threat-intel Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network Berlin's state government is facing an extortion attempt following a data breach of its state network. Rhysida, a threat group, is suspected of stealing 5.79 terabytes of data, including maps and geodata, and the group gained initial access through compromised credentials and exploiting vulnerabilities like Zerologon.… The Hacker News · 1d ago High CVE-2020-1472GEUKdata breachransomwaresupply-chain
data-breach 77 Diamonds : 690 000 e-mails revendiqués en fuite A shadowy hacker is claiming to possess a massive database of 77 Diamonds customer data, including nearly 700,000 email addresses, phone numbers, and physical addresses. The leaked information – encompassing customer ord… ZATAZ · 2d ago High UKdata breachluxuryfraud
threat-intel You Need Cyber Deception for OT Operational Technology (OT) systems present a significant challenge for cybersecurity due to the lack of traditional security telemetry and the difficulty in tracing attacker activity after they move from IT networks int… Dark Reading · 2d ago High UKcyber deceptionot securitythreat intelligence
threat-intel Cyberattaque : des hackers font tomber des réseaux électriques ! A cyberattack attributed to Iranian-linked actors has reportedly disabled a small British power generation facility for four days, marking the first time a complete shutdown of such an installation has occurred in the UK… ZATAZ · 2d ago High IRUKUNcyberattackcritical infrastructureiran
threat-intel Chinese Routers Sold Worldwide Contain Backdoors Chinese router manufacturer Shenzhen Zhibotong Electronics Co. Ltd. (ZBT) has been selling routers containing multiple backdoors, some dating back a decade, to white-label distributors worldwide. These backdoors, includi… Dark Reading · 3d ago High CHUSRUbackdoorsupply-chainespionage
threat-intel Cyberattack on Manchester Airports Group exposes data of 8.7 million customers Manchester Airports Group (MAG), operating three major UK airports, suffered a cyberattack exposing data of approximately 8.7 million customers, including email addresses, vehicle registrations, and postcodes. The attack… The Record · 3d ago Medium UKcyberattackdata breachcustomer data
threat-intel Iran-linked hackers expand infrastructure across Europe and Middle East, report says Iranian-linked hackers, known as Tortoiseshell, are expanding their operations across Europe and the Middle East, including establishing infrastructure in Britain. The group, associated with Iran's Islamic Revolutionary… The Record · 4d ago High UKBESAiranaptssh tunnel
threat-intel NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions A new phishing toolkit called NovaCookies is being used to steal Microsoft 365 sessions by abusing legitimate Docusign notifications and mimicking genuine email shares. Developed by an adversary-in-the-middle (AitM) oper… The Hacker News · 4d ago High USUKCAphishingaitmmicrosoft 365
threat-intel INTERPOL Operation Jackal IV Arrests 58, Identifies 263 in Global Cyber Fraud Crackdown INTERPOL’s fourth iteration of Operation Jackal has resulted in the arrest of 58 individuals and the identification of 263 suspects globally, targeting West African organized crime groups involved in cyber fraud, includi… The Hacker News · 4d ago High AUARBEcybercrimefraudmoney laundering
threat-intel U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches The U.S. Treasury has imposed fresh sanctions on nearly 60 Iran-linked entities, including individuals and vessels, as part of "Operation Economic Outcast." These sanctions target a cyber group affiliated with Iran's Min… The Hacker News · 5d ago High IRUKsanctionscyber espionagecritical infrastructure
threat-intel Ukraine to give Britain access to battlefield data to train AI Ukraine is sharing a massive dataset of battlefield imagery and video with the United Kingdom to train AI systems for defense purposes. This partnership, part of a broader effort to utilize war-generated data, will allow… The Record · 5d ago Medium UKUNRUaibattlefield dataukraine
threat-intel UK government seeks powers to secretly block risky tech suppliers The UK government is seeking new powers to secretly block technology suppliers deemed to pose a national security risk, particularly to critical sectors like energy, water, and transport. These powers, modeled after thos… The Record · 5d ago High UKnational securitycybersecurityvendor risk
threat-intel Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows The Mirage2FA campaign, a commercial phishing-as-a-service toolkit, has impacted approximately 4,532 organizations, primarily in the US, by exploiting legitimate Microsoft 365 login flows and bypassing two-factor authent… The Hacker News · 5d ago High USINSGphishingmicrosoftmfa
threat-intel US sanctions Iranian cyber actors as UK discloses power plant attack The U.S. has sanctioned several Iranian nationals linked to a hacking operation targeting U.S. critical infrastructure, following a recent cyberattack on a small power plant in the UK. This escalation highlights Iran's c… The Record · 5d ago High IRUNUKcyberattackcritical infrastructureiran
threat-intel Iran-linked cyberattack shut down a UK power plant A cyberattack linked to Iran has successfully taken down a UK power plant control system. The attack exploited vulnerabilities in the system, allowing attackers to gain unauthorized access and disrupt operations. This hi… The Register · 6d ago High UKIRcyberattackcritical infrastructureiran
threat-intel Iran-Linked Hackers Shut Down UK Power Plant for Four Days Iranian-linked hackers successfully shut down a British power plant for four days, raising significant concerns about the escalating cyber threat landscape and the vulnerability of UK critical infrastructure. The inciden… SecurityWeek · 6d ago High UKIRUSirancyberattackcritical infrastructure
threat-intel UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit The Chinese-speaking cybercrime group UAT-10147 is aggressively targeting web servers globally, leveraging AI-powered tools to automate intrusion operations and establish persistent access. They utilize a new cross-platf… The Hacker News · 6d ago High CVE-2022-0995CVE-2021-3156CVE-2015-5287CHBRBOairansomwaremalware
threat-intel Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight Multiple banking trojans – Manic, Grandoreiro, and ToxicPanda 2.0 – are actively targeting users worldwide, with a particular focus on financial institutions in Europe, Latin America, and increasingly, Russia. These troj… SecurityWeek · Aug 22, 2026 High BRUKRUbanking trojanmobile malwaresupply chain
threat-intel Russian snoops add OAuth abuse to targeted phishing campaigns Google has identified three distinct groups of Russian cyber-spies – UNC6293, UNC7005, and UNC5976 – that are aggressively targeting individuals in academia, defense, government, and think tanks across Europe and the US.… The Register · Aug 21, 2026 High RUUKWEphishingoathsocial engineering
threat-intel Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts Three distinct clusters of suspected Russian cyber espionage groups – UNC6293, UNC7005, and UNC5976 – are leveraging legitimate authentication flows to target individuals in academia, aerospace/defense, governments, and… The Hacker News · Aug 20, 2026 High UKARRUoauthapp passworddevice linking