threat-intel Fuite Stripe : au moins 200 Français concernés A massive data leak linked to Stripe has exposed the email addresses of at least 200 French users, including both customers and merchants, alongside a significant number of addresses from various services across France,… ZATAZ · Aug 20, 2026 High FRBECAdata breachemail leakcyber intelligence
vulnerability Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments Researchers at the University of Massachusetts Amherst have demonstrated a method to revive expired Visa credit cards for contactless payments by rewriting the expiration date on a POS terminal, bypassing standard crypto… The Hacker News · Aug 20, 2026 High UScontactlessnfcexpiry
threat-intel ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud ToxicPanda 2.0, an Android banking trojan, has significantly expanded its capabilities and targeting scope, now leveraging a new set of remote commands and a sophisticated overlay-based credential theft mechanism. Simult… The Hacker News · Aug 20, 2026 High SOUNbanking trojanandroid malwarecredential theft
threat-intel Describing attacks with crime script analysis This article explores crime script analysis (CSA) as a method for understanding and visualizing cyberattacks, particularly business email compromise (BEC) scams. CSA, derived from criminology, breaks down attacks into a… Cisco Talos · Aug 19, 2026 Medium crime-script-analysisbecbusiness-email-compromise
threat-intel 943 Patches Rolled Out With Oracle’s August 2026 Security Update Oracle released a massive update – 943 security patches – as part of its August 2026 Critical Security Patch Update, addressing over 1,000 unique vulnerabilities across numerous products. Many of these flaws, particularl… SecurityWeek · Aug 19, 2026 High patchingvulnerabilitiessecurity
threat-intel Expired credit cards revived by researchers to make unauthorized payments Researchers have discovered a method to revive expired credit cards and use them for unauthorized payments. This vulnerability stems from a flaw in how Stripe handles AI token sales, allowing attackers to manipulate the… The Register · Aug 18, 2026 High credit-cardsaitokenization
threat-intel Belgique : 148 251 profils exposés par un pirate A Belgian hacker has claimed to expose a database containing 148,251 profiles, including banking details, allegedly belonging to a Belgian marketing intermediary specializing in loyalty programs. The database, described… ZATAZ · Aug 18, 2026 High BEdata breachfraudphishing
threat-intel Linux Botnet Evooo1Bot Expands Mirai Capabilities Well Beyond DDoS Evooo1Bot, a Linux botnet derived from Mirai, has significantly expanded its capabilities beyond simple DDoS attacks. It now incorporates advanced features like encrypted C2 communications, SSH brute-force scanning, a re… Dark Reading · Aug 17, 2026 High CVE-2007-3010CVE-2016-6277CVE-2018-14558miraiddosbotnet
threat-intel Ukraine says cyberattack hit Russian e-commerce giant Wildberries amid drone strikes Ukraine’s military intelligence, in collaboration with hacker groups, reportedly launched a cyberattack against Russia’s largest e-commerce platform, Wildberries, coinciding with drone strikes targeting the company’s inf… The Record · Aug 17, 2026 High UARUcyberwardroneecommerce
vulnerability Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure A critical vulnerability in SAP Commerce Cloud was rapidly exploited by hackers just days after its public announcement. The flaw, tracked as CVE-2026-58231, allows for arbitrary code execution and poses a significant ri… SecurityWeek · Aug 17, 2026 Critical CVE-2026-58231CVE-2019-0344sapcommercevulnerability
threat-intel Fortune 500 Companies Hit in Azure Data Theft Campaign A threat actor, known as ‘TheHatman’, is selling massive amounts of stolen data allegedly extracted from Azure tenants belonging to several Fortune 500 companies, including McDonald’s, Vodafone, and Wyndham Hotels. The d… SecurityWeek · Aug 17, 2026 High azurecredential theftdata breach
threat-intel What Boards Need to Know About Tech Risk This article argues that boards of directors often fail to adequately address technology risks due to a focus on revenue-generating investments and a lack of understanding of the technical realities of digital infrastruc… Dark Reading · Aug 14, 2026 High technical debtrisk managementcybersecurity
threat-intel EVA visée par une nouvelle fuite de données, le pirate génére 1 million d’euros de cartes cadeaux ! A data breach affecting EVA Nantes Sud, a subsidiary of VR game developer EVA, has been disclosed. A hacker claims to have stolen a database containing customer data, commercial information, and potentially exploitable g… ZATAZ · Aug 14, 2026 High FRdata breachgift cardscrm
threat-intel 14,000 Trezor Customers Impacted by Data Breach at ShipMonk Nearly 14,000 Trezor customers were affected by a data breach stemming from a vulnerability exploited by the ShinyHunters group within ShipMonk’s systems. The breach exposed customer data including names, addresses, emai… SecurityWeek · Aug 14, 2026 Medium USUKSWdata breachshippingvulnerability
threat-intel Cyber actualités ZATAZ de la semaine du 10 au 16 août 2026 This week’s ZATAZ news highlights a surge in data breaches and phishing attacks targeting various organizations across Europe. Key incidents include a data leak exposing 148,288 motorists’ information from Cars.no, a mas… ZATAZ · Aug 13, 2026 High CVE-2026-59310FRTAPAphishingdata-breachransomware
threat-intel Curiouser and Curiouser Cisco Talos has identified "JWR", a new phishing framework and variant of "The Outsider" as a service, used to steal payment data, 2FA codes, and device fingerprints via SMS lures impersonating regional authorities. The… Cisco Talos · Aug 13, 2026 High phishingsmsmfa
vulnerability Magento visé quelques heures après la divulgation d’un correctif A critical vulnerability (CVE-2026-71362) in Adobe Commerce, Commerce B2B, and Magento Open Source has been actively exploited shortly after its patch release. While no confirmed customer breaches have been publicly repo… ZATAZ · Aug 13, 2026 Critical CVE-2026-71362session hijackingpatchecommerce
threat-intel New Mirai variant adds stealth capabilities to notorious botnet code A new, stealthier variant of the Mirai botnet, dubbed Evooo1Bot, has been actively exploiting vulnerabilities in internet-facing hardware for over a month. This malware boasts advanced features like encrypted communicati… The Record · Aug 13, 2026 High CACHGEmiraibotnetvulnerability
threat-intel Maisons du Monde : une fuite au timing troublant A cybercriminal has allegedly put up for sale a database containing 135,081 customer records belonging to Maisons du Monde, including names, dates of birth, addresses, phone numbers, and email addresses. The timing of th… ZATAZ · Aug 13, 2026 Medium UKdata breachphishingsocial engineering
vulnerability Adobe Commerce Bug Targeted Immediately After Disclosure A critical vulnerability in Adobe Commerce and Magento allowed unauthenticated attackers to gain access to other customer accounts immediately after its disclosure. Adobe swiftly released a patch, but threat actors were… SecurityWeek · Aug 13, 2026 Critical CVE-2026-71362vulnerabilityecommerceadobe