threat-intel Newly SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode A previously unreported Windows backdoor, dubbed SLEEPWALKER, has been identified by a malware researcher. The backdoor remains dormant until a specific crafted network packet is received, at which point it executes a cu… The Hacker News · 4d ago High backdoorside-loadingvmci
threat-intel Fake Apple Support AI Calls Target Stolen-Device Owners for Passcodes and 2FA Codes A sophisticated phishing-as-a-service platform, dubbed AnonyMousKIT, is being used to target stolen Apple devices and trick owners into providing their passcodes and 2FA codes, enabling Activation Lock removal. Operated… The Hacker News · 4d ago High ZABRUSphishingactivation lock2fa
threat-intel 58 arrested in international cybercrime crackdown Interpol and law enforcement agencies across 22 countries concluded Operation Jackal IV, resulting in the arrest of 58 individuals involved in a coordinated cybercrime operation. The operation targeted a crime-as-a-servi… The Record · 5d ago High ARITROcybercrimeromance scamsmoney laundering
threat-intel U.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure Breaches The U.S. Treasury has imposed fresh sanctions on nearly 60 Iran-linked entities, including individuals and vessels, as part of "Operation Economic Outcast." These sanctions target a cyber group affiliated with Iran's Min… The Hacker News · 5d ago High IRUKsanctionscyber espionagecritical infrastructure
threat-intel Frontier AI: Vulnerability Management's Systemic Revolution This article discusses how the rapid advancements in Frontier AI models, like those developed by Anthropic, are forcing vulnerability management programs to undergo a significant transformation. Traditional vulnerability… The Hacker News · 5d ago High vulnerability managementfrontier aicybersecurity
vulnerability Multiples vulnérabilités dans Cisco IOS XE (25 août 2026) Cisco has announced multiple vulnerabilities in its IOS XE software, allowing attackers to bypass security policies and potentially cause unspecified security issues. These vulnerabilities affect several versions of the… CERT-FR · 5d ago High CVE-2026-20267CVE-2026-20268CVE-2026-20269ciscoios xevulnerability
threat-intel ToxicPanda Banking Trojan Matures into Enterprise Threat ToxicPanda, a banking Trojan, has evolved into a more sophisticated enterprise threat, expanding its reach beyond individual banking apps to compromise entire Android devices and potentially access corporate resources. T… Dark Reading · 6d ago High LAITPObankingmobileenterprise
threat-intel WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords Two new malware families, WordlistLoader and SynkLoader, are being used to deliver the Amatera Stealer via ClickFix phishing campaigns. WordlistLoader reconstructs shellcode for Amatera, utilizing techniques to evade det… The Hacker News · 6d ago High phishingransomwaremalware
threat-intel Cyber actualités ZATAZ de la semaine du 17 au 23 août 2026 This week’s cybersecurity news is dominated by data breaches, ransomware attacks, and widespread data exposures. ShinyHunters is targeting Logitech and Streamlabs, while RingCentral has experienced a massive 1.6 million… ZATAZ · Aug 22, 2026 High FRBESOransomwaredata breachvpn
threat-intel ShinyHunters menace Logitech et Streamlabs The ShinyHunters group is aggressively targeting numerous companies, including Logitech and Streamlabs, using a coordinated extortion campaign. They claim to have compromised vast amounts of sensitive data – including pe… ZATAZ · Aug 22, 2026 High SWEUdata breachextortioncyber extortion
threat-intel AWS Security makes an inscrutable choice This article is a collection of security-related news snippets from The Register. It highlights a range of issues, including a phishing campaign impersonating Signal support, a zero-day vulnerability in on-prem SharePoin… The Register · Aug 21, 2026 Medium IRphishingzero-dayransomware
threat-intel Homeland security cybercops say patch TrueConf (Russia's Zoom) if you're using it US Homeland Security cybersecurity officials are warning users of TrueConf, a video conferencing tool developed in Russia, to urgently patch the software due to a critical vulnerability that could allow attackers to remo… The Register · Aug 21, 2026 Critical CVE-2026-72529CVE-2026-72530RUUSvulnerabilitycybersecurityrussia
threat-intel Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near Chip manufacturers are proactively integrating post-quantum cryptography (PQC) into their hardware to prepare for the future threat of quantum computers. While a full transition will take years, companies like Intel and… Dark Reading · Aug 21, 2026 High quantum computingpost-quantum cryptographyhardware security
threat-intel Deux millions de données françaises mises en vente A French-language hacker is offering a database containing approximately two million French records (including identity information, contact details, addresses, and birthdates) for sale on a criminal forum. The seller’s… ZATAZ · Aug 21, 2026 Medium FRdata breachidentity theftsocial engineering
vulnerability Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0 Cisco has released security updates to address nine vulnerabilities affecting its Crosswork and Secure Workload platforms. These flaws, discovered during internal testing, range in severity from critical to medium and co… The Hacker News · Aug 21, 2026 High CVE-2026-20030CVE-2026-20357CVE-2026-20358securitypatchvulnerability
threat-intel The invisible passenger in your car Researchers at Securelist discovered a new Android malware campaign targeting automotive head units, orchestrated by the MoYu Group, a group linked to the BADBOX botnet. The malware, delivered through legitimate system u… Securelist · Aug 21, 2026 High androidiotbotnet
threat-intel Who Got Missed in the MFA Rollout? More Powershell + Graph + Entra scripting!, (Fri, Aug 21st) This script identifies users within an organization who have not yet been enrolled in multi-factor authentication (MFA) using the Microsoft Graph API. It leverages a beta command to efficiently list un-registered users,… SANS Internet Storm Center · Aug 21, 2026 Info mfamicrosoftgraph
threat-intel Multiples vulnérabilités dans le noyau Linux de Debian LTS (21 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian LTS. These vulnerabilities allow for privilege escalation, data compromise, and denial of service. The affected systems include Debian 12 Bookwo… CERT-FR · Aug 21, 2026 High CVE-2025-40098CVE-2026-45897CVE-2026-45901vulnerabilitylinuxkernel
vulnerability Vulnérabilité dans Microsoft Entra ID (21 août 2026) A critical vulnerability (CVE-2026-69836) has been identified in Microsoft Entra ID, allowing for remote code execution. While initially reported as actively exploited, Microsoft has clarified that it is currently not be… CERT-FR · Aug 21, 2026 Critical CVE-2026-69836entria idremote code executioncve
threat-intel Multiples vulnérabilités dans le noyau Linux de SUSE (21 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of SUSE. Several of these vulnerabilities allow for privilege escalation, data confidentiality breaches, and data integrity issues. These vulnerabilities… CERT-FR · Aug 21, 2026 High CVE-2023-2058CVE-2025-38238CVE-2025-38250linuxkernelvulnerability