threat-intel Congo : un pirate revendique 110 000 données e-Solde A hacker is claiming to possess 110,000 records linked to e-Solde, a Congolese government portal for public servants, containing sensitive data like identities, contacts, and salary information. The hacker, known for previous data sales, has previously claimed to have compromised the chassez discount website and boasts… ZATAZ · 2d ago High DEPHBUdata breachgovernment datacybercrime
threat-intel Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services A pro-Russian hacker group, Server Killers, claimed responsibility for a sustained cyberattack targeting multiple Norwegian government digital services. The attack, initiated following Norway’s increased security coopera… SecurityWeek · 3d ago High NORUDEcyberattackrussiacyberwar
threat-intel Des bases de joueurs européens de casino diffusées sur un forum pirate A hacker is offering for sale databases containing personal information and deposit details of tens of thousands of European casino players. The seller claims to have data from casinos in several European countries, incl… ZATAZ · Aug 21, 2026 High ITDEFRdata breachcasinofraud
threat-intel US Charges 17 Iranian Hackers, Offers $10 Million Rewards for 5 of Them The US Department of Justice has charged 17 Iranian hackers associated with the Mabna Institute, a company operating on behalf of the Islamic Revolutionary Guard Corps (IRGC). These hackers targeted over 100,000 professo… SecurityWeek · Aug 19, 2026 High IRAUCAcybercrimehackingdata theft
threat-intel Cl0p Ransomware Group Names Over 40 Victims of PTC Windchill Campaign The Cl0p ransomware group has publicly named over 40 organizations allegedly targeted in a campaign exploiting a vulnerability in PTC’s Windchill PLM platform. The group gained unauthorized access to sensitive data, incl… SecurityWeek · Aug 19, 2026 High CVE-2026-12569DEvulnerabilityransomwaredata breach
threat-intel Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation Four critical vulnerabilities – affecting macOS, SharePoint, vCenter, and IKE – are currently being actively exploited in the wild. These flaws have led to widespread attacks, including the deployment of ransomware and b… The Hacker News · Aug 19, 2026 Critical CVE-2026-65400CVE-2026-55040CVE-2026-59310DEUSTRvulnerabilitycyberattackransomware
threat-intel Berlin cuts two state ministries off government network after security breach Berlin authorities have isolated two state ministries from the city's government network following a suspected security breach. The exact details of the attack, including the perpetrators and stolen data, remain unknown,… The Record · Aug 18, 2026 Medium DEsecurity breachnetwork isolationgovernment systems
threat-intel One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025 A single server has been systematically scraping data from Salesforce and ServiceNow customer portals since March 2025, targeting industries including telecoms, finance, and public sector. The attacker, operating under t… The Hacker News · Aug 18, 2026 High DEguest_accessdata_scrapingui_api
threat-intel Investigation of banking hack leads to arrests in Germany, Brazil A coordinated investigation in Germany and Brazil has resulted in arrests and asset seizures linked to a €30 million banking hack. The hackers exploited a vulnerability in a payment provider to drain funds from German ac… The Record · Aug 14, 2026 High DEBRESbankingcybercrimemoney laundering
vulnerability VMware vCenter : des serveurs français compromis A critical vulnerability, CVE-2026-59310, affecting VMware vCenter has been actively exploited since August 3rd, with over 360 compromised IP addresses across 47 countries, including a significant number in France. The v… ZATAZ · Aug 13, 2026 High CVE-2026-59310CVE-2026-47876CVE-2026-59309DEUSTRvulnerabilityexploitreverse shell
threat-intel Critical VMware vCenter Vulnerability in Attackers’ Crosshairs A critical vulnerability (CVE-2026-59310) in VMware vCenter is being actively exploited by an advanced persistent threat (APT) group, leading to remote code execution and persistent access for attackers. The vulnerabilit… SecurityWeek · Aug 13, 2026 Critical CVE-2026-59310DEUSTRvulnerabilityremote code executionssh
threat-intel Long-running Data Theft Campaign Targeting Salesforce, ServiceNow The "City-Forum" campaign, active since March 2025, has seen a threat actor targeting Salesforce and ServiceNow instances with custom tools to steal data. Unlike traditional attacks relying on publicly available tools, t… Dark Reading · Aug 12, 2026 High USCAGBsalesforceservicenowguest access
threat-intel Steam : une fuite chez CEVA expose des clients européens A data breach at CEVA Logistics, a logistics provider for Steam, has exposed customer delivery data, including names, addresses, phone numbers, and order details. This exposes Steam users, particularly in Europe, to targ… ZATAZ · Aug 11, 2026 High DEdata breachphishingsupply chain
Des cibles françaises au cœur d’une plateforme cybercriminelle A ZATAZ investigation has uncovered a list of French organizations targeted by a cybercriminal group, Krybit, who are aggressively recruiting affiliates through a platform offering a lucrative 80% revenue split. The grou… ZATAZ · Aug 7, 2026 FRMXUSransomwarerecruitmentcybercrime
supply-chain Dutch retailer De Bijenkorf warns customer data may be exposed after cyber incident De Bijenkorf, a Dutch luxury department store chain, is investigating a cyber incident that may have exposed customer data after a logistics provider was compromised. While payment details were not affected, customer inf… The Record · Aug 5, 2026 Medium NLPLDEsupply chaincyber incidentretail
vulnerability Siemens Desigo CC A stack-based buffer overflow vulnerability in Siemens Desigo CC versions V7, V8, and V9 (prior to V9.0.1) has been identified, potentially allowing remote code execution. Siemens has released patches and recommends upda… CISA Advisories · Jul 28, 2026 High CVE-2025-15467DEstack-buffer-overflowcwe-787open ssl
vulnerability Siemens SIMATIC S7-PLCSIM Advanced A vulnerability in Siemens SIMATIC S7-PLCSIM Advanced could allow an unauthenticated attacker to cause a denial-of-service condition by overwhelming the application with high-volume multicast network traffic. Siemens is… CISA Advisories · Jul 28, 2026 High CVE-2026-54429DEindustrial control systemscve-2026-54429denial of service
threat-intel Europe's Multilingual Reality Exposes AI Security Gaps Europe faces a unique security challenge due to its multilingual landscape and the resulting inconsistencies in AI safety and security across numerous languages. While many AI models can process text in dozens of languag… Dark Reading · Jul 24, 2026 High EUGESPaisecuritymultilingual
threat-intel Russian State-Supported Cyber Actors Conduct Phishing Campaign Targeting Users of Zimbra Collaboration Suite A group of Russian state-supported cyber actors, known as LAUNDRY BEAR, has been aggressively targeting Western organizations using the Zimbra Collaboration Suite (ZCS) since July 2025, seeking to gather sensitive inform… CISA Advisories · Jul 23, 2026 High CVE-2025-66376MOPOSPphishingsupply-chainmalware
threat-intel Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA German and US law enforcement dismantled Kratos, a widely used criminal phishing kit, after arresting the developer and taking down over 200 servers. The kit, used by approximately 1,800 customers, was designed to steal… The Hacker News · Jul 22, 2026 High DEUSIDphishingcredential theftmfa bypass