threat-intel Autonomous AI attacks pose 'clear and present danger' to critical infrastructure A growing trend indicates that attackers are increasingly leveraging open-source AI agents to autonomously launch sophisticated cyberattacks against critical infrastructure, including government systems, energy companies… The Register · Aug 14, 2026 High CHIRNOaicyberattackcritical infrastructure
threat-intel Cyera's Oasis Security Buy is All About AI Agent Control Cyera is acquiring Oasis Security in a $1 billion deal to bolster its data security platform with AI agent management capabilities. This acquisition addresses the growing need to manage the increasing number of non-human… Dark Reading · Aug 14, 2026 High ISaiagenticidentity management
threat-intel In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities This week’s cybersecurity news highlights a range of concerning developments, including a government contract sparking AI concerns, a North Korean IT worker infiltrating a US federal agency, vulnerabilities discovered in… SecurityWeek · Aug 14, 2026 High NOransomwarecyberattackvulnerability
supply-chain Trivy, Not LiteLLM Behind the 2,500 Org Compromise A sophisticated supply chain attack, initially linked to the LiteLLM malware, has impacted over 2,500 organizations, primarily through a compromise of the Trivy scanner. The attack, orchestrated by TeamPCP, exploited vul… SecurityWeek · Aug 14, 2026 High GEBRFRsupply-chainvulnerabilitycredential-theft
threat-intel Who’s Tracking You? Use This New Service to Find Out DecryptAds is a new service designed to expose the complex ecosystem of adtech companies tracking users online. By scraping data from files like ads.txt, app-ads.txt, and sellers.json, it reveals a network of data broker… Krebs on Security · Aug 14, 2026 High CHRUUAadtechdata-brokermalvertising
threat-intel Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers Researchers have discovered a post-exploitation technique leveraging Chrome DevTools Protocol (CDP) to steal cookies and sensitive data from running instances of Chrome and Edge on Windows. This method bypasses standard… The Hacker News · Aug 14, 2026 High cdpdevtoolscookie theft
threat-intel If the Markets Reject OpenAI and Anthropic, the US Should Nationalize Them This article argues that the market’s excessive hype and valuation of AI companies like OpenAI and Anthropic are unsustainable and proposes a radical solution: the US should nationalize these companies and transform them… Schneier on Security · Aug 14, 2026 High ainationalizationregulation
threat-intel CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps A large-scale phishing campaign, dubbed RecruitTrap, is targeting over 3,000 recruitment-related URLs to steal Google and Facebook credentials, and in some cases, relay MFA prompts in real-time. The campaign uses Browser… The Hacker News · Aug 14, 2026 High phishingbrowser-in-the-browsercredential-theft
threat-intel Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware Apple is warning users in over 150 countries about potential mercenary spyware attacks, sending notifications via email and in-app alerts. These sophisticated attacks target specific individuals – journalists, activists,… The Hacker News · Aug 14, 2026 High spywaremercenarythreat-intel
threat-intel Crypto wallet maker Trezor confirms 13,000 customers' details exposed in logistics breach Trezor, a leading cryptocurrency wallet manufacturer, has confirmed that details of approximately 13,000 customer accounts were exposed due to a logistics breach. This incident highlights a significant risk for users hol… The Register · Aug 14, 2026 High cryptocurrencyhardware walletdata breach
threat-intel EVA visée par une nouvelle fuite de données, le pirate génére 1 million d’euros de cartes cadeaux ! A data breach affecting EVA Nantes Sud, a subsidiary of VR game developer EVA, has been disclosed. A hacker claims to have stolen a database containing customer data, commercial information, and potentially exploitable g… ZATAZ · Aug 14, 2026 High FRdata breachgift cardscrm
threat-intel Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups The Trump administration is establishing a program allowing U.S. private sector companies to conduct cyber operations against foreign transnational criminal organizations (TCOs). This initiative, driven by a White House… The Hacker News · Aug 14, 2026 High cybercrimeoffensive-cyberprivate-sector
malware APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit The HoneyMyte APT group has significantly evolved its CoolClient backdoor, now incorporating a kernel-mode driver for enhanced stealth and data exfiltration. The latest variant, observed in campaigns targeting countries… Securelist · Aug 14, 2026 High
threat-intel China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud The China-linked threat actor Jewelbug, operating as a ‘hack-for-hire’ group, is engaged in both sophisticated government espionage targeting nations across the Middle East, Southeast Asia, and South Asia, and cryptocurr… The Hacker News · Aug 14, 2026 High CHMISOespionagecryptocurrencyhack-for-hire
vulnerability Hackers Exploiting Unpatched GeoServer Zero-Day A zero-day vulnerability in GeoServer is being actively exploited by threat actors shortly after its public disclosure. The flaw, a SQL injection, allows remote code execution and has prompted immediate action from secur… SecurityWeek · Aug 14, 2026 High sql injectionzero-dayremote code execution
threat-intel AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions A new multi-stage Rust-based macOS information stealer, dubbed AmnesiaStealer, is being distributed through a fake GitHub download page as part of ClickFix attacks. The malware steals user data, including passwords and b… SecurityWeek · Aug 14, 2026 High CVE-2020-9771macosrustinformation stealer
threat-intel New Zealand says China tried using space investments to spy on local affairs New Zealand intelligence agencies have uncovered evidence that China has been attempting to utilize its growing investments in space technology to conduct espionage operations targeting local affairs. This involves lever… The Register · Aug 14, 2026 High CNespionagespace-basedsurveillance
threat-intel Multiples vulnérabilités dans le noyau Linux de SUSE (14 août 2026) Multiple vulnerabilities have been discovered in the SUSE Linux kernel. Several of these vulnerabilities can lead to privilege escalation, denial of service, and data confidentiality breaches. The vulnerabilities are bei… CERT-FR · Aug 14, 2026 High CVE-2022-4994CVE-2023-2058CVE-2023-53995linuxkernelvulnerability
vulnerability Multiples vulnérabilités dans les produits Netgate (14 août 2026) Multiple vulnerabilities have been discovered in Netgate products, including pfSense. These vulnerabilities allow for data integrity compromise, data confidentiality breaches, and remote code execution. Several CVEs have… CERT-FR · Aug 14, 2026 High CVE-2026-56126CVE-2026-56127CVE-2026-56128vulnerabilitypfsenseremote code execution
vulnerability Multiples vulnérabilités dans le noyau Linux de Debian (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian. These vulnerabilities allow for privilege escalation, data compromise, and denial of service. Affected Debian versions are those prior to 6.12.… CERT-FR · Aug 14, 2026 High CVE-2025-40098CVE-2026-45897CVE-2026-45901linuxkerneldebian