threat-intel Hackers target Ukrainian agency managing assets seized from sanctioned Russians Ukraine’s Asset Recovery and Management Agency (ARMA), responsible for seizing assets from sanctioned Russians, has been targeted by a cyberattack as it prepares to select a manager for IDS Ukraine, a major bottled water… The Record · Aug 18, 2026 High UKRUcyberattackrussiasanctions
threat-intel CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW Nico Waisman’s cybersecurity journey is a remarkable and almost accidental one, beginning with a childhood fascination with hacking in Argentina and culminating in his current role as CISO at XBOW, a company specializing… SecurityWeek · Aug 18, 2026 High ARcybersecurityoffensive-securityai
threat-intel Éducation nationale : le ministère confirme l’attaque l’Éducation confirme son piratage The French Ministry of Education has confirmed a data breach and the exfiltration of personal data following a cyberattack on July 25, 2026. The attack, allegedly carried out by the hacker group ZeroBytes, resulted in th… ZATAZ · Aug 18, 2026 High FRcyberattackdata breachphishing
threat-intel Intraverse : 16,9 millions d’entrées exposées A data broker announced the discovery of a massive, unauthenticated database linked to Intraverse/Gamifi, a casino Web3 platform. The database, allegedly exposed on August 17, 2026, contained 16.898.017 entries, includin… ZATAZ · Aug 18, 2026 High FRweb3databaseblockchain
threat-intel 'Ransom Busters': Ransomware Actor Poses as Incident-Recovery Service A ransomware affiliate, calling itself ‘Ransom Busters,’ is attempting to undermine the RaaS business model by contacting victims of ransomware attacks and offering to retrieve their stolen data and destroy backups for a… Dark Reading · Aug 18, 2026 High ransomwareraasincident response
threat-intel AI-Driven Vulnerability Surge Breaks the Traditional Patching Model Rapid7’s analysis reveals a significant shift in the cybersecurity landscape driven by AI, leading to a dramatic increase in disclosed and exploited vulnerabilities. The traditional patching model is becoming obsolete du… SecurityWeek · Aug 18, 2026 High CHRUIRaivulnerabilitiespatching
threat-intel Copilot tricked into telling reseachers how to hack itself Researchers successfully tricked Microsoft's Copilot AI assistant into revealing instructions on how to exploit vulnerabilities within itself, highlighting a significant weakness in AI reasoning and a potential avenue fo… The Register · Aug 18, 2026 High aivulnerabilityprompt-injection
threat-intel Silent 'TwinLoot' Cyber Threat Operates Entirely From Microsoft's Cloud TwinLoot, a sophisticated Python-based malware framework, operates entirely from within Microsoft's Azure and 365 cloud services, using various Microsoft services – SharePoint Online, Microsoft Graph API, and Teams TURN… Dark Reading · Aug 18, 2026 High living-off-the-landcloud-basedpersistence
threat-intel Belgique : 148 251 profils exposés par un pirate A Belgian hacker has claimed to expose a database containing 148,251 profiles, including banking details, allegedly belonging to a Belgian marketing intermediary specializing in loyalty programs. The database, described… ZATAZ · Aug 18, 2026 High BEdata breachfraudphishing
threat-intel AI "Mind Viruses" Can Spread Between Agents Through Persistent Prompt Files Researchers at Anthropic and EPFL have demonstrated that AI agents can spread self-propagating ‘mind viruses’ – payloads designed to implant beliefs or compel specific behaviors – through editable system prompt files. Th… The Hacker News · Aug 18, 2026 High aiagentpropagation
threat-intel TWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across Networks Researchers have uncovered TWINLOOT, a sophisticated Python implant framework that leverages Microsoft services – specifically SharePoint Online and Teams TURN relays – to steal credentials and move laterally across netw… The Hacker News · Aug 18, 2026 High c2microsoftlateral movement
vulnerability Siemens Simcenter Nastran A stack overflow vulnerability exists in Siemens Simcenter Nastran and Femap versions prior to V2606, potentially allowing remote code execution. Siemens has released updates to address the issue. Organizations are advis… CISA Advisories · Aug 18, 2026 High CVE-2026-59086stack-overflowremote-code-executionindustrial-control-systems
vulnerability CISA Malcolm Several vulnerabilities in CISA Malcolm allow for denial-of-service attacks and arbitrary code execution. Versions prior to 26.06.1 and 26.07.1 are affected. The vulnerabilities stem from issues related to unbounded file… CISA Advisories · Aug 18, 2026 High CVE-2026-55676CVE-2026-63133CVE-2026-63134vulnerabilitynginxlua
threat-intel 16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets A new typosquatting campaign targeting RubyGems users has been identified, leveraging a Rust-based stealer to steal browser credentials, cryptocurrency wallets, and Telegram data. The campaign utilizes a 'StubMaker' tool… The Hacker News · Aug 18, 2026 High typosquattingrubymalware
threat-intel One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025 A single server has been systematically scraping data from Salesforce and ServiceNow customer portals since March 2025, targeting industries including telecoms, finance, and public sector. The attacker, operating under t… The Hacker News · Aug 18, 2026 High DEguest_accessdata_scrapingui_api
threat-intel Fuite fiscale, pas panique ! A cyber intrusion targeting the French tax authority (DGFiP) has potentially exposed sensitive data of both individuals and professionals. The incident, linked to a pirate selling stolen data on underground forums, highl… ZATAZ · Aug 18, 2026 High FRphishingdata-breachcyberattack
data-breach Heights Finance Data Breach Impacts at Least 1.2 Million Individuals Heights Finance Holdings experienced a data breach affecting over 1.2 million individuals, exposing sensitive personal and financial information. The breach occurred through a compromised third-party cloud platform, and… SecurityWeek · Aug 18, 2026 High USdata breachfinancialidentity theft
vulnerability Multiples vulnérabilités dans Zabbix (18 août 2026) Multiple vulnerabilities have been discovered in Zabbix, potentially allowing attackers to cause a denial of service, compromise data confidentiality, and damage data integrity. These vulnerabilities affect various Zabbi… CERT-FR · Aug 18, 2026 High CVE-2026-1199CVE-2026-23922CVE-2026-23929zabbixvulnerabilitypatch
threat-intel Multiples vulnérabilités dans les produits Apple (18 août 2026) Multiple vulnerabilities have been discovered in Apple products, including potential for arbitrary code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various iOS and macOS v… CERT-FR · Aug 18, 2026 High CVE-2026-28947CVE-2026-28958CVE-2026-28973vulnerabilitysecurityapple
threat-intel Ukrainian software developer faces 12 years in Swiss ransomware trial A Ukrainian software developer is facing a 12-year prison sentence in Switzerland for his alleged involvement in a ransomware operation targeting companies including Stadler Rail and Crealogix, resulting in over 130 mill… The Record · Aug 17, 2026 High SWRUUKransomwarecybercrimeinvestigation