vulnerability iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days Two zero-day vulnerabilities in Joomla extensions – iCagenda and Balbooa Forms – are being actively exploited in a global campaign targeting vulnerable CMS systems. Both flaws allow for remote code execution via file upl… The Hacker News · Jul 13, 2026 Critical CVE-2026-48939CVE-2026-56291CVE-2025-6389AUjoomlavulnerabilityzero-day
threat-intel Russia's FSB blamed for Poland grid attack as UK and EU impose first joint cyber sanctions Russia’s FSB, specifically its Center 16 signals intelligence arm, has been formally blamed for a cyberattack that threatened to cut heating to half a million people in Poland last winter. Following this attribution, the… The Record · Jul 12, 2026 High RUPOFRcyberattackcybercrimeespionage
threat-intel Hackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns Chinese and Indian-aligned threat actors have been conducting sustained cyber espionage campaigns targeting Pakistani law enforcement organizations, including the Balochistan Police, Khyber Pakhtunkhwa Police, Islamabad… The Hacker News · Jul 11, 2026 High CHINPAcyber espionagelaw enforcementchina
vulnerability Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions A critical cross-site scripting (XSS) vulnerability in Zimbra's Classic Web Client could allow attackers to execute malicious code through crafted emails, potentially leading to account compromise and data theft. Zimbra… The Hacker News · Jul 11, 2026 High CVE-2025-27915CVE-2023-37580CVE-2024-27443xssvulnerabilityweb client
threat-intel Jen Ellis: Connecting Cyber Community With Political Machinery This article chronicles the career of Jen Ellis, a cybersecurity advocate who rose to prominence after witnessing the legal troubles faced by security researcher HD Moore. Initially spurred by a deep sense of injustice a… Dark Reading · Jul 10, 2026 High UNpolicycybersecurityresearch
threat-intel License plate cameras may be next target after Supreme Court reins in location tracking A recent Supreme Court ruling regarding cell phone location history searches has raised significant concerns about the potential impact on license plate recognition (ALPR) technology. The court emphasized that indiscrimi… The Record · Jul 10, 2026 High alprsurveillancefourth amendment
threat-intel In Other News: DHS Database Hacked, Adobe Boosts Patch Cadence, Canada Disrupts Ransomware Ops Multiple cybersecurity incidents and threats are unfolding, including a ransomware affiliate pleading guilty in the US, a subscription-based remote access trojan (QuimaRAT) being actively sold on the dark web, and a Cana… SecurityWeek · Jul 10, 2026 High ARCAUSransomwaredata breachremote access trojan
threat-intel China, India ran separate spying campaigns against same Pakistani police force Separate hacking campaigns, linked to China and India, targeted the same Pakistani police force – specifically the Balochistan Police – over a two-year period. These campaigns aimed to access sensitive data including cri… The Record · Jul 10, 2026 High CHINPAcyber espionagedata breachgeopolitics
threat-intel Third US Security Expert Sentenced to Prison for Helping Ransomware Gang A former cybersecurity expert, Angelo Martino, was sentenced to 70 months in prison for aiding a ransomware gang, BlackCat/Alphv, by providing confidential information to maximize ransom payments. Two other cybersecurity… SecurityWeek · Jul 10, 2026 Critical ransomwareinsider threatcybercrime
threat-intel China, India-Linked Hackers Both Targeted Same Pakistani Police Force Chinese and Indian cyber espionage groups have been quietly targeting Pakistani law enforcement networks for over two years, with a particular focus on the Balochistan Police. The intrusions aimed to access sensitive dat… SecurityWeek · Jul 10, 2026 High CHINPAcyberespionagebelt and roadgeopolitics
threat-intel AI Surveillance and Social Progress This article explores the growing threat of AI-powered surveillance systems, particularly in China, and their potential to significantly erode personal freedoms and democratic progress. The author argues that these syste… Schneier on Security · Jul 10, 2026 High CHUSGEsurveillanceaifacial recognition
threat-intel GigaWiper Combines Multiple Malware for System-Level Sabotage Microsoft has identified a sophisticated malware strain called GigaWiper, a Go-based backdoor combining multiple destructive capabilities – including a physical disk wiper, ransomware-like encryption, and persistent C&C… SecurityWeek · Jul 10, 2026 High IRbackdoorransomwarewipe
threat-intel Iran's Cyber Crosshairs Focus Beyond Critical Infrastructure Iran's cyber operations, primarily conducted through groups like Handala and Ababil of Minab, are increasingly targeting a broader range of organizations beyond critical infrastructure. These groups, often described as h… Dark Reading · Jul 9, 2026 Medium CVE-2021-22681IRhacktivismcyber espionagevulnerability exploitation
threat-intel ThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories This week's ThreatsDay highlights a diverse range of cyber threats, from global fraud operations and ransomware tool overlaps to sophisticated social engineering attacks and vulnerabilities in popular software. Key event… The Hacker News · Jul 9, 2026 High CVE-2026-9181CVE-2025-49760CVE-2025-59200CHTAESsocial engineeringphishingransomware
threat-intel Latvian forestry company still restoring systems weeks after ransomware attack A Latvian state-owned forestry company, LVM, is still recovering from a ransomware attack that disrupted its systems for weeks. The attack, attributed to a foreign, financially motivated ransomware group, led to the leak… The Record · Jul 9, 2026 High LVransomwarecyberattackdata breach
threat-intel UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge The UK government is launching a multi-faceted cybersecurity initiative, Cyber Shield, focused on leveraging agentic AI to bolster national cyber defenses against increasingly rapid AI-powered attacks. Simultaneously, th… SecurityWeek · Jul 9, 2026 High UKaicybersecuritynational security
threat-intel NSA revives 'Tailored Access Operations' name for elite hacking unit The National Security Agency (NSA) has revived its elite hacking unit, formerly known as TAO (Tailored Access Operations), as part of a reorganization aimed at bolstering its capabilities against evolving cyber threats f… The Record · Jul 9, 2026 High IRCHNOhackingcyber espionagenational security
threat-intel The Language of AI Could Change How Humans Speak A joint statement from the Five Eyes intelligence alliance warns of rapidly increasing cyber risks stemming from the accelerating development of AI models. The core concern is that AI, particularly open-source models, is… Schneier on Security · Jul 9, 2026 High aicybersecurityhacking
threat-intel _HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th) A self-propagating bot, originating from Belarus (as claimed by its creator), has been scanning for open ports and attempting brute-force login attempts on various servers worldwide. The bot’s purpose is to raise awarene… SANS Internet Storm Center · Jul 9, 2026 Medium BYscanbrute-forcessh
threat-intel Mexico's New Cyber Plan Faces Its First Real Test Mexico's National Cybersecurity Plan, designed to bolster the country's digital defenses ahead of the 2026 FIFA World Cup, is facing an early test. Despite the plan's goals – including establishing a National Cybersecuri… Dark Reading · Jul 8, 2026 High MEUNCAcybersecuritylatin americacyberattack