www.osintinvestigate.com

The attacks likely target CVE-2026-41940, a recently patched zero-day leading to administrative access.