ransomware Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks The Gunra ransomware group, linked to state-sponsored actors, is aggressively targeting critical infrastructure and organizations globally, leveraging vulnerabilities in Fortinet and Schneider Electric appliances to gain… The Hacker News · Aug 11, 2026 High CVE-2024-5559CVE-2025-24472SOBRSPransomwarevulnerabilitysupply-chain
threat-intel British ‘Com’ member who abused more than 100 girls worldwide jailed for two years A 20-year-old British man, Justin Swaddle, was sentenced to two years in prison for abusing and manipulating over 100 girls worldwide through online platforms, primarily Snapchat, Telegram, and Discord. He was part of a… The Record · Aug 10, 2026 High UKUSCAonline-abusechild-exploitationcybercrime
threat-intel New Zealand sanctions Russian hackers, propaganda groups over Ukraine war New Zealand has expanded its sanctions against Russia, targeting 33 individuals and entities involved in cyber activities supporting Russia's war in Ukraine. These include hackers, propaganda groups, and technology compa… The Record · Aug 10, 2026 High RUUKCAcyberattacksrussiasanctions
threat-intel Un pirate plaide coupable après 165 piratages A Canadian man, Connor Riley Moucka, has pleaded guilty to a massive cloud-based hacking and extortion scheme targeting over 165 organizations. Between February and October 2024, his group exploited stolen credentials to… ZATAZ · Aug 8, 2026 High CAUNSPcloud-securitycredential-theftextortion
threat-intel In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street Several significant cybersecurity events are unfolding this week, including a coordinated AI-powered scam network originating in Cambodia, a data breach at Amgen, a supply chain attack targeting QuickFox VPN, and a serie… SecurityWeek · Aug 7, 2026 High CHCAUSsupply-chainphishingransomware
threat-intel Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails A widespread phishing campaign, leveraging adversary-in-the-middle (AitM) techniques and residential proxies, is targeting organizations across various sectors in the U.S., Canada, and Europe. The campaign, linked to the… The Hacker News · Aug 7, 2026 High USCAEUaitmphishingmicrosoft 365
threat-intel Truck Brake Controller’s Safety Recall Doubled as Hidden Security Fix A 2024 safety recall for Bendix’s EC80 heavy-truck brake controller, initially issued to address memory corruption issues, has been revealed to contain a significant set of vulnerabilities, including a remotely accessibl… SecurityWeek · Aug 7, 2026 High USCAvulnerabilityremote-code-executiondenial-of-service
threat-intel Canadian Man Pleads Guilty in Snowflake Extortions A 26-year-old Canadian man, known online as ‘Judische’ and ‘Waifu,’ has pleaded guilty to computer fraud and conspiracy to hack and extort over 165 Snowflake customers, including major companies like TicketMaster and Nei… Krebs on Security · Aug 6, 2026 High CASOTUcybercrimedata breachextortion
threat-intel Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People A former Snowflake customer account manager, Connor Riley Moucka, pleaded guilty to computer fraud and wire fraud, admitting to stealing data and extorting victims. The breaches impacted at least 165 organizations and ex… The Hacker News · Aug 6, 2026 High CAUNinfostealerpasswordcredential
threat-intel State Department says Trump raised cyber scam compound issue with Xi U.S. President Donald Trump reportedly raised the issue of Southeast Asian cyber scam compounds with Chinese President Xi Jinping during a meeting with senior officials. State Department officials have revealed that Chin… The Record · Aug 6, 2026 High CHCALAcybercrimescamtransnational crime
threat-intel Canadian man pleads guilty to Snowflake hacks that led to 165 breaches A Canadian man, Connor Riley Moucka, has pleaded guilty to hacking Snowflake and orchestrating data breaches affecting over 165 companies, including major names like AT&T and Ticketmaster. He and his co-conspirators stol… The Record · Aug 5, 2026 High CATUUNdata breachcybercrimelogin credentials
threat-intel AI Sends Global Crime Syndicates Into Fraud Nirvana AI is dramatically accelerating and industrializing fraud operations globally, enabling organized crime syndicates to bypass traditional security measures and create highly convincing synthetic identities and impersonati… Dark Reading · Aug 5, 2026 High AUNICAaifraudkyc
threat-intel The Fourth Battlefield: The Growing Role of Cyber Operations in Global Conflict The article explores the growing intersection of cyber operations and geopolitical conflict, arguing that cyberspace has become a ‘fourth battlefield’ alongside traditional military domains. Nation-state cyber activity,… SecurityWeek · Aug 5, 2026 High CHNOUScyber espionagegeopoliticscyberwarfare
threat-intel OpenAI: Cambodian scam centers used ChatGPT to lure Indian nationals, conduct investment fraud OpenAI has disrupted a network of scam centers in Cambodia that were using ChatGPT to facilitate investment fraud targeting Indian nationals. The scammers leveraged the AI chatbot for a wide range of tasks, including cre… The Record · Aug 4, 2026 High CACHUGaiscamcybercrime
vulnerability Watchfire Controller Software A critical vulnerability (CVE-2026-5846) exists in Watchfire Controller Software, allowing a malicious user to deliver malicious firmware and gain full control of the device. Multiple versions of the software are affecte… CISA Advisories · Jul 30, 2026 Critical CVE-2026-5846UNDOCAcve-2026-5846industrial control systemsfirmware
threat-intel SE Asian Cybercriminal Syndicates Become a Global Power Southeast Asian cybercriminal syndicates have evolved into a global organized crime crisis, fueled by technological advancements and corruption. These groups, originating largely from China and operating across Southeast… Dark Reading · Jul 30, 2026 Critical CHMYCAcybercrimecryptocurrencytrafficking
vulnerability Unpatched Fastjson Vulnerability Exploited in Attacks A critical remote code execution (RCE) vulnerability in Fastjson, a popular Java JSON processing library, has been actively exploited by threat actors. The vulnerability, tracked as CVE-2026-16723, allows attackers to ex… SecurityWeek · Jul 28, 2026 Critical CVE-2026-16723USSGCArcejsonspring boot
vulnerability Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available A critical Remote Code Execution (RCE) vulnerability in Fastjson 1.x, a Java JSON library by Alibaba, is being actively exploited. Attackers are leveraging a type-resolution path to execute arbitrary code in Spring Boot… The Hacker News · Jul 25, 2026 High CVE-2026-16723USSGCArcejsonjava
threat-intel Quatre rendez-vous cyber à suivre jusqu’en octobre This article details upcoming cybersecurity events across France and Quebec, focusing on a blend of technical learning, community engagement, and offensive security practices. The events – Barbhack in Toulon, Cyberbrew i… ZATAZ · Jul 24, 2026 Medium FRCAcybersecurityoffensive securitysocial engineering
threat-intel State Department imposes visa restrictions on foreign cyber scammers The State Department is implementing new visa restrictions targeting individuals involved in foreign cybercrime networks, specifically those linked to scams like sextortion and human trafficking. This follows a broader e… The Record · Jul 23, 2026 High PHCACHcybercrimevisa restrictionssoutheast asia