threat-intel Latvian officials resign after cyberattack exposes data on 1.2 million people A major cyberattack targeting Latvia’s Road Traffic Safety Directorate (CSDD) has exposed data on approximately 1.2 million people and 200,000 businesses, prompting political turmoil and calls for the agency’s leadership to resign. The attack involved a complex intrusion exploiting a vulnerability in a CSDD system, and… The Record · Aug 19, 2026 High LVcyberattackdata breachgovernment
vulnerability MikroTik RouterOS A critical vulnerability (CVE-2026-14227) exists in MikroTik RouterOS, allowing an attacker with low-privilege API access to extract the router's WireGuard private key and decrypt VPN traffic. This could enable full VPN… CISA Advisories · Jul 30, 2026 Critical CVE-2026-14227LVvulnerabilitywireguardcve-2026-14227
threat-intel Hackers used Telegram phishing campaign to target exiled Belarusian activist Hackers are using highly personalized Telegram phishing campaigns targeting exiled Belarusian activists and users in Russia and Kazakhstan. The campaign leverages private messages and tailored fake login pages to steal T… The Record · Jul 27, 2026 High KZRUBYphishingaccount-hijackingtelegram
threat-intel ‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing ClickLock Stealer, a new macOS malware, bypasses macOS security through social engineering and aggressive process killing to steal sensitive data, including browser data, cryptocurrency wallets, and password manager info… SecurityWeek · Jul 16, 2026 High DEFRITmacossocial engineeringprocess killing
ransomware No Manners Here: The Ruthless Rise of The Gentlemen Ransomware The Gentlemen, a rapidly growing Ransomware-as-a-Service (RaaS) program, has significantly increased its victim count in 2026, becoming the second most active RaaS program globally. Leveraging a 90% affiliate payout stru… Palo Alto Unit 42 · Jul 10, 2026 High CVE-2024-55591CVE-2025-32433CVE-2025-33073USCAGBransomware-as-a-serviceracksedge-device-attack
threat-intel Latvian forestry company still restoring systems weeks after ransomware attack A Latvian state-owned forestry company, LVM, is still recovering from a ransomware attack that disrupted its systems for weeks. The attack, attributed to a foreign, financially motivated ransomware group, led to the leak… The Record · Jul 9, 2026 High LVransomwarecyberattackdata breach
vulnerability New Gogs zero-day flaw lets hackers get remote code execution A zero-day vulnerability (CVE-2024-39933) has been identified in Gogs, a self-hosted Git service, allowing authenticated attackers to execute remote code execution (RCE). The flaw, initially discovered by Jonah Burgess,… BleepingComputer · May 28, 2026 High CVE-2024-39933CVE-2024-39932CVE-2026-26194USCNJPzero-dayrcegit
threat-intel First VPN Dismantled in Global Takedown Over Use by 25 Ransomware Groups A global operation, dubbed Operation Saffron, led by France and the Netherlands, successfully dismantled the First VPN service, a virtual private network specifically designed for criminal use. The service was utilized b… The Hacker News · May 22, 2026 High USFRNLvpnransomwareanonymity