vulnerability 'Confused Deputy' Flaws Persist in Google Cloud, Microsoft Azure Two significant ‘confused deputy’ vulnerabilities persist in Google Cloud Platform (GCP) and Microsoft Azure, allowing attackers to escalate privileges and bypass security controls. Despite reporting these flaws to both… Dark Reading · Jul 27, 2026 High cloud securityidentity managementaccess control
threat-intel Outdated VPNs should be purged from federal agencies, senator says Senator Ron Wyden is urging federal agencies to remove outdated and insecure VPNs from their systems, citing a growing threat of foreign adversaries exploiting these vulnerabilities to gain access to sensitive U.S. gover… The Record · Jul 27, 2026 High RUCHvpnzero-trustremote access
threat-intel FBI: Breaking Affiliate Trust Sped Along LockBit's Takedown The FBI, in collaboration with international law enforcement agencies, successfully dismantled LockBit, one of the most prolific ransomware-as-a-service (RaaS) groups, through Operation Cronos. The operation focused on b… Dark Reading · Jul 27, 2026 High UNRUransomwareraasoperation cronos
vulnerability Microsoft's solution to AI security: more AI and more acronyms Microsoft is facing a zero-day vulnerability in its on-prem SharePoint system, allowing attackers to exploit the flaw. This follows a broader trend of security challenges related to Microsoft products and a wider increas… The Register · Jul 27, 2026 High USIRSWvulnerabilitysharepointzero-day
threat-intel UK court rejects Bahrain immunity claim in spyware case The UK Supreme Court ruled that Bahrain cannot use state immunity to block a lawsuit filed by two dissidents alleging the Bahraini government used the FinSpy spyware to monitor them and their contacts, including politica… The Record · Jul 27, 2026 Medium BHGBsurveillancespywarestate-sponsored
threat-intel Un ancien député-maire ciblé sur un forum pirate An ex-French MP-Mayor is being targeted by a hacker who claims to be protesting the extension of Chat Control 1.0, a European surveillance program. The hacker has announced the re-publication of intimate videos from 2017… ZATAZ · Jul 27, 2026 High FRsurveillancedata-breachprivacy
threat-intel Hackers used autonomous AI agent to spy on Thailand's finance ministry Hackers used an autonomous AI agent, Hermes developed by Nous Research, to conduct a cyber-espionage campaign targeting Thailand's Ministry of Finance. The agent independently explored the ministry's network, gathering i… The Record · Jul 27, 2026 High CNaicyberespionageautonomous agent
threat-intel Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware The China-linked cybercrime group behind tax-themed phishing campaigns is utilizing a sophisticated crypter service called Cruciferra to deliver a wide range of malware, including remote access trojans and information st… The Hacker News · Jul 27, 2026 High CNcrypterransomwarephishing
threat-intel Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits Anthropic’s Opus 5 AI model excels at finding software vulnerabilities, nearly matching Mythos 5’s capabilities, but it cannot automatically generate exploits. Anthropic deliberately limits Opus 5’s exploit generation ab… SecurityWeek · Jul 27, 2026 Medium aivulnerabilitycybersecurity
threat-intel TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments A threat actor linked to East Asia has been targeting government entities in the Middle East using a sophisticated attack chain leveraging Telegram for command-and-control. The campaign utilizes malware families like TEL… The Hacker News · Jul 27, 2026 High CNedr evasiontelegramcommand and control
vulnerability Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th) A scan targeting ESAFENET CDG, a Chinese-focused document management system, revealed weak default passwords and vulnerabilities, including SQL injection and XSS. Threat actors are leveraging existing exploit scripts to… SANS Internet Storm Center · Jul 26, 2026 Medium CNdefault passwordsql injectionxss
threat-intel Chat Control : un pirate cible 24 responsables politiques français A hacker has released personal data of 24 French politicians, including photographs, contact information, and administrative IDs, in a protest against Chat Control 1.0, a temporary European measure designed to detect chi… ZATAZ · Jul 26, 2026 High FRdata breachdoxingcyberattack
threat-intel Des données de pompiers français exposées en série A series of coordinated data breaches have exposed sensitive information from multiple French fire and rescue services (SDIS), including databases, internal documents, and administrator access, occurring amidst ongoing w… ZATAZ · Jul 26, 2026 High FRdata breachfrench fire servicesthreat intelligence
threat-intel DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts The DevMan ransomware-as-a-service (RaaS) operation has significantly upgraded its affiliate portal, transitioning from a chat-based system to a centralized platform for managing victims, payouts, and team operations. PR… The Hacker News · Jul 25, 2026 High USCISEransomwareraasdevman
threat-intel Europol flags 4,340 'horrific' URLs linked to The Com This article is a collection of security-related news snippets from The Register. It highlights a phishing campaign targeting Signal users by Russian actors, a zero-day vulnerability in on-prem SharePoint, and a signific… The Register · Jul 24, 2026 Medium RUCHphishingvulnerabilitycybersecurity
threat-intel Andy Burnham signals continuity on UK cyber policy, reappoints minister despite scrapping ministry Following a government reshuffle, UK cybersecurity minister Liz Lloyd has been reappointed to her role, maintaining continuity on the Cyber Security and Resilience Bill. The government has reorganized departments, splitt… The Record · Jul 24, 2026 Medium UKcybersecurityukcyber policy
threat-intel Quatre rendez-vous cyber à suivre jusqu’en octobre This article details upcoming cybersecurity events across France and Quebec, focusing on a blend of technical learning, community engagement, and offensive security practices. The events – Barbhack in Toulon, Cyberbrew i… ZATAZ · Jul 24, 2026 Medium FRCAcybersecurityoffensive securitysocial engineering
threat-intel In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws This week’s cybersecurity news highlights a range of threats, including a new AI-powered malware (Dolphin X), a data breach affecting Abbott, widespread internet outages in Maine, zero-day vulnerabilities in Siemens swit… SecurityWeek · Jul 24, 2026 High CVE-2025-40948CVE-2025-40947CVE-2025-40949GERUUNzero-dayvulnerabilityransomware
vulnerability Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller Researchers discovered a vulnerability, dubbed ‘Certighost,’ allowing low-privilege Active Directory users to impersonate Domain Controllers by obtaining certificates. The flaw leverages a chase mechanism within Active D… The Hacker News · Jul 24, 2026 High CVE-2026-54121active directorycertificate authoritykerberos
threat-intel Uncle Sam tells overseas cybercrooks their visas are canceled This article covers a range of cybersecurity and technology news, including a US government action targeting Iranian propaganda sites, a security acquisition by EQT, and vulnerabilities impacting Joomla extensions. It al… The Register · Jul 24, 2026 Medium IRSWcybersecuritythreat intelligencevulnerability