threat-intel OpenAI Unveils New Cybersecurity Model GPT-5.6-Cyber OpenAI has released GPT-5.6-Cyber, a new AI model specifically designed for advanced cybersecurity tasks, including finding zero-days and creating exploit chains. This model addresses limitations of its predecessor, GPT-… SecurityWeek · Aug 11, 2026 High aicybersecurityvulnerability
threat-intel Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G This article discusses a security vulnerability where malicious actors are exploiting SIM cards to disable phones, steal data, and potentially downgrade connections to 2G, enabling more sophisticated phishing attacks. Th… The Register · Aug 11, 2026 High CVE-2025-48618CHRUsim cardphishingtelecom security
ransomware Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks The Gunra ransomware group, linked to state-sponsored actors, is aggressively targeting critical infrastructure and organizations globally, leveraging vulnerabilities in Fortinet and Schneider Electric appliances to gain… The Hacker News · Aug 11, 2026 High CVE-2024-5559CVE-2025-24472SOBRSPransomwarevulnerabilitysupply-chain
threat-intel Steam : une fuite chez CEVA expose des clients européens A data breach at CEVA Logistics, a logistics provider for Steam, has exposed customer delivery data, including names, addresses, phone numbers, and order details. This exposes Steam users, particularly in Europe, to targ… ZATAZ · Aug 11, 2026 High DEdata breachphishingsupply chain
threat-intel Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine Polish power plant operators suffered a significant cyberattack that led to the shutdown of a steam turbine and process-water treatment system. The attack exploited a private cellular network used by the grid operator to… The Hacker News · Aug 11, 2026 High CVE-2023-32349CVE-2023-32350PLprivate apnindustrial control systemscyberattack
supply-chain BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins A supply chain attack originating from BdThemes, a WordPress plugin vendor, has been discovered, allowing threat actors to create rogue administrator accounts and install malicious plugins across WordPress sites. The att… The Hacker News · Aug 11, 2026 High CVE-2026-18072CVE-2026-64638wordpresssupply-chainxss
threat-intel Multiples vulnérabilités dans les produits SAP (11 août 2026) Multiple vulnerabilities have been discovered in SAP products, including remote code execution, privilege escalation, and data confidentiality breaches. These vulnerabilities can be exploited to cause significant damage.… CERT-FR · Aug 11, 2026 High CVE-2025-42947CVE-2025-58057CVE-2026-33871vulnerabilitysapsecurity
threat-intel Deux pirates revendiquent le piratage de pro du Cloud Two hackers, Misere and Chimeraz, claim to have breached BlgCloud, a French cloud software provider, gaining access to approximately 159 client environments and allegedly stealing sensitive professional data. They are no… ZATAZ · Aug 10, 2026 High FRdata breachextortioncloud security
threat-intel Cars.no : une fuite revendiquée expose 148 288 automobilistes A Norwegian security researcher claims to have discovered a publicly accessible database belonging to Cars Software, an automotive software provider used by over 500 garages, dealerships, and wholesalers in Norway. The d… ZATAZ · Aug 10, 2026 High NOdatabasephishingdata breach
threat-intel Des kiosques Pokémon exposés par une fuite Firebase A clandestine publication alleges that a US-based automated distribution operator exposed sensitive data – including bank details, email addresses, source code, and technical access – across multiple continents via expos… ZATAZ · Aug 10, 2026 High USJPAUdata breachapiauthentication
threat-intel Un phishing Ameli qui observe avant de frapper This article details a sophisticated phishing campaign mimicking the French Assurance Maladie (health insurance) to steal user data and potentially launch further attacks. The campaign uses a layered approach, including… ZATAZ · Aug 10, 2026 High FRINphishingsocial engineeringcloaking
threat-intel The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations and Communications Aeternum is a newly discovered blockchain-based botnet loader utilizing the Polygon blockchain for command and control. Instead of relying on traditional servers, threat actors use smart contracts to issue encrypted inst… Palo Alto Unit 42 · Aug 10, 2026 High blockchainc2polygon
threat-intel 'GhostJacking' Exposes Identity Governance Gaps in AI Agents Researchers at Tenet Security have demonstrated a significant vulnerability in AI agents, dubbed ‘GhostJacking,’ where attackers can manipulate security alerts and logs to trick agents into executing malicious commands a… Dark Reading · Aug 10, 2026 High aiartificial intelligenceagentjacking
threat-intel Une fausse lettre AR24 vole les identifiants mail This article details a phishing campaign mimicking AR24 to steal email credentials. The attackers use a fake ‘letter of recommendation’ email with a fabricated ‘invoice due’ to create a sense of urgency and trick victims… ZATAZ · Aug 10, 2026 High phishingsocial engineeringcredential theft
threat-intel Multistate Water System Attacks Widen, Iran Suspected A coordinated campaign targeting water and wastewater systems across multiple states is underway, potentially linked to Iran and the CyberAv3ngers hacktivist group. Threat actors are exploiting poorly secured PLCs – indu… Dark Reading · Aug 10, 2026 High IRplccyberattackcritical infrastructure
vulnerability Metabase SQL Zero-Day Attacks Could Have Wide Blast Radius A zero-day SQL-injection vulnerability in Metabase Cloud is actively being exploited, potentially impacting a wide range of organizations beyond Metabase customers. The vulnerability allows remote attackers to gain admin… Dark Reading · Aug 10, 2026 High sql-injectionzero-dayvulnerability
threat-intel Une nouvelle fuite pour la FF Handball ? A hacker claims to have compromised an internal tool of the French Handball Federation (FFHB), exposing over 1.3 million lines of data and sensitive documents, including IDs, passports, and medical records. The hacker in… ZATAZ · Aug 10, 2026 High FRdata breachcredential stuffingdata leak
threat-intel À vendre : les coulisses d’un empire du pari A cybersecurity news platform has uncovered a pattern of suspicious activity by a single online seller offering access to vast databases of gambling-related data, including player information, casino prospects, and crypt… ZATAZ · Aug 10, 2026 High AZGEINdata-breachthreat-intelgambling
threat-intel Meta’s Ray-Bans are being banned from pubs, restaurants, and theatres Meta's Ray-Ban smart glasses are facing increasing bans in venues across the UK due to concerns about covert surveillance. The glasses, which resemble ordinary spectacles, can record audio and video, and a recent investi… Graham Cluley · Aug 10, 2026 High UKKESWprivacysurveillanceai
threat-intel FBI, South Korea warn of Gunra ransomware gang targeting critical infrastructure The FBI and South Korea’s government have issued a cybersecurity advisory warning of the Gunra ransomware gang, which is exploiting vulnerabilities in Fortinet firewalls to target critical infrastructure organizations gl… The Record · Aug 10, 2026 High CVE-2024-55591CVE-2025-24472SONOransomwarevulnerabilitysupply-chain