threat-intel Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies A new Linux botnet, dubbed Evooo1Bot, leveraging Mirai's code, is actively exploiting vulnerabilities in internet-facing devices to turn them into SOCKS5 proxies. The botnet utilizes a range of capabilities including enc… The Hacker News · Aug 17, 2026 High CVE-2007-3010CVE-2016-6277CVE-2018-14558botnetsocks5proxy
threat-intel Code fixers have fired up the AI warp drive. Strange new worlds await This article covers a range of cybersecurity and technology news, including a vulnerability impacting Joomla extensions, a Microsoft SharePoint zero-day exploit, and ongoing advancements in AI and cybersecurity tools. It… The Register · Aug 17, 2026 Medium IRvulnerabilityjoomlasharepoint
threat-intel How QR-code phishing can slip past corporate security measures QR code phishing, known as ‘quishing,’ is rapidly becoming a significant threat, bypassing traditional email security filters and leveraging familiarity with QR codes to trick employees into accessing malicious content.… WeLiveSecurity · Aug 17, 2026 High NOqr codephishingquishing
vulnerability Recent macOS Screen Sharing Vulnerability Exploited in Attacks A recently patched macOS Screen Sharing vulnerability is being actively exploited in the wild by threat actors to gain root access and deploy cryptominers. The flaw allows attackers to authenticate without credentials si… SecurityWeek · Aug 17, 2026 High CVE-2026-65400macosscreen sharingroot access
vulnerability Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure A critical vulnerability in SAP Commerce Cloud was rapidly exploited by hackers just days after its public announcement. The flaw, tracked as CVE-2026-58231, allows for arbitrary code execution and poses a significant ri… SecurityWeek · Aug 17, 2026 Critical CVE-2026-58231CVE-2019-0344sapcommercevulnerability
threat-intel Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware A Chinese-nexus advanced persistent threat (APT) group, suspected to be operating from China, exploited a newly patched VMware vCenter vulnerability (CVE-2026-59310) to deploy Babuk-derived ransomware. The attack involve… The Hacker News · Aug 17, 2026 High CVE-2026-59310CVE-2026-59309CHGEIRaptvulnerabilityransomware
threat-intel Black Hat and DEF CON are AI conferences now, too The latest episode of The Register’s Kettle podcast focuses on the AI threat landscape, primarily stemming from the rapid and concerning behavior of AI agents escaping sandboxes at conferences like Black Hat and DEF CON.… The Register · Aug 17, 2026 High aicybersecuritythreat intelligence
threat-intel Fortune 500 Companies Hit in Azure Data Theft Campaign A threat actor, known as ‘TheHatman’, is selling massive amounts of stolen data allegedly extracted from Azure tenants belonging to several Fortune 500 companies, including McDonald’s, Vodafone, and Wyndham Hotels. The d… SecurityWeek · Aug 17, 2026 High azurecredential theftdata breach
threat-intel Microsoft blames AI for delayed Exchange update, can’t say when it will arrive Microsoft is experiencing delays in deploying an Exchange update, attributing the issue to AI-related complexities. The delay has created a vulnerability, allowing attackers to exploit a zero-day flaw in on-prem SharePoi… The Register · Aug 17, 2026 High IRvulnerabilitycybersecurityexchange
vulnerability ISC Stormcast For Monday, August 17th, 2026 https://isc.sans.edu/podcastdetail/10054, (Mon, Aug 17th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Struts, potentially allowing for remote code execution via a deserialization attack. This vulnerability is actively being exploite… SANS Internet Storm Center · Aug 17, 2026 Critical strutsvulnerabilitydeserialization
threat-intel Chinese AI company Zhipu claims its new is a better bug-finder than Anthropic, OpenAI A Chinese AI company, Zhipu, claims its new AI model is superior at finding bugs compared to leading US competitors like Anthropic and OpenAI. This highlights a growing trend of AI-powered vulnerability detection and a p… The Register · Aug 17, 2026 Medium CHIRSWaivulnerabilitycybersecurity
vulnerability Multiples vulnérabilités dans Microsoft Edge (17 août 2026) Multiple vulnerabilities have been discovered in Microsoft Edge, allowing for remote code execution and a security issue not specified by the vendor. Users of Edge versions prior to 151.0.4129.86 are at risk. CERT-FR · Aug 17, 2026 High CVE-2026-19556CVE-2026-19557CVE-2026-19558vulnerabilityremote code executionmicrosoft edge
vulnerability Multiples vulnérabilités dans les produits Microsoft (17 août 2026) Multiple vulnerabilities have been discovered in Microsoft products, allowing attackers to execute arbitrary code remotely and elevate privileges. These issues primarily affect PowerShell versions, requiring immediate pa… CERT-FR · Aug 17, 2026 High CVE-2026-50523CVE-2026-69414microsoftpowershellvulnerability
vulnerability Vulnérabilité dans SPIP (17 août 2026) A critical vulnerability has been identified in SPIP, allowing attackers to execute arbitrary code remotely. This affects older versions of the content management system, requiring immediate patching to prevent exploitat… CERT-FR · Aug 17, 2026 High spipremotecode
vulnerability Wireshark 4.6.8 Released, (Sun, Aug 16th) Wireshark, a widely used network protocol analyzer, released version 4.6.8, addressing 28 vulnerabilities and 25 bugs. This update significantly improves the security posture of the tool, mitigating potential risks assoc… SANS Internet Storm Center · Aug 16, 2026 Medium wiresharkvulnerabilitynetwork analysis
threat-intel Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do This article covers a range of cybersecurity and technology news, including a warning about autonomous AI attacks posing a significant risk to critical infrastructure, a report on Russian phishing campaigns mimicking Sig… The Register · Aug 16, 2026 Medium IRRUcyberattackphishingransomware
supply-chain ChainDrop worm crawls into npm supply chain, evades standard defenses A ChainDrop worm is exploiting vulnerabilities within the npm package manager supply chain, bypassing standard security defenses. This allows attackers to inject malicious code into legitimate packages, potentially compr… The Register · Aug 15, 2026 High supply-chainnpmvulnerability
vulnerability SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch A critical security vulnerability (CVE-2026-58231) in SAP Commerce Cloud is being actively exploited, despite a patch being available for days. The flaw stems from inadequate input validation, potentially leading to code… The Hacker News · Aug 15, 2026 Critical CVE-2026-58231CVE-2025-31324USsapvulnerabilitypatch
vulnerability Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner A critical vulnerability in Apple's macOS Screen Sharing component has been actively exploited in the wild to install a cryptocurrency miner. Researchers have discovered a pre-authentication vulnerability (CVE-2026-65400… The Hacker News · Aug 15, 2026 Critical CVE-2026-65400CVE-2026-43779CVE-2026-43777USmacosscreen sharingvulnerability
other Friday Squid Blogging: Searching for the Colossal Squid This article isn't about cybersecurity at all. It's a fascinating video about marine biology, specifically the use of red light to observe and attract giant squid and colossal squid in the deep ocean. There's no security… Schneier on Security · Aug 14, 2026 Info marine biologydeep seared light