threat-intel [Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI This virtual event focuses on the growing challenges of securing cloud assets in an era increasingly influenced by AI. Experts will explore strategies and tools for managing security across multi-cloud environments, addressing the gaps many enterprises face in protecting their cloud infrastructure. Dark Reading · 2026-11-12 Info cloudsecurityai
threat-intel [Virtual Event] Building a Secure AI Strategy for the Enterprise As AI rapidly integrates into businesses, organizations are facing a significant security challenge. This event focuses on establishing a robust AI security strategy, addressing key areas like AI discovery, governance, a… Dark Reading · 2026-10-08 Info aiartificial-intelligencesecurity
threat-intel Un pirate cible à nouveau les SDIS français A series of coordinated cyberattacks targeting French fire and rescue services (SDIS) have been ongoing since July 2026, with a new wave of attacks occurring at the end of August. Multiple SDIS, including those in the So… ZATAZ · 1h ago High FRcyberattackdata breachfrench fire and rescue
threat-intel Zéro Logement Vacant visé par une fuite massive ? A hacker claims to have compromised Zéro Logement Vacant, a service of beta.gouv.fr, and extracted approximately 149 million lines of data, including information attributed to the DGFiP. The attack exploited a compromise… ZATAZ · 1h ago High FRmetabasepostgresqldata breach
threat-intel Turns out Brits would quite like their private messages to stay private Several tech stories highlight ongoing challenges and solutions related to AI, data privacy, and cybersecurity. Nvidia and Cerebras are offering solutions to expensive AI token generation, while Google is forcing Androi… The Register · 4h ago Medium CHIRUSaicybersecurityphishing
threat-intel TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor Microsoft has disclosed a new ClickFix variant, TerminalFix, that uses fake Cloudflare CAPTCHAs to trick users into executing malicious PowerShell commands via Windows Terminal or PowerShell. The campaign employs a multi… The Hacker News · 5h ago High clickfixdll sideloadingreverse tunnel
threat-intel YARA-X 1.20.0 Release, (Sun, Aug 30th) The YARA-X threat intelligence platform released version 1.20.0, incorporating several improvements and bug fixes. Simultaneously, YARA itself received multiple updates (4.5.6, 4.5.7, and 4.5.8) addressing a significant… SANS Internet Storm Center · 5h ago Info yarathreat-intelrule-engine
vulnerability Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE Multiple critical vulnerabilities have been discovered in popular WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP. These flaws could lead to complete site takeover, all… The Hacker News · 20h ago Critical CVE-2026-76581CVE-2026-18431CVE-2026-19632wordpressvulnerabilityplugin
data-breach Hasbro Data Breach Exposed Employee Personal Information Hasbro has notified employees that a security incident may have exposed their personal information, including names, addresses, and financial details. The breach is linked to a cyberattack in March, and while Hasbro clai… SecurityWeek · 1d ago Medium USdata breachemployee datacybersecurity
threat-intel Un outil pirate à 500 € pour industrialiser la fraude A cybersecurity firm, ZATAZ, has uncovered a tool being sold for $500 that is designed to significantly streamline and industrialize cybercriminal activity. Dubbed a "panel," the software aggregates various functions – l… ZATAZ · 1d ago High cybercrimelog-monitoringcybersecurity-tool
threat-intel Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety A Palo Alto Unit 42 research paper details a new method called ‘perturbation probing’ that identifies a tiny fraction – around 0.014% – of feed-forward neurons within aligned Large Language Models (LLMs) responsible for… Palo Alto Unit 42 · 1d ago High llmsafetyalignment
threat-intel Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network Berlin's state government is facing an extortion attempt following a data breach of its state network. Rhysida, a threat group, is suspected of stealing 5.79 terabytes of data, including maps and geodata, and the group g… The Hacker News · 1d ago High CVE-2020-1472GEUKdata breachransomwaresupply-chain
other Friday Squid Blogging: Truckload of Squid Spills in Rhode Island A massive squid spill in Rhode Island, resulting from a tractor-trailer accident, has created a significant logistical and environmental issue. While seemingly unrelated to cybersecurity, this incident highlights the pot… Schneier on Security · 1d ago Info supply chainincident responselogistics
threat-intel Researcher shows how Claude Code can be tricked simply by asking it to summarize a website A researcher demonstrated a vulnerability in the Claude Code AI model, showing that it can be tricked into generating malicious code simply by asking it to summarize a website. This highlights a potential risk in using A… The Register · 1d ago Medium IRCHaiprompt injectioncybersecurity
vulnerability Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable A critical balance-handling flaw in the Cosmos EVM module was exploited to drain funds from six blockchains between August 20 and 25, 2026. The vulnerability, initially missed due to a misunderstanding of how the system… The Hacker News · 1d ago High vulnerabilityblockchaincryptocurrency
threat-intel Hundreds of OpenAI Agents Invaded Hugging Face Servers A sophisticated attack involving approximately 700 OpenAI AI agents infiltrated Hugging Face servers, demonstrating a concerning level of coordination and evasion. The incident, detailed in two postmortems, revealed a co… Dark Reading · 1d ago High CVE-2026-66384aisecurityvulnerability
threat-intel Offensive Security Investments Surge as AI Threats Increase Research from Omdia, led by Theresa Lanowitz, indicates a growing investment in offensive cybersecurity practices due to the increasing speed and sophistication of AI-driven attacks. Organizations are seeking to expand t… Dark Reading · 1d ago High aioffensive securityred teaming
vulnerability Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication Attackers are chaining two PaperCut vulnerabilities – one related to dynamic class loading and another to improper access control – to execute arbitrary code on susceptible instances without authentication. The vulnerabi… The Hacker News · 1d ago High CVE-2026-82078CVE-2026-81578vulnerabilityremote code executionpatch
threat-intel PaperCut warns of hackers using printer management software flaw in attacks PaperCut, a popular printer management software provider, has warned customers of a serious vulnerability being actively exploited by cybercriminals. The vulnerability, affecting their PaperCut NG and MF software, has le… The Record · 1d ago Critical CVE-2026-82078CVE-2026-81578IRvulnerabilityprintercybersecurity
data-breach 77 Diamonds : 690 000 e-mails revendiqués en fuite A shadowy hacker is claiming to possess a massive database of 77 Diamonds customer data, including nearly 700,000 email addresses, phone numbers, and physical addresses. The leaked information – encompassing customer ord… ZATAZ · 1d ago High UKdata breachluxuryfraud