vulnerability Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller Researchers discovered a vulnerability, dubbed ‘Certighost,’ allowing low-privilege Active Directory users to impersonate Domain Controllers by obtaining certificates. The flaw leverages a chase mechanism within Active D… The Hacker News · Jul 24, 2026 High CVE-2026-54121active directorycertificate authoritykerberos
threat-intel Europe's Multilingual Reality Exposes AI Security Gaps Europe faces a unique security challenge due to its multilingual landscape and the resulting inconsistencies in AI safety and security across numerous languages. While many AI models can process text in dozens of languag… Dark Reading · Jul 24, 2026 High EUGESPaisecuritymultilingual
threat-intel Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks CERT-UA has warned of a new phishing campaign led by the UAC-0099 threat cluster (linked to Russia) utilizing a malicious Notepad++ plugin to deliver the MATCHBOIL.V2 malware. The campaign begins with a phishing email co… The Hacker News · Jul 24, 2026 High CVE-2025-66376CVE-2026-8496CVE-2025-49113RUUKALphishingmalwarevulnerability
threat-intel Multiples vulnérabilités dans le noyau Linux d'Ubuntu (24 juillet 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Ubuntu. Some of these vulnerabilities allow for privilege escalation, data confidentiality breaches, and denial of service attacks. The vulnerabilities… CERT-FR · Jul 24, 2026 High CVE-2022-49803CVE-2022-49961CVE-2022-50073linuxkernelvulnerability
vulnerability Multiples vulnérabilités dans le noyau Linux de Red Hat (24 juillet 2026) Multiple vulnerabilities have been discovered in the Red Hat Linux kernel. Some of these vulnerabilities allow an attacker to cause remote code execution, privilege escalation, and a denial-of-service attack. These vulne… CERT-FR · Jul 24, 2026 High CVE-2024-46738CVE-2024-50076CVE-2025-39982linuxkernelvulnerability
threat-intel Oracle drops 1,449 security patches like it's the new normal This article is a collection of security-related news snippets from The Register. It covers a range of topics including security patches from Oracle, advancements in AI hardware (AMD vs Nvidia), phishing attacks targetin… The Register · Jul 23, 2026 Medium CVE-2026-47056CVE-2026-60217CVE-2026-61211securityvulnerabilitiesphishing
threat-intel Is Patching Dead? Vulnerability Management in the Post-Mythos Era The U.S. government is deploying a new AI-powered system, Gold Eagle, to proactively identify and remediate software vulnerabilities across federal agencies and critical infrastructure. This initiative is driven by the i… SecurityWeek · Jul 23, 2026 High USvulnerabilityaicybersecurity
threat-intel Talking smack about a doctor got him access to private medical files This article is a collection of security and technology news snippets. It highlights a vulnerability impacting Joomla websites due to extension bugs, a Russian phishing campaign mimicking Signal support, and Microsoft's… The Register · Jul 23, 2026 Medium RUIRvulnerabilityphishingransomware
vulnerability Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access Check Point has released security updates to address a critical vulnerability (CVE-2026-16232) in its SmartConsole login process, which allows unauthenticated remote attackers to gain full administrative access. This fla… The Hacker News · Jul 23, 2026 Critical CVE-2026-16232CVE-2026-62144CVE-2026-62145vulnerabilityauthenticationremote access
vulnerability Multiples vulnérabilités dans les produits Mitel (23 juillet 2026) Multiple vulnerabilities have been discovered in Mitel products, allowing attackers to execute arbitrary code remotely and inject malicious code via XSS. These vulnerabilities affect various versions of MiCollab and Open… CERT-FR · Jul 23, 2026 High vulnerabilityremote code executionxss
vulnerability Multiples vulnérabilités dans Oracle Database Server (23 juillet 2026) Multiple vulnerabilities have been discovered in Oracle Database Server, potentially leading to data integrity compromise, data confidentiality breaches, and remote denial-of-service attacks. These vulnerabilities affect… CERT-FR · Jul 23, 2026 High CVE-2025-7962CVE-2026-28387CVE-2026-28388oracledatabasevulnerability
threat-intel Swiss train maker Stadler refuses Everest $12 million ransomware demand Swiss train manufacturer Stadler Rail refused a $12.3 million ransomware demand from the Russian-speaking group Everest after cybercriminals stole technical data from a supplier’s file-sharing platform. The incident did… The Record · Jul 22, 2026 High SWRUransomwaredata breachsupply chain
threat-intel Fake Bahrain Alert App Deploys Android Surveillance Malware A malicious Android application, dubbed ‘BH Alert,’ is being distributed through fake Google Play sites mimicking Bahraini government entities to deliver a four-stage surveillance platform. The app leverages users' trust… Dark Reading · Jul 22, 2026 High BHKUandroidspywaremalware
threat-intel Japanese food logistics giant recovers as extortion group claims cyberattack Japanese food logistics giant Nichirei Logistics Group has recovered from a cyberattack that disrupted food deliveries nationwide. RansomHouse, a group known for threatening to leak stolen data rather than encrypting it,… The Record · Jul 22, 2026 High JPcyberattackdata breachransomware
threat-intel When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover A recent attack against the author’s wireless account highlights a growing trend of coordinated identity attacks, moving beyond simple authentication failures. The attacker leveraged social engineering, stolen credential… SecurityWeek · Jul 22, 2026 High sim swapidentity theftsocial engineering
threat-intel Why Modern SOCs Need Multi-Layered Detections The cybersecurity landscape is rapidly changing, with attackers increasingly bypassing traditional endpoint defenses using techniques like credential theft and DLL side-loading. To combat this, security teams need to mov… The Hacker News · Jul 22, 2026 High ndrnetwork detection and responsethreat intelligence
vulnerability Multiples vulnérabilités dans les produits HPE Aruba Networking (22 juillet 2026) Multiple vulnerabilities have been discovered in HPE Aruba Networking products, allowing an attacker to execute arbitrary code, compromise data confidentiality, and bypass security policies. These vulnerabilities affect… CERT-FR · Jul 22, 2026 High CVE-2026-35387CVE-2026-44878CVE-2026-44879vulnerabilitypatchsecurity
threat-intel Captive Portal Detection, (Tue, Jul 21st) This article details how operating systems and browsers detect captive portals – the splash screens that appear when connecting to public Wi-Fi networks. Instead of intercepting old non-TLS homepages, these systems now… SANS Internet Storm Center · Jul 21, 2026 Medium captive portalwifinetwork detection
threat-intel Taiwan to slow mobile data during national resilience drills Taiwan is conducting a national resilience drill to simulate communication disruptions, primarily targeting mobile data services, to prepare its citizens for potential network outages during emergencies, especially in th… The Record · Jul 21, 2026 Info TWresiliencecommunicationsdisruption
threat-intel Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs Researchers at Simon Fraser University, the Chinese University of Hong Kong, Shandong University, and QAX have discovered a significant vulnerability in five popular open-source Android mobile agent frameworks. These age… The Hacker News · Jul 21, 2026 High CVE-2026-25592CVE-2026-26030CHHOmobile-securityprompt-injectionusb-debugging