threat-intel Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurk Chinese-speaking hackers are targeting government organizations in Central Asia, including Afghanistan, Kyrgyzstan, Tajikistan, Uzbekistan, Kazakhstan, and Syria, using two new backdoors, OctLurk and SilkLurk, along with… The Hacker News · Jul 31, 2026 High AFKYTAbackdoorproxycyberattack
threat-intel CISA Issues Fresh SBOM Guidance. Did They Get It Right? CISA has released updated guidance on Software Bill of Materials (SBOMs), adding 10 new elements and refining existing ones to improve comprehensiveness. However, critics, like OWASP founder Jeff Williams, argue that the… Dark Reading · Jul 31, 2026 Medium sbomopen sourcesupply chain
threat-intel In Other News: OpenAI Open Source Tool, AWS Links Hacks to North Korea, Mythos Crypto Research Several cybersecurity incidents and vulnerabilities were reported this week, ranging from a data breach at the UK Department for Education to supply-chain attacks linked to North Korea. OpenAI released a new open-source… SecurityWeek · Jul 31, 2026 High UNNOsupply-chainvulnerabilitycryptanalysis
threat-intel Cyber actualités ZATAZ de la semaine du 27 juillet au 2 août 2026 This week’s ZATAZ news focuses heavily on data breaches and security incidents, primarily targeting French organizations and involving a wide range of sensitive information. Numerous data leaks are being reported, includ… ZATAZ · Jul 31, 2026 High FRdata breachcybersecurityhacktivism
threat-intel Un pirate revendique un accès au CRM d’ENI A previously unknown cybercriminal, appearing on a dark web forum, claims to have gained access to ENI’s French professional space in October 2025 via phishing, exposing customer data, invoices, and sensitive account man… ZATAZ · Jul 31, 2026 Medium phishingdata-breachcredential-theft
threat-intel The Morning After We Pull a Root of Trust, Nobody Owns It The article highlights a critical gap in cybersecurity preparedness: the lack of coordinated response when a root certificate is removed from a browser’s trust store. While security teams are adept at identifying and rem… Dark Reading · Jul 31, 2026 High trust-anchorcertificate-revocationcryptography
threat-intel Hacktivisme : une fuite « Macroleak » de 2017 contre Chat Control ressort du darkweb ! A hacktivist has released a collection of 85 previously unseen files from 2017, claiming they were obtained to disrupt a 2017 presidential and legislative campaign and as a response to the European Chat Control project.… ZATAZ · Jul 31, 2026 High FRhacktivismdata breachprivacy
threat-intel 6 Reasons Why Device Code Phishing is the Fastest-Growing Threat of 2026 Device code phishing, a rapidly growing threat exploiting the OAuth 2.0 device authorization grant, has evolved from a niche technique to a widespread criminal and nation-state tactic in a matter of months. Attackers are… The Hacker News · Jul 31, 2026 High device-code-phishingoath2phishing-as-a-service
vulnerability Multiples vulnérabilités dans Progress MOVEit Transfer (31 juillet 2026) Multiple vulnerabilities have been discovered in Progress MOVEit Transfer, allowing attackers to inject code remotely and bypass security policies. These flaws are impacting versions of the software prior to 2026.0.3 and… CERT-FR · Jul 31, 2026 High CVE-2026-10697CVE-2026-15966CVE-2026-15967cvexsssecurity
threat-intel North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn North Korea's Lazarus Group is sharing its cyber tools and infrastructure with ransomware hackers, specifically the Gunra group, targeting South Korean organizations. The agencies warn that even visiting compromised legi… The Record · Jul 30, 2026 High SONOnorth korearansomwarelazarus group
threat-intel ‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale A research firm, Silent Push, demonstrated how artificial intelligence can significantly amplify the effectiveness of ‘dangling DNS takeover’ attacks, a vulnerability where a forgotten DNS record points to a deleted clou… SecurityWeek · Jul 30, 2026 High dangling dnsdns takeovercloud security
threat-intel Open Source Software: Security Principles and Practices The CISA released guidance on securing open source software (OSS) usage across various systems, including critical infrastructure. This guidance focuses on a comprehensive approach to OSS risk management, covering everyt… CISA Advisories · Jul 30, 2026 Info open sourceossvulnerability
threat-intel Cyber extortionists steal data from UK Department for Education Cybercriminals, identifying as ExfilSquad, have stolen data from the UK Department for Education and the Police National Legal Database, potentially exposing names, email addresses, and contact details of over 600,000 in… The Record · Jul 30, 2026 High UKransomwaredata breachcybercrime
threat-intel Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts A state-sponsored threat group, potentially linked to Lazarus and operating between 2025 and 2026, exploited vulnerabilities in AnySign4PC, a certificate-based electronic signature software, to install backdoors on targe… The Hacker News · Jul 30, 2026 High CVE-2020-7882SOwatering holebuffer overflowremote code execution
threat-intel Russian spies take their half-click email attack from Zimbra to Outlook Russian intelligence operatives are leveraging a phishing campaign mimicking Signal support to trick users into revealing sensitive information. This tactic has expanded beyond Zimbra to now target Outlook users, highlig… The Register · Jul 30, 2026 High CVE-2026-42897RUCHphishingsocial engineeringrussian threat actor
threat-intel ExfilSquad expose des données CRM municipales A new extortion group, ExfilSquad, claims to possess a significant amount of sensitive data from municipal services and CRM platforms, including data from Houston, Atlanta, and Microsoft. They’ve released sample data, pr… ZATAZ · Jul 30, 2026 High UNcrmdata breachexfiltration
threat-intel Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks A Chinese-speaking threat actor, operating under the aliases knaithe and KnYuan, is leveraging AI to conduct autonomous cyberattacks. Using the Hermes Agent framework and DeepSeek, they autonomously identified and exploi… Palo Alto Unit 42 · Jul 30, 2026 High CVE-2026-33017CVE-2026-21858CVE-2025-68613CNaiautonomousvulnerability
threat-intel 240 bases françaises diffusées par des pirates A massive leak of 240 French databases, totaling approximately 90% of which are already known, has been released by multiple pirates. The data spans incidents since 2022 and includes organizations like Gustave Auto, Wina… ZATAZ · Jul 30, 2026 High FRdata leakcybercrimedata breach
threat-intel Le rôle de l’IA dans les opérations de cybercriminalité sur le dark web The article highlights a growing trend in cybercrime – the use of artificial intelligence by criminals on the dark web. AI is being used to create more convincing phishing attacks, automate various stages of attacks, and… ZATAZ · Jul 30, 2026 High aicybercrimedark web
threat-intel US and Allies Update SBOM Guidance The US government, alongside 13 allied nations, has released updated guidance on Software Bill of Materials (SBOMs) to enhance software supply chain security and transparency. This revised guidance builds upon previous e… SecurityWeek · Jul 30, 2026 Info USAUsbomsupply chainsoftware security