threat-intel In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions Several cybersecurity events were highlighted this week, including a reassessment of the Log4j vulnerability as ‘non-finding,’ a ransomware attack against Paylogix exposing sensitive data, and US sanctions against Iranian cyber actors. Other notable developments included a credential leak study revealing thousands of a… SecurityWeek · 1d ago High IRSONElog4jcredential leakransomware
threat-intel Two Alleged ‘TeamPCP’ Hackers Arrested in Australia Two men, believed to be members of the Australian cybercrime group TeamPCP, have been arrested in Western Australia. TeamPCP is a prolific group responsible for a long-running series of software supply chain attacks, emb… Krebs on Security · 3d ago High AUSOsupply-chaincybercrimeopen-source
threat-intel Interpol's Jackal IV Disrupts West African Crime Infrastructure Interpol's Jackal IV operation successfully disrupted West African crime infrastructure networks involved in various cybercrime activities, including business email compromise, romance scams, and money laundering. The op… Dark Reading · 4d ago High ARAUCAcybercrimefraudmoney laundering
threat-intel INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown INTERPOL’s fourth iteration of Operation Jackal has resulted in the arrest of 58 individuals and the identification of 263 suspects globally, targeting West African organized crime groups involved in cyber fraud, includi… The Hacker News · 4d ago High AUARBEcybercrimefraudmoney laundering
threat-intel 58 arrested in international cybercrime crackdown Interpol and law enforcement agencies across 22 countries concluded Operation Jackal IV, resulting in the arrest of 58 individuals involved in a coordinated cybercrime operation. The operation targeted a crime-as-a-servi… The Record · 4d ago High ARITROcybercrimeromance scamsmoney laundering
threat-intel Cyber actualités ZATAZ de la semaine du 17 au 23 août 2026 This week’s cybersecurity news is dominated by data breaches, ransomware attacks, and widespread data exposures. ShinyHunters is targeting Logitech and Streamlabs, while RingCentral has experienced a massive 1.6 million… ZATAZ · Aug 22, 2026 High FRBESOransomwaredata breachvpn
threat-intel Corée du Sud : des responsables politiques visés par une fuite A South Korean private certification agency has been hacked, exposing the contact information of high-ranking political figures and highlighting a major cybersecurity risk among third-party providers. Korean authorities… ZATAZ · Aug 22, 2026 High SOKENIcyberattackdata breachidentity theft
threat-intel Using Microsoft Graph and Powershell - Risk Detection Commands, (Thu, Aug 20th) This article details how to use Microsoft Graph PowerShell commands to identify risky login attempts. By leveraging the `Get-MgRiskDetection` command, security analysts can detect logins originating from unusual location… SANS Internet Storm Center · Aug 20, 2026 Medium SOCOMArisk detectionidentity protectionmicrosoft graph
threat-intel ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud ToxicPanda 2.0, an Android banking trojan, has significantly expanded its capabilities and targeting scope, now leveraging a new set of remote commands and a sophisticated overlay-based credential theft mechanism. Simult… The Hacker News · Aug 20, 2026 High SOUNbanking trojanandroid malwarecredential theft
threat-intel US Charges 17 Iranian Hackers, Offers $10 Million Rewards for 5 of Them The US Department of Justice has charged 17 Iranian hackers associated with the Mabna Institute, a company operating on behalf of the Islamic Revolutionary Guard Corps (IRGC). These hackers targeted over 100,000 professo… SecurityWeek · Aug 19, 2026 High IRAUCAcybercrimehackingdata theft
threat-intel China-Linked Hacker Shows AI Capabilities in APAC Attack A Chinese-language hacker group has demonstrated the use of AI-powered agents in a multi-stage attack targeting government agencies in the Asia-Pacific region, with Taiwan appearing as a likely target. The attack utilize… Dark Reading · Aug 19, 2026 High CHNOTAaicyberattackthreat intelligence
threat-intel Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware Threat actors are spending heavily – nearly $7 million – on expired domains to build a criminal enterprise focused on illegal sports streaming, online gambling promotion, and malware infrastructure. These ‘dropcatch’ dom… The Hacker News · Aug 14, 2026 High VIRUAUdropcatchexpired domainsmalware
threat-intel China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud The China-linked threat actor Jewelbug, operating as a ‘hack-for-hire’ group, is engaged in both sophisticated government espionage targeting nations across the Middle East, Southeast Asia, and South Asia, and cryptocurr… The Hacker News · Aug 14, 2026 High CHMISOespionagecryptocurrencyhack-for-hire
threat-intel New Mirai variant adds stealth capabilities to notorious botnet code A new, stealthier variant of the Mirai botnet, dubbed Evooo1Bot, has been actively exploiting vulnerabilities in internet-facing hardware for over a month. This malware boasts advanced features like encrypted communicati… The Record · Aug 13, 2026 High CACHGEmiraibotnetvulnerability
threat-intel 'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft The ‘Jewelbug’ APT group, operating out of China, balances state-sponsored espionage and cryptocurrency theft, targeting governments, military organizations, and corporations globally. They utilize a custom command-and-c… Dark Reading · Aug 13, 2026 High CHMISOcyber espionagecryptocurrency theftnation-state
threat-intel Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA The Gunra ransomware gang, leveraging leaked Conti code and exploiting vulnerabilities in Fortinet products, is expanding its operations through a RaaS affiliate program and successfully bypassing defenses, including MFA… Dark Reading · Aug 11, 2026 High CVE-2024-55591CVE-2025-24472SOBRCAransomwareraasfortinet
ransomware Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks The Gunra ransomware group, linked to state-sponsored actors, is aggressively targeting critical infrastructure and organizations globally, leveraging vulnerabilities in Fortinet and Schneider Electric appliances to gain… The Hacker News · Aug 11, 2026 High CVE-2024-5559CVE-2025-24472SOBRSPransomwarevulnerabilitysupply-chain
threat-intel FBI, South Korea warn of Gunra ransomware gang targeting critical infrastructure The FBI and South Korea’s government have issued a cybersecurity advisory warning of the Gunra ransomware gang, which is exploiting vulnerabilities in Fortinet firewalls to target critical infrastructure organizations gl… The Record · Aug 10, 2026 High CVE-2024-55591CVE-2025-24472SONOransomwarevulnerabilitysupply-chain
threat-intel Canadian Man Pleads Guilty in Snowflake Extortions A 26-year-old Canadian man, known online as ‘Judische’ and ‘Waifu,’ has pleaded guilty to computer fraud and conspiracy to hack and extort over 165 Snowflake customers, including major companies like TicketMaster and Nei… Krebs on Security · Aug 6, 2026 High CASOTUcybercrimedata breachextortion
threat-intel State Department says Trump raised cyber scam compound issue with Xi U.S. President Donald Trump reportedly raised the issue of Southeast Asian cyber scam compounds with Chinese President Xi Jinping during a meeting with senior officials. State Department officials have revealed that Chin… The Record · Aug 6, 2026 High CHCALAcybercrimescamtransnational crime