threat-intel TikTok Reaches $400 Million Settlement With US Justice Department Over Children’s Privacy TikTok has agreed to a $400 million settlement with the U.S. Department of Justice to address allegations of violating children's privacy laws and failing to adequately protect user data. This settlement follows a long-s… SecurityWeek · 6d ago Medium USprivacychildrensocial media
threat-intel UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit The Chinese-speaking cybercrime group UAT-10147 is aggressively targeting web servers globally, leveraging AI-powered tools to automate intrusion operations and establish persistent access. They utilize a new cross-platf… The Hacker News · 6d ago High CVE-2022-0995CVE-2021-3156CVE-2015-5287CHBRBOairansomwaremalware
malware DOUBLECUP's PNG Payload, (Mon, Aug 24th) A new DOUBLECUP malware campaign utilizes a clever technique to bypass traditional steganography detection. The malware, delivered via PNG images, uses a simple PowerShell script appended to the file, easily extracted us… SANS Internet Storm Center · 6d ago Medium powershellsteganographywindows
threat-intel Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund Anthropic is expanding access to its advanced AI cybersecurity model, Mythos 5, to bolster defenses against cyberattacks. They are doing this through partnerships, a new open-source funding program, and an updated Claude… SecurityWeek · 6d ago Medium USaicybersecurityvulnerability
vulnerability ISC Stormcast For Monday, August 24th, 2026 https://isc.sans.edu/podcastdetail/10064, (Mon, Aug 24th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Log4j, potentially allowing attackers to execute arbitrary code through a specially crafted log message. This vulnerability is act… SANS Internet Storm Center · Aug 24, 2026 Critical log4jremote code executionapache
vulnerability Multiples vulnérabilités dans Metabase (24 août 2026) Multiple vulnerabilities have been discovered in Metabase, allowing attackers to potentially compromise data confidentiality through SQL injection and an unspecified security issue. These vulnerabilities affect older ver… CERT-FR · Aug 24, 2026 Medium CVE-2026-72898CVE-2026-72899CVE-2026-72900sql injectionvulnerabilitymetabase
vulnerability Multiples vulnérabilités dans LibreNMS (24 août 2026) Multiple vulnerabilities have been discovered in LibreNMS, allowing an attacker to compromise data confidentiality and bypass security policies. Users of LibreNMS versions prior to 26.8.0 are strongly advised to apply th… CERT-FR · Aug 24, 2026 Medium librenmsvulnerabilitynetwork monitoring
threat-intel 84 000 élèves visés par une fraude aux frais scolaires A coordinated phishing campaign targeting 84,000 students at Aix-Marseille University mimics previous scams originating from the Université Bretagne Sud, demanding €450 under the guise of school fees. Despite the univers… ZATAZ · Aug 23, 2026 Medium phishingscamstudent
threat-intel If you're not using AI to attack your own systems, your adversaries will As AI agents increasingly take on tasks traditionally performed by humans, including hacking, a new attack surface is emerging. Companies are now facing a surge in AI-enabled phishing, impersonation, and reconnaissance,… The Register · Aug 22, 2026 High aired teamingcyberattack
threat-intel TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit TikTok has reached a $400 million settlement with the U.S. Department of Justice to resolve a lawsuit alleging violations of child privacy laws. The settlement addresses concerns about TikTok's collection of data from yo… The Hacker News · Aug 22, 2026 Medium privacychilddata
threat-intel Cyber actualités ZATAZ de la semaine du 17 au 23 août 2026 This week’s cybersecurity news is dominated by data breaches, ransomware attacks, and widespread data exposures. ShinyHunters is targeting Logitech and Streamlabs, while RingCentral has experienced a massive 1.6 million… ZATAZ · Aug 22, 2026 High FRBESOransomwaredata breachvpn
threat-intel ShinyHunters menace Logitech et Streamlabs The ShinyHunters group is aggressively targeting numerous companies, including Logitech and Streamlabs, using a coordinated extortion campaign. They claim to have compromised vast amounts of sensitive data – including pe… ZATAZ · Aug 22, 2026 High SWEUdata breachextortioncyber extortion
threat-intel Rentrée scolaire 2026 : les arnaques à surveiller The article details a surge in cyber scams targeting families and businesses during the 2026 school year preparations, leveraging the high volume of administrative tasks and financial transactions associated with the per… ZATAZ · Aug 22, 2026 High cyber-fraudsocial-engineeringschool-year
threat-intel Une chemise à 10 € et le piège se referme A family in France fell victim to a sophisticated online scam that began with a seemingly innocuous sale of a 10 euro shirt on Vinted. Through a series of carefully crafted messages, a fake Vinted advisor, and a fabricat… ZATAZ · Aug 22, 2026 High FRonline-fraudsocial-engineeringvinted
threat-intel Chess.com : un nouveau pirate revendique 7,3 millions de profils A cybercriminal claims to have stolen a massive dataset from Chess.com, containing 7.3 million user profiles. The data includes email addresses, usernames, user IDs, and various profile details, representing a significan… ZATAZ · Aug 22, 2026 Medium data-breachscrapinguser-data
threat-intel LockBit 5.0 menace de publier des données d’Actua LockBit 5.0 is threatening to release sensitive data allegedly stolen from Actua, a French recruitment and temporary staffing agency. The ransomware group claims to possess documents – including passports, diplomas, CVs,… ZATAZ · Aug 22, 2026 High FRransomwaredata breachrecruitment
threat-intel Corée du Sud : des responsables politiques visés par une fuite A South Korean private certification agency has been hacked, exposing the contact information of high-ranking political figures and highlighting a major cybersecurity risk among third-party providers. Korean authorities… ZATAZ · Aug 22, 2026 High SOKENIcyberattackdata breachidentity theft
threat-intel Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight Multiple banking trojans – Manic, Grandoreiro, and ToxicPanda 2.0 – are actively targeting users worldwide, with a particular focus on financial institutions in Europe, Latin America, and increasingly, Russia. These troj… SecurityWeek · Aug 22, 2026 High BRUKRUbanking trojanmobile malwaresupply chain
threat-intel Ransomware : avec 181 victimes, 2026 dépasse déjà toute l’année 2025 A ZATAZ report indicates that France experienced 181 ransomware-related claims as of August 20, 2026, surpassing 2025’s total by a significant margin. However, the report cautions that these claims are based on criminal… ZATAZ · Aug 22, 2026 High FRransomwarefrancethreat intelligence
threat-intel AWS Security makes an inscrutable choice This article is a collection of security-related news snippets from The Register. It highlights a range of issues, including a phishing campaign impersonating Signal support, a zero-day vulnerability in on-prem SharePoin… The Register · Aug 21, 2026 Medium IRphishingzero-dayransomware