threat-intel UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data UNC6671, a data extortion group linked to ShinyHunters and potentially SLH, is leveraging sophisticated vishing tactics to steal SaaS data from organizations across multiple sectors. They impersonate IT help desks, direc… The Hacker News · Aug 7, 2026 High NOAUU.vishingphishingdata-breach
threat-intel Military device manufacturer discloses cyber incident to SEC IEH Corporation, a military device manufacturer, suffered a cyberattack after an employee fell victim to a phishing scheme, gaining unauthorized access to their email account. The attackers accessed sensitive data includ… The Record · Aug 7, 2026 Medium INUSphishingcyberattackdata-breach
threat-intel Beware cut-price AI services that read your every word A massive data breach occurred when hundreds of individuals paid exorbitant prices for discounted access to Anthropic's Claude AI model, exposing their personal data to malicious actors. The incident highlights the risks… Graham Cluley · Aug 7, 2026 High aidata-breachsecurity
threat-intel In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street Several significant cybersecurity events are unfolding this week, including a coordinated AI-powered scam network originating in Cambodia, a data breach at Amgen, a supply chain attack targeting QuickFox VPN, and a serie… SecurityWeek · Aug 7, 2026 High CHCAUSsupply-chainphishingransomware
threat-intel Cybernox multiplie les revendications de fuites en France Cybernox, a French cybersecurity firm, claims to have leaked sensitive data from several French companies, including BlocTel. They are linking these leaks to a broader campaign targeting Chat Control and criticizing the… ZATAZ · Aug 7, 2026 Medium data-breachfranceprivacy
vulnerability ABB Ability Zenon ABB has issued a security advisory regarding multiple vulnerabilities in its Ability Zenon industrial automation platform. These vulnerabilities, primarily related to MongoDB, could allow attackers to bypass security, cr… CISA Advisories · Aug 6, 2026 High CVE-2025-14847CVE-2020-7928CVE-2020-7921WOvulnerabilitydata-breachmalware
threat-intel Polish convenience store chain Żabka hacked through third-party account Polish convenience store chain Żabka was hacked through a third-party contractor's account, leading to the potential exposure of internal data and systems. While payment systems and customer data were reportedly unaffect… The Record · Aug 4, 2026 Medium PLsupply-chainthird-partydata-breach
threat-intel Cyberattack Hits Liechtenstein’s Register of People Behind Companies and Foundations A cyberattack compromised the Liechtenstein Register of People Behind Companies and Foundations, exposing data of approximately 31,000 individuals. The breach was discovered during a routine check and prompted a governme… SecurityWeek · Aug 3, 2026 High LIdata-breachmoney launderingfinancial crime
threat-intel Un pirate revendique un accès au CRM d’ENI A previously unknown cybercriminal, appearing on a dark web forum, claims to have gained access to ENI’s French professional space in October 2025 via phishing, exposing customer data, invoices, and sensitive account man… ZATAZ · Jul 31, 2026 Medium phishingdata-breachcredential-theft
threat-intel FTC sues Hims & Hers for allegedly sharing patient information with third-party platforms The Federal Trade Commission (FTC) is suing Hims & Hers, a telehealth company, for allegedly sharing sensitive patient information with third-party advertising platforms, despite claiming to prioritize patient privacy. T… The Record · Jul 29, 2026 Medium data-breachprivacytelehealth
threat-intel Un ancien député-maire ciblé sur un forum pirate An ex-French MP-Mayor is being targeted by a hacker who claims to be protesting the extension of Chat Control 1.0, a European surveillance program. The hacker has announced the re-publication of intimate videos from 2017… ZATAZ · Jul 27, 2026 High FRsurveillancedata-breachprivacy
vulnerability Multiples vulnérabilités dans les produits Atlassian (27 juillet 2026) Multiple vulnerabilities have been discovered in Atlassian products, including Confluence Data Center and Jira Service Management. These vulnerabilities allow for remote code execution, privilege escalation, denial of se… CERT-FR · Jul 27, 2026 High CVE-2022-37599CVE-2022-37601CVE-2022-37603vulnerabilitysupply-chaindata-breach
threat-intel Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE Threat actors linked to the Cl0p ransomware group are exploiting internet-exposed PTC Windchill and FlexPLM deployments to gain unauthenticated remote code execution and steal sensitive data for extortion. The campaign l… The Hacker News · Jul 25, 2026 Critical CVE-2026-12569vulnerabilityransomwaredata-breach
threat-intel B9 : 36 000 profils bancaires annoncés piratés A French news outlet, ZATAZ, reports that approximately 36,000 bank profiles, including sensitive financial and personal data like Social Security numbers, have been leaked. The data originates from Bnine.com, a platform… ZATAZ · Jul 24, 2026 High data-breachscrapingphishing
data-breach Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts Two separate data breaches have exposed the personal information of tens of millions of users across Suno, an AI music generator, and Paidwork, a gig-work platform. Hackers obtained user data and source code, leading to… SecurityWeek · Jul 22, 2026 High data-breachgig-economyscraping
vulnerability Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data A vulnerability in the Adobe Acrobat Chrome extension (HermeticReader, CVE-2026-48294) allows attackers to silently steal WhatsApp Web data by tricking users into visiting a malicious website. The flaw requires only user… The Hacker News · Jul 22, 2026 High CVE-2026-48294chromeextensionwhatsapp
vulnerability Flaw in Adobe Extension With 300M Installs Enabled WhatsApp Data Theft A widely-used Adobe Chrome extension was exploited to steal WhatsApp data by tricking users into visiting a malicious webpage. The vulnerability, dubbed HermeticReader, allowed attackers to silently access users' private… SecurityWeek · Jul 22, 2026 High CVE-2026-48294uxsschromedata-breach
threat-intel EU Financial Institutions Leak Data Through Cookie Trackers European financial institutions are inadvertently exposing customer data to third-party advertising and analytics platforms through tracking pixels, even when users haven't consented to tracking. Jscrambler’s research re… Dark Reading · Jul 22, 2026 High FRPOSPdata-breachprivacygdpr
threat-intel ISC Stormcast For Wednesday, July 22nd, 2026 https://isc.sans.edu/podcastdetail/10018, (Wed, Jul 22nd) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions with sophisticated spear-phishing attacks. The campaigns leveraged compromised credentials and utilized a… SANS Internet Storm Center · Jul 22, 2026 High phishingcredential-stuffingemail-security
threat-intel On Flock License Plate Tracking Cameras A writer was mistakenly identified and tracked by Flock license plate cameras, leading to an arrest. The issue stemmed from Flock’s AI system flagging vehicles with similar alphanumeric plate structures, even when the fu… Schneier on Security · Jul 20, 2026 Medium USsurveillanceprivacylicense plate