threat-intel Armored Likho expands its cyber-espionage toolkit The Armored Likho group (also known as Eagle Werewolf) has significantly expanded its cyber-espionage toolkit with the introduction of the ‘Still Toolkit,’ a new set of tools designed for advanced surveillance and data t… Securelist · Aug 13, 2026 High RUcyber espionagetelegramaudio surveillance
threat-intel Passwords stored in public Google Doc then showed up in search results A security incident occurred where passwords were stored in a publicly accessible Google Doc, leading to those passwords appearing in search results. This highlights a significant risk of credential exposure and undersco… The Register · Aug 13, 2026 High IRcredentialspasswordsecurity
threat-intel Using Gemma4 with Ollama - Testing File Hash Analysis and Recommendations with AI, (Wed, Aug 12th) This report details an experiment using a Large Language Model (Gemma4) to analyze malware hashes uploaded to the DShield sensor. The LLM was used to identify potential threats and recommend actions, focusing on a patter… SANS Internet Storm Center · Aug 13, 2026 High ailarge language modeldshield
threat-intel ArtNexus : une fuite expose le marché international de l’art A database belonging to ArtNexus, an international art specialist, has been publicly exposed, offering a detailed map of its business ecosystem. The database, accessible without authentication, contains thousands of acco… ZATAZ · Aug 13, 2026 High FRdatabasephishingsocial engineering
threat-intel Des accès superadmin exposent 27 sites français A single administrator account granting access to 27 French websites was leaked on a hacking forum, with a direct incentive for other members to collect and deliver all accessible data within 48 hours. The author is acti… ZATAZ · Aug 13, 2026 High FRhackingdatabaseadministrator
threat-intel Hôtelerie : encore un hôtel de luxe piraté ? A clandestine seller is offering to sell 110GB of data allegedly stolen from Gran Caribe Hotel Group, a luxury Cuban hotel chain. The data includes reservations, employee information, accounting records, inventory detail… ZATAZ · Aug 13, 2026 High CUdata breachpassword crackingsql injection
vulnerability Multiples vulnérabilités dans GitLab (13 août 2026) Multiple vulnerabilities have been discovered in GitLab, including remote code injection, denial of service, and privilege escalation. These issues affect versions 19.1.x through 19.1.4, 19.2.x through 19.2.2, and all ve… CERT-FR · Aug 13, 2026 High CVE-2025-9486CVE-2026-15216CVE-2026-15217gitlabvulnerabilityremote code injection
vulnerability Multiples vulnérabilités dans les produits Fortinet (13 août 2026) Multiple vulnerabilities have been discovered in Fortinet products, including several that could allow for remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various… CERT-FR · Aug 13, 2026 High CVE-2026-26035CVE-2026-49975CVE-2026-70465vulnerabilitypatchremote code execution
vulnerability Multiples vulnérabilités dans les produits Adobe (13 août 2026) Multiple vulnerabilities have been discovered in Adobe products, including Adobe Commerce and ColdFusion. These vulnerabilities allow for remote code execution, privilege escalation, denial of service, and circumvention… CERT-FR · Aug 13, 2026 High CVE-2026-21273CVE-2026-21279CVE-2026-25652vulnerabilitypatchadobe
threat-intel Multiples vulnérabilités dans les produits Palo Alto Networks (13 août 2026) Multiple vulnerabilities have been discovered in Palo Alto Networks products, including remote code execution, privilege escalation, and denial-of-service attacks. Several CVEs have been identified, impacting various pro… CERT-FR · Aug 13, 2026 High CVE-2026-0291CVE-2026-0292CVE-2026-0293vulnerabilitythreatsecurity
threat-intel Impots.gouv.fr : un pirate revendique une intrusion A French hacker claims to have breached impots.gouv.fr, the French tax authority’s website, and exfiltrated 678,438 lines of data, including highly detailed tax information on French citizens and businesses. The data, pr… ZATAZ · Aug 12, 2026 High FRdata-breachphishingidentity theft
threat-intel Smashing Security podcast #480: This is the AI service you should never sign up to This episode of Smashing Security tackles two distinct cybersecurity concerns: a deceptive AI service offering drastically reduced access to Anthropic's Claude model, and a phishing-as-a-service platform called ‘Greatnes… Graham Cluley · Aug 12, 2026 High phishingaiincels
threat-intel Taïwan visé par une cyberattaque pilotée par IA ? A Taiwanese cybersecurity incident, potentially linked to a Chinese operator, has involved a sophisticated campaign utilizing multiple AI agents to target government systems and critical infrastructure. Researchers at Dr… ZATAZ · Aug 12, 2026 High CHaicyberattackintelligence
threat-intel 'Near-autonomous' AI agents attack Taiwan's nuclear safety agency Taiwan's Nuclear Safety Agency is facing an attack from 'near-autonomous' AI agents, potentially leveraging a programming language developed by a company recently acquired by Qualcomm. This incident highlights the growin… The Register · Aug 12, 2026 High TAIRaicyberattacktaiwan
threat-intel Long-running Data Theft Campaign Targeting Salesforce, ServiceNow The "City-Forum" campaign, active since March 2025, has seen a threat actor targeting Salesforce and ServiceNow instances with custom tools to steal data. Unlike traditional attacks relying on publicly available tools, t… Dark Reading · Aug 12, 2026 High USCAGBsalesforceservicenowguest access
threat-intel Drones IA : l’angle mort de la vie privée Munera Intelligence in Montreal is using AI-powered drones to detect construction obstructions and other issues, raising significant privacy concerns. The article highlights the potential for extensive data collection –… ZATAZ · Aug 12, 2026 High CAFRsurveillanceaiprivacy
vulnerability Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows A Microsoft-based hacker has developed a new zero-day vulnerability in on-prem SharePoint, allowing them to gain system privileges on fully patched Windows systems. This represents a significant security risk, as it bypa… The Register · Aug 12, 2026 High CVE-2026-50656CVE-2026-33825CVE-2026-41091zero-daysharepointvulnerability
threat-intel Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor The Lazarus Group, a North Korean threat actor, is exploiting a newly patched zero-day vulnerability in Microsoft Windows' AFD.sys driver to gain SYSTEM access and deploy a backdoor called Troy. They are leveraging a sop… The Hacker News · Aug 12, 2026 High CVE-2026-68820CVE-2025-49113FRGEBRzero-daysocial engineeringphishing
threat-intel FBI: Hackers using social engineering to breach accounts and steal explicit content The FBI is warning about a growing trend of hackers using social engineering to infiltrate social media accounts, primarily to steal explicit content and sell it on criminal marketplaces. These attacks often involve impe… The Record · Aug 12, 2026 High social engineeringdata breachcybercrime
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation