threat-intel Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor A cyber espionage campaign, dubbed Operation QUICSILVER, targeting Myanmar's government and IT sector is being conducted by a China-linked threat actor. The campaign uses a graduation ceremony lure to deliver a Go backdo… The Hacker News · 6d ago High MYMOPAcyber espionagebackdoorkernel-mode
threat-intel Corée du Sud : des responsables politiques visés par une fuite A South Korean private certification agency has been hacked, exposing the contact information of high-ranking political figures and highlighting a major cybersecurity risk among third-party providers. Korean authorities… ZATAZ · Aug 22, 2026 High SOKENIcyberattackdata breachidentity theft
threat-intel Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight Multiple banking trojans – Manic, Grandoreiro, and ToxicPanda 2.0 – are actively targeting users worldwide, with a particular focus on financial institutions in Europe, Latin America, and increasingly, Russia. These troj… SecurityWeek · Aug 22, 2026 High BRUKRUbanking trojanmobile malwaresupply chain
threat-intel Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it US Homeland Security cybersecurity officials are warning users of TrueConf, a video conferencing tool developed in Russia, to urgently patch the software due to a critical vulnerability that could allow attackers to remo… The Register · Aug 21, 2026 Critical CVE-2026-72529CVE-2026-72530RUUSvulnerabilitycybersecurityrussia
threat-intel Checker max cible les portefeuilles Solana en masse Checker Max, a tool for identifying hidden Solana assets, has been advertised on a Russian criminal forum. The tool analyzes up to 1,000 Solana wallet addresses at a time, offering a significant capability for cyber inte… ZATAZ · Aug 21, 2026 Medium RUsolanablockchainthreat intelligence
threat-intel Russian network monitoring firm confirms cyberattack claimed by pro-Ukraine hackers A Russian network monitoring firm, Microolap, confirmed that hackers claiming to be pro-Ukraine groups had attempted to breach its systems, but denied the attackers gained access to sensitive data or its core infrastruct… The Record · Aug 21, 2026 Medium RUrussiacyberattackukraine
threat-intel C.Hunters, un service pirate testé pour la France A Russian-language pirate service called C.Hunters, initially announced in 2025, is now generating interest in France in 2026. The service offers to conduct calls in English with various voices, targeting sectors like ba… ZATAZ · Aug 21, 2026 Medium RUpirate-servicerussian-threatfraud
threat-intel Encore, encore, encore … un nouveau groupe ransomware : SovCali A new ransomware group, SovCali, has emerged, claiming to possess data from Lucid Motors and threatening to release 35 gigabytes of stolen information unless a private negotiation is established. SovCali operates by offe… ZATAZ · Aug 21, 2026 High RUransomwaretordata breach
vulnerability CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities The US Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to federal agencies regarding two critical vulnerabilities in TrueConf, a secure video conferencing platform. Threat actors, spe… SecurityWeek · Aug 21, 2026 High CVE-2026-72529CVE-2026-72530RUBYvulnerabilitypatchtrueconf
threat-intel Russian snoops add OAuth abuse to targeted phishing campaigns Google has identified three distinct groups of Russian cyber-spies – UNC6293, UNC7005, and UNC5976 – that are aggressively targeting individuals in academia, defense, government, and think tanks across Europe and the US.… The Register · Aug 21, 2026 High RUUKWEphishingoathsocial engineering
threat-intel Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts Three distinct clusters of suspected Russian cyber espionage groups – UNC6293, UNC7005, and UNC5976 – are leveraging legitimate authentication flows to target individuals in academia, aerospace/defense, governments, and… The Hacker News · Aug 20, 2026 High UKARRUoauthapp passworddevice linking
threat-intel Ransomware crook poses as recovery firm to steal payments from fellow extortionists A Russian threat actor is impersonating Signal support to conduct phishing attacks targeting other ransomware groups. The goal is to steal payments intended for extortion activities, highlighting a concerning trend of or… The Register · Aug 20, 2026 Medium RUphishingransomwaresocial engineering
threat-intel Threat Actor Hacks 14,000 IP Cameras in Ukraine and Russia A threat actor, dubbed Operation CameraSwarm, has compromised over 14,000 Dahua IP cameras across Ukraine and Russia through a sophisticated campaign utilizing brute-force attacks and exploiting multiple vulnerabilities… SecurityWeek · Aug 20, 2026 High CVE-2021-33044CVE-2021-33045RUUKip camerasvulnerabilitybackdoor
threat-intel Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices Manic, a sophisticated Android malware, is actively targeting financial institutions and government services across Ukraine, Russia, Central and Western Europe, and the U.K. This malware combines banking malware capabili… The Hacker News · Aug 20, 2026 High UKRUCEandroidbanking malwarespyware
threat-intel AI-Assisted Tool Helped Secure Satellite Communication System After 2022 Russian Hacking Atalanta has developed ‘Argo,’ an AI-assisted tool designed to proactively identify vulnerabilities in software and internet-connected systems, specifically to bolster defenses against ongoing cyber threats from Russia a… SecurityWeek · Aug 20, 2026 High RUIRaivulnerabilitycybersecurity
threat-intel Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P Researchers at Hunt.io have uncovered a campaign targeting over 14,500 Dahua IP cameras, leveraging credential attacks and two authentication bypass vulnerabilities (CVE-2021-33044 and CVE-2021-33045) to gain unauthorize… The Hacker News · Aug 19, 2026 High CVE-2021-33044CVE-2021-33045CVE-2024-39943UKRUcredential attackauthentication bypassp2p
threat-intel StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data A sophisticated cybercrime operation, dubbed StopAndProtect, is leveraging over 6,000 compromised WordPress sites globally to distribute malware, steal data, and deploy ransomware. The attackers use a multi-stage attack… The Hacker News · Aug 19, 2026 High USRUINwordpressmalwareransomware
threat-intel Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18) A significant campaign, dubbed “TheHatman” and “FortiBleed,” is targeting organizations with leaked credentials, primarily leveraging password spraying against Fortinet and Sophos devices. TheHatman, an actor offering st… Palo Alto Unit 42 · Aug 18, 2026 High RUcredential theftpassword sprayingfortigate
threat-intel Hackers target Ukrainian agency managing assets seized from sanctioned Russians Ukraine’s Asset Recovery and Management Agency (ARMA), responsible for seizing assets from sanctioned Russians, has been targeted by a cyberattack as it prepares to select a manager for IDS Ukraine, a major bottled water… The Record · Aug 18, 2026 High UKRUcyberattackrussiasanctions
threat-intel AI-Driven Vulnerability Surge Breaks the Traditional Patching Model Rapid7’s analysis reveals a significant shift in the cybersecurity landscape driven by AI, leading to a dramatic increase in disclosed and exploited vulnerabilities. The traditional patching model is becoming obsolete du… SecurityWeek · Aug 18, 2026 High CHRUIRaivulnerabilitiespatching