can vary slightly by source because some are joint products, updates to prior alerts, or FLASH vs. full CSA formats.

 

LAST 2 months has shown and uptick in attacks