threat-intel Uber Freight keeps on trucking after extortion crew breaks in Uber Freight is experiencing ongoing issues following an extortion attempt by cybercriminals who gained unauthorized access to their systems. The attackers demanded a ransom to prevent the release of sensitive data, high… The Register · Aug 12, 2026 High cyberattackransomwarelogistics
threat-intel 737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One A massive collection of 737 Chrome VPN and proxy extensions are being used to route user traffic through a single SOCKS5 proxy infrastructure, primarily targeting Russian-speaking users seeking access to blocked content.… The Hacker News · Aug 12, 2026 High RUvpnproxychrome
threat-intel Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition Colombian Justice Ministry suffered a ransomware attack on August 2nd, disrupting services related to illicit drug monitoring and legal processes, just days before the presidential transition. The Ministry denied data th… Dark Reading · Aug 12, 2026 High COransomwarecloud securitythird-party risk
threat-intel Three intrusions at UK criminal records office went undetected for two years The UK criminal records office, ACRO, suffered three undetected intrusions over two years due to severe security failings, including unaddressed vulnerabilities in its public-facing website and ignored cybersecurity aler… The Record · Aug 12, 2026 High security breachdata breachransomware
threat-intel Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset A sophisticated and innovative campaign, dubbed ‘City-Forum,’ is targeting Salesforce and ServiceNow using a custom multi-platform toolset. The attackers are exploiting unauthenticated guest user access to gather data, p… SecurityWeek · Aug 12, 2026 High guest userunauthenticated accessdata exfiltration
vulnerability Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery Microsoft released a massive update with 62 critical and 357 important security vulnerabilities, marking a significant increase in the number of flaws discovered and highlighting the growing role of AI in vulnerability d… The Record · Aug 12, 2026 High CVE-2026-68820CVE-2026-62832vulnerabilitypatch tuesdayai
threat-intel Siemens RUGGEDCOM APE1808 A CISA advisory, in collaboration with Siemens ProductCERT, highlights vulnerabilities in Siemens RUGGEDCOM APE1808 devices when used with Fortinet NGFW. These vulnerabilities, including Cross-Site Scripting and Path Tra… CISA Advisories · Aug 12, 2026 High CVE-2026-23573CVE-2026-59839GEindustrial control systemscwe-79cwe-22
threat-intel OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning Researchers have discovered a significant vulnerability in OpenAI, Anthropic, and Google's AI APIs that allows weaker AI models to decode the reasoning processes of stronger models by replaying encrypted reasoning blocks… The Hacker News · Aug 12, 2026 High encryptionapiprompt injection
threat-intel Enterprise Defenses Recovered at the Edge and Collapsed Inside A new report from Picus Labs reveals a concerning trend in cybersecurity defenses: while overall prevention effectiveness has improved, defenses are significantly weaker *inside* a network, failing to stop quiet, reconna… The Hacker News · Aug 12, 2026 High detectionloggingreconnaissance
threat-intel Ceva Logistics Operations Disrupted by Cyberattack Ceva Logistics, a major shipping and logistics firm, has experienced a significant cyberattack that disrupted operations across eight European warehouses. The attack has impacted numerous downstream customers, including… SecurityWeek · Aug 12, 2026 High NLdata breachcyberattacklogistics
vulnerability Chipmaker Patch Tuesday: Intel, AMD Fix Over 80 Vulnerabilities Combined Intel and AMD released patches addressing over 80 vulnerabilities across their products, including fixes for privilege escalation, denial-of-service attacks, and information disclosure. The updates cover a wide range of… SecurityWeek · Aug 12, 2026 High patch tuesdayvulnerabilitiessecurity
supply-chain Over 2,500 Organizations Impacted by LiteLLM Supply Chain Attack Over 2,500 organizations and 434,000 CI/CD pipelines were impacted by a supply chain attack involving the LiteLLM AI library. The attack stemmed from a compromised version of Aqua Security’s Trivy vulnerability scanner,… SecurityWeek · Aug 12, 2026 High supply chainaicredentials
threat-intel Santé publique France visée par une cyberattaque ? A French cybersecurity news outlet reported a potential cyberattack against Santé publique France, a public health agency. A hacker, operating under the pseudonym Cybernox and associates, claimed to have gained administr… ZATAZ · Aug 12, 2026 High FRcyberattackdata breachhealthcare data
vulnerability Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access Threat actors are actively exploiting a recently patched critical vulnerability (CVE-2026-59310) in Broadcom VMware vCenter to gain persistent remote access. QUIRSO discovered a campaign involving 361 unique victim IP ad… The Hacker News · Aug 12, 2026 High CVE-2026-59310CVE-2026-59309GEUNTUvulnerabilityexploitreverse_ssh
threat-intel Fresh Windows Zero-Day Exploited in North Korean Cyberattacks North Korean hackers, operating under the Lazarus Group, are exploiting a recently patched Windows zero-day vulnerability (CVE-2026-68820) to conduct targeted attacks against defense, aerospace, and aviation organization… SecurityWeek · Aug 12, 2026 High CVE-2026-68820CVE-2025-49113FRGEBRzero-daylazarus groupcyber espionage
vulnerability Ivanti EPM Update Patches Remotely Exploitable Flaws Ivanti has released patches to address four vulnerabilities in its Endpoint Manager (EPM) and Neurons for MDM products. Two of the EPM flaws are remotely exploitable, allowing attackers to steal credentials and gain cont… SecurityWeek · Aug 12, 2026 High CVE-2026-18129CVE-2026-18125CVE-2026-18127vulnerabilitypatchremote
supply-chain Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations A supply-chain attack linked to Aqua Security's Trivy scanner has resulted in the release of two malicious LiteLLM packages containing credential-stealing code. CloudSEK identified over 2,500 organizations potentially ex… The Hacker News · Aug 12, 2026 High CVE-2026-33634USEUsupply chaincredential theftpypi
vulnerability ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact Several major industrial automation vendors – Siemens, Schneider Electric, and Phoenix Contact – released security patches to address critical vulnerabilities in their ICS products. These flaws could allow attackers to e… SecurityWeek · Aug 12, 2026 High icsindustrial control systemspatch tuesday
vulnerability ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access A security researcher, Chaotic Eclipse, has released a proof-of-concept (PoC) demonstrating a patch bypass for a Microsoft Defender zero-day vulnerability, dubbed ShieldBreak. This vulnerability, CVE-2026-50656 (RoguePla… The Hacker News · Aug 12, 2026 High CVE-2026-50656CVE-2026-62832CVE-2026-68820zero-daypatch-bypassprivilege escalation
vulnerability Cisco Patches Firewall Zero-Day Exploited for DoS Attacks Cisco has released patches to address a zero-day vulnerability (CVE-2026-20349) in its firewall software, which allows unauthenticated attackers to cause a denial-of-service attack. Cisco detected active exploitation of… SecurityWeek · Aug 12, 2026 High CVE-2026-20349zero-dayvulnerabilityasa