threat-intel TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor Microsoft has disclosed a new ClickFix variant, TerminalFix, that uses fake Cloudflare CAPTCHAs to trick users into executing malicious PowerShell commands via Windows Terminal or PowerShell. The campaign employs a multi-stage attack leveraging DLL sideloading, reconnaissance, and a reverse-tunnel backdoor to gain pers… The Hacker News · 15h ago High clickfixdll sideloadingreverse tunnel
threat-intel Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network Berlin's state government is facing an extortion attempt following a data breach of its state network. Rhysida, a threat group, is suspected of stealing 5.79 terabytes of data, including maps and geodata, and the group g… The Hacker News · 2d ago High CVE-2020-1472GEUKdata breachransomwaresupply-chain
threat-intel Researcher shows how Claude Code can be tricked simply by asking it to summarize a website A researcher demonstrated a vulnerability in the Claude Code AI model, showing that it can be tricked into generating malicious code simply by asking it to summarize a website. This highlights a potential risk in using A… The Register · 2d ago Medium IRCHaiprompt injectioncybersecurity
threat-intel PaperCut warns of hackers using printer management software flaw in attacks PaperCut, a popular printer management software provider, has warned customers of a serious vulnerability being actively exploited by cybercriminals. The vulnerability, affecting their PaperCut NG and MF software, has le… The Record · 2d ago Critical CVE-2026-82078CVE-2026-81578IRvulnerabilityprintercybersecurity
threat-intel In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions Several cybersecurity events were highlighted this week, including a reassessment of the Log4j vulnerability as ‘non-finding,’ a ransomware attack against Paylogix exposing sensitive data, and US sanctions against Irania… SecurityWeek · 2d ago High IRSONElog4jcredential leakransomware
threat-intel ATF Confirms Cyber Incident After Ransomware Group Claims Attack The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) suffered a cybersecurity incident, confirmed by the agency itself, and attributed to the Qilin ransomware group. While the incident didn't impact the agency's… SecurityWeek · 2d ago Medium ransomwarezero-daydouble-extortion
threat-intel CISA: Most exploited vulnerabilities should have been eradicated decades ago This article highlights a concerning trend: many vulnerabilities that should have been addressed long ago are still being actively exploited. The Register points to a situation where tech companies are now selling soluti… The Register · 2d ago Medium CHIRvulnerabilityphishingransomware
supply-chain Shai-Hulud hackers: two men charged over TeamPCP’s global supply chain crime spree that hit OpenAI, and thousands more Two men from Western Australia have been charged in connection with TeamPCP, a cybercriminal group responsible for a global supply-chain hacking campaign that targeted over 1000 organizations, including OpenAI and the Eu… Graham Cluley · 2d ago High AUsupply chainopen sourcemalware
vulnerability Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server A critical security vulnerability in cPanel and WebHost Manager (WHM) allows an authenticated user adding parked or addon domains to execute code as the root user, potentially leading to full server control. While the vu… The Hacker News · 2d ago Critical CVE-2026-65643CVE-2026-58048CVE-2026-58047cpanelvulnerabilityroot
vulnerability PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions PaperCut has confirmed a zero-day vulnerability is being actively exploited in its print management software, impacting all versions of NG and MF. The company released a patch and urges users to restrict internet access… The Hacker News · 2d ago Critical CVE-2023-27350RUzero-dayprint managementvulnerability
threat-intel Print management outfit PaperCut is under 0-day attack, and it’s drawing customers’ blood PaperCut, a print management software company, is experiencing a zero-day attack, leading to potential data breaches and financial harm for its customers. The attack is exploiting a vulnerability within their software, a… The Register · 2d ago High RUCHzero-dayvulnerabilityphishing
threat-intel Australian cops cuff alleged TeamPCP masterminds This article covers a range of cybersecurity and technology news stories, including a takedown of Iranian propaganda sites, a security patch for a vulnerable SharePoint instance, and a report on Joomla extension vulnerab… The Register · 2d ago Medium IRsecuritycybersecurityj2ee
threat-intel 2,3 millions de détenteurs crypto français ciblés A ZATAZ report has uncovered two separate cybercrime listings offering access to a database of 2.3 million French cryptocurrency holders, containing sensitive information like identities, contact details, addresses, and… ZATAZ · 3d ago High FRcryptokidnappingdata-breach
threat-intel Omarchy distro gains serious backing This article is a collection of security and technology news snippets from The Register. It covers a range of topics including a debate within the Debian Linux community regarding AI code, a Russian phishing campaign mim… The Register · 3d ago Medium RUdebianransomwarephishing
threat-intel TeamPCP : deux suspects arrêtés en Australie TeamPCP, a sophisticated cybercrime group, emerged in late 2025 and escalated to supply chain attacks in early 2026. Two suspects were arrested in Australia in August 2026, linked to a global operation involving data th… ZATAZ · 3d ago High AUsupply chainransomwarevulnerability
threat-intel ATF responds to 'major' cybersecurity incident after ransomware gang's claims This article reports on a significant cybersecurity incident involving a ransomware gang claiming to have exploited a vulnerability in on-prem Microsoft SharePoint, leading to a response from the US Department of Justice… The Register · 3d ago High IRransomwarevulnerabilitysharepoint
threat-intel ThreatsDay: 296K IoT Botnet, 100+ Water Systems Targeted, SharePoint RCE Chain + 27 New Stories This week’s ThreatsDay bulletin highlights a diverse range of cyber threats, including a 296,000-device IoT botnet, social engineering attacks targeting security teams, and a growing number of credential-stealing malware… The Hacker News · 3d ago High CVE-2026-55040CVE-2026-63520RUsocial engineeringphishingcredential theft
threat-intel Chinese and Russian spies stepping up cyberattacks, German companies report German companies are increasingly experiencing cyberattacks, primarily attributed to foreign intelligence services, particularly from China and Russia. The number of incidents linked to these agencies has significantly r… The Record · 3d ago High CHRUIRcyberattackintelligencedata breach
threat-intel Australia Arrests 2 Alleged TeamPCP Hackers Australian authorities have arrested two men linked to the TeamPCP cybercrime group, a notorious organization responsible for stealing over 500,000 corporate credentials and causing significant financial damage. The grou… SecurityWeek · 3d ago High AUsupply-chaincredential-theftcybercrime
threat-intel DOJ firearms agency says hackers breached system containing investigation targets The Bureau of Alcohol, Tobacco, and Firearms (ATF), a part of the Department of Justice, suffered a cyberattack that exposed information about ongoing investigations. The attack was carried out by the Qilin ransomware ga… The Record · 3d ago High ransomwarecyberattackjustice department