threat-intel China-Linked Hacker Shows AI Capabilities in APAC Attack A Chinese-language hacker group has demonstrated the use of AI-powered agents in a multi-stage attack targeting government agencies in the Asia-Pacific region, with Taiwan appearing as a likely target. The attack utilize… Dark Reading · Aug 19, 2026 High CHNOTAaicyberattackthreat intelligence
threat-intel Multiples vulnérabilités dans les produits Mozilla (19 août 2026) Mozilla has disclosed multiple vulnerabilities across its Firefox and Thunderbird products. These vulnerabilities include potential for remote code execution, denial of service, and information disclosure. Affected versi… CERT-FR · Aug 19, 2026 High CVE-2026-74934CVE-2026-74935CVE-2026-74936vulnerabilityfirefoxthunderbird
threat-intel OpenAI's overhead will rise 20 percent for some workloads as it hardens security OpenAI is increasing its security overhead, raising prices by 20% for some workloads to bolster its defenses. This move reflects a broader trend in the AI industry as companies grapple with the security challenges of dep… The Register · Aug 18, 2026 High aisecurityautonomous systems
threat-intel Expired credit cards revived by researchers to make unauthorized payments Researchers have discovered a method to revive expired credit cards and use them for unauthorized payments. This vulnerability stems from a flaw in how Stripe handles AI token sales, allowing attackers to manipulate the… The Register · Aug 18, 2026 High credit-cardsaitokenization
threat-intel 'CoSnitch' Attack Tricked Copilot into Mapping Out Architecture Researchers discovered a novel 'meta-hacking' technique that tricked Microsoft Copilot Personal into revealing its own security vulnerabilities, allowing attackers to map out its architecture and subsequently steal enter… Dark Reading · Aug 18, 2026 High CVE-2026-24301prompt-injectionmeta-hackingdata-exfiltration
threat-intel The 'Industrial Accidents' Behind Rogue AI Agent Attacks — and the Sandbox Failures Exposed Rich Mogull, a senior analyst at the Cloud Security Alliance, highlights a growing trend of "industrial accidents" – rogue AI agent attacks – stemming from a lack of robust safety protocols and sandboxing around increasi… Dark Reading · Aug 18, 2026 High CHUNaiartificial intelligencecybersecurity
threat-intel Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18) A significant campaign, dubbed “TheHatman” and “FortiBleed,” is targeting organizations with leaked credentials, primarily leveraging password spraying against Fortinet and Sophos devices. TheHatman, an actor offering st… Palo Alto Unit 42 · Aug 18, 2026 High RUcredential theftpassword sprayingfortigate
threat-intel CISOs Break Their Silence in 'Declassified' Docuseries Red Mirror Studios, led by Danielle Lewan and Clint Howard II, is releasing an 11-episode docuseries titled "Declassified" featuring 11 cybersecurity CISOs sharing their real-world breach-response stories and personal st… Dark Reading · Aug 18, 2026 High cybersecuritycisosburnout
threat-intel More than 200 victims of Medusa ransomware identified over the last year, CISA says The CISA and FBI have updated their advisory on the Medusa ransomware gang, revealing that over 500 victims have been identified in the last year, with a significant focus on the healthcare sector. Medusa is known for ra… The Record · Aug 18, 2026 High ransomwaremedusazero-day
threat-intel Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets Two critical vulnerabilities are being actively exploited to steal cloud credentials and secrets. MLflow (versions < 3.15.0) is experiencing SSRF attacks, allowing attackers to access cloud metadata and exfiltrate sensit… The Hacker News · Aug 18, 2026 Critical CVE-2026-64849CVE-2026-25895CVE-2026-25939ssrfpath traversalremote code execution
threat-intel Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000 A threat actor calling itself Ransom Busters is offering to delete stolen ransomware data from servers in exchange for a payment, ranging from $20,000 to $60,000. GuidePoint Research and Intelligence Team (GRIT) has iden… The Hacker News · Aug 18, 2026 High USransomwaredata exfiltrationcredential theft
threat-intel Berlin cuts two state ministries off government network after security breach Berlin authorities have isolated two state ministries from the city's government network following a suspected security breach. The exact details of the attack, including the perpetrators and stolen data, remain unknown,… The Record · Aug 18, 2026 Medium DEsecurity breachnetwork isolationgovernment systems
threat-intel University of Texas forced to take systems offline in San Antonio after cyberattack The University of Texas at San Antonio experienced a cyberattack that forced the university to temporarily take systems offline, impacting student services and class registration. Despite initial containment, the inciden… The Record · Aug 18, 2026 Medium cyberattackransomwareuniversity
threat-intel Webinar Today: Rethinking Cyber Defense for AI-Speed Attacks The rapid advancement of AI is drastically shortening the time between vulnerability discovery and exploitation, forcing a fundamental shift in cybersecurity strategies. This webinar explores how AI is empowering attacke… SecurityWeek · Aug 18, 2026 Medium aicybersecuritythreat intelligence
threat-intel Apple plugs image-processing hole ripe for spyware abuse Apple has patched a security vulnerability in its image processing system that could have been exploited to install spyware. The flaw allowed attackers to trick an AI system into revealing instructions on how to self-hac… The Register · Aug 18, 2026 High CVE-2026-65346CVE-2026-65329aispywarevulnerability
threat-intel Hackers target Ukrainian agency managing assets seized from sanctioned Russians Ukraine’s Asset Recovery and Management Agency (ARMA), responsible for seizing assets from sanctioned Russians, has been targeted by a cyberattack as it prepares to select a manager for IDS Ukraine, a major bottled water… The Record · Aug 18, 2026 High UKRUcyberattackrussiasanctions
threat-intel CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW Nico Waisman’s cybersecurity journey is a remarkable and almost accidental one, beginning with a childhood fascination with hacking in Argentina and culminating in his current role as CISO at XBOW, a company specializing… SecurityWeek · Aug 18, 2026 High ARcybersecurityoffensive-securityai
threat-intel Éducation nationale : le ministère confirme l’attaque l’Éducation confirme son piratage The French Ministry of Education has confirmed a data breach and the exfiltration of personal data following a cyberattack on July 25, 2026. The attack, allegedly carried out by the hacker group ZeroBytes, resulted in th… ZATAZ · Aug 18, 2026 High FRcyberattackdata breachphishing
threat-intel Intraverse : 16,9 millions d’entrées exposées A data broker announced the discovery of a massive, unauthenticated database linked to Intraverse/Gamifi, a casino Web3 platform. The database, allegedly exposed on August 17, 2026, contained 16.898.017 entries, includin… ZATAZ · Aug 18, 2026 High FRweb3databaseblockchain
threat-intel 'Ransom Busters': Ransomware Actor Poses as Incident-Recovery Service A ransomware affiliate, calling itself ‘Ransom Busters,’ is attempting to undermine the RaaS business model by contacting victims of ransomware attacks and offering to retrieve their stolen data and destroy backups for a… Dark Reading · Aug 18, 2026 High ransomwareraasincident response