threat-intel Pakistan's Transparent Tribe Refreshes Toolset for Afghan Cyberattacks Pakistan's Transparent Tribe, a known advanced persistent threat (APT) group, has been aggressively targeting organizations in Afghanistan and India, utilizing a refined toolset including the Patchcord backdoor and other… Dark Reading · Aug 20, 2026 High AFINPAaptsocial engineeringbrowser hijacking
threat-intel NSA, FBI warns of hackers using AI-generated tools in attacks on critical infrastructure technology The NSA and FBI have issued an urgent warning about a growing threat where hackers are utilizing AI-generated exploit scripts to target critical infrastructure organizations, specifically focusing on Siemens S7 Series PL… The Record · Aug 19, 2026 High IRplccybersecurityai
threat-intel Defending Against an Active Threat to Siemens S7 Series PLCs The National Security Agency (NSA), CISA, FBI, DOE, and EPA are issuing an advisory warning of an active cyber threat targeting Siemens S7 Series Programmable Logic Controllers (PLCs). Threat actors are leveraging AI to… CISA Advisories · Aug 19, 2026 High icsplccybersecurity
vulnerability Siemens Simcenter Nastran A stack overflow vulnerability exists in Siemens Simcenter Nastran and Femap versions prior to V2606, potentially allowing remote code execution. Siemens has released updates to address the issue. Organizations are advis… CISA Advisories · Aug 18, 2026 High CVE-2026-59086stack-overflowremote-code-executionindustrial-control-systems
threat-intel Autonomous AI attacks pose 'clear and present danger' to critical infrastructure A growing trend indicates that attackers are increasingly leveraging open-source AI agents to autonomously launch sophisticated cyberattacks against critical infrastructure, including government systems, energy companies… The Register · Aug 14, 2026 High CHIRNOaicyberattackcritical infrastructure
threat-intel Cl0p cible Philips et Shell, deux géants européens Cybercriminal group Cl0p has added Philips and Shell to its list of victims, claiming to have stolen 89GB of data from Shell and 13.5GB from Philips. Philips acknowledges a attempted compromise on an internal server, whi… ZATAZ · Aug 13, 2026 Medium NLGBcybercrimedata breachincident response
threat-intel New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure A Pakistan-aligned threat actor, APT36 (Transparent Tribe), is targeting Afghan telecom providers and critical infrastructure in South Asia with a new backdoor campaign called PATCHCORD. The campaign utilizes sector-spec… The Hacker News · Aug 13, 2026 High CVE-2024-6387AFINbackdoorc2afghanistan
vulnerability Johnson Controls Inc. Airwall Johnson Controls Inc.'s Airwall software versions 4.0.4 and earlier contain critical vulnerabilities. A hardcoded cryptographic key allows attackers to decrypt sensitive data, bypass authentication, and access arbitrary… CISA Advisories · Aug 13, 2026 High CVE-2026-64887CVE-2026-34492vulnerabilityhardcoded keypath traversal
vulnerability Hitachi Energy APM Edge Product Hitachi Energy is issuing a security advisory regarding critical vulnerabilities in its APM Edge product, specifically versions 6.10 and earlier. These vulnerabilities, including a write-what-where condition and an out-o… CISA Advisories · Aug 13, 2026 Critical CVE-2026-43284CVE-2026-43500SWvulnerabilitycvelinux
vulnerability ANDRITZ HIPASE-250 and 250 SCALA ANDRITZ HIPASE-250 and 250 SCALA devices, versions <=7.20, are vulnerable to several security flaws that could allow an attacker to read stored passwords, access configuration endpoints without authentication, and gain V… CISA Advisories · Aug 13, 2026 High CVE-2026-65309CVE-2026-65310CVE-2026-65311vulnerabilitypasswordauthentication
vulnerability Haiwell IoT Cloud HMI Gateway A critical OS command injection vulnerability has been identified in the Haiwell IoT Cloud HMI Gateway, version 3.40.1.12. Exploitation could allow an attacker to execute arbitrary OS commands with root privileges, posin… CISA Advisories · Aug 13, 2026 Critical CVE-2026-19188cwe-78iotcommand injection
vulnerability Siemens Desigo DXR and PXC Controllers A denial-of-service vulnerability exists in Siemens Desigo DXR and PXC controllers, exploitable by sending malformed BACnet packets. This can cause the devices to stop responding to queries, requiring a device reset or r… CISA Advisories · Aug 13, 2026 High CVE-2026-59693industrial control systemsbacnetdenial of service
vulnerability Johnson Controls Metasys A vulnerability in Johnson Controls Metasys allows a low-privilege user to inject malicious code via a crafted URL, potentially leading to session hijacking and unauthorized access across multiple versions. The vulnerabi… CISA Advisories · Aug 13, 2026 Critical CVE-2026-34491cve-2026-34491xsscisa
threat-intel Taïwan visé par une cyberattaque pilotée par IA ? A Taiwanese cybersecurity incident, potentially linked to a Chinese operator, has involved a sophisticated campaign utilizing multiple AI agents to target government systems and critical infrastructure. Researchers at Dr… ZATAZ · Aug 12, 2026 High CHaicyberattackintelligence
threat-intel 'Near-autonomous' AI agents attack Taiwan's nuclear safety agency Taiwan's Nuclear Safety Agency is facing an attack from 'near-autonomous' AI agents, potentially leveraging a programming language developed by a company recently acquired by Qualcomm. This incident highlights the growin… The Register · Aug 12, 2026 High TAIRaicyberattacktaiwan
threat-intel Siemens RUGGEDCOM APE1808 A CISA advisory, in collaboration with Siemens ProductCERT, highlights vulnerabilities in Siemens RUGGEDCOM APE1808 devices when used with Fortinet NGFW. These vulnerabilities, including Cross-Site Scripting and Path Tra… CISA Advisories · Aug 12, 2026 High CVE-2026-23573CVE-2026-59839GEindustrial control systemscwe-79cwe-22
threat-intel Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine Polish power plant operators suffered a significant cyberattack that led to the shutdown of a steam turbine and process-water treatment system. The attack exploited a private cellular network used by the grid operator to… The Hacker News · Aug 11, 2026 High CVE-2023-32349CVE-2023-32350PLprivate apnindustrial control systemscyberattack
threat-intel Poland uncovers second heat plant cyberattack that went hidden for months Poland’s CERT Polska uncovered a cyberattack targeting a combined heat and power plant that went undetected for months, highlighting a previously unknown attack vector involving private cellular networks. The attack, occ… The Record · Aug 10, 2026 High PORUcyberattackindustrial control systemsprivate cellular network
threat-intel New Jersey, Alabama Join States Targeted in Water Cyberattacks A coordinated cyberattack targeting water and wastewater facilities in the United States is expanding, with New Jersey and Alabama becoming the latest states to report incidents. The attacks, linked to Iranian hackers, a… SecurityWeek · Aug 10, 2026 High IRUScyberattackwater systemsics
threat-intel TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore Russian cybersecurity vendor TrueConf has been repeatedly targeted by the threat actor known as Head Mare, who leverages zero-day vulnerabilities in their server software to deploy a backdoor (PhantomCore) and a related… The Hacker News · Aug 10, 2026 High CVE-2026-3502CHRUzero-dayaptbackdoor