Lyrie
Active Exploitation
1 sources verified·1 min read
By Lyrie Threat Intelligence·5/14/2026

0day Intel: Mr_Rot13 is exploiting critical cPanel CVE-2026-41940 (CVSS 9.8) to deploy the "

Source: X search for CVE-2026 critical

Posted: 2026-05-14T08:26:58.000Z

Likes: 11

Full Tweet

Mr_Rot13 is exploiting critical cPanel CVE-2026-41940 (CVSS 9.8) to deploy the "Filemanager" RAT. Learn how this 6-year veteran group maintains server dominion.

https://t.co/ynr42jeXjv https://t.co/pRoNymKHMI

Source Link

https://x.com/i/status/2054840885813383359

Lyrie Verdict

Lyrie's autonomous defense layer flags this class of exposure the moment it surfaces — no signature update required.

Validated sources

  1. [1]@233467047 on X