vulnerability Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL ServiceNow has released security patches for four critical vulnerabilities in its AI Platform, including three rated at 10.0 CVSS, that could allow unauthenticated attackers to execute code, create or modify instance dat… The Hacker News · 2d ago Critical CVE-2026-18885CVE-2026-18886CVE-2026-74820cvssvulnerabilitycode injection
threat-intel AI Doesn’t Mean the End of Mathematics—at Least Not Yet Mathematicians are cautiously optimistic about the future of their profession in the face of increasingly powerful AI models. While AI is currently adept at finding counterexamples to existing mathematical problems and a… Schneier on Security · 2d ago Medium aimathematicsartificial intelligence
threat-intel Tech, Cybersecurity Giants Unite Behind OpenAI-Led Cyber Defense Pledge Nearly 130 cybersecurity and tech companies, led by OpenAI, have pledged a coordinated global effort to bolster cyber defenses against increasingly sophisticated AI-powered attacks. The initiative focuses on addressing t… SecurityWeek · 2d ago Medium aicybersecuritythreat intelligence
threat-intel Industry that built the problem offers to sell you the solution Several tech companies are grappling with the rising costs associated with AI development and deployment, leading to a paradoxical situation where they are now offering solutions to their customers – often at a premium.… The Register · 2d ago Medium USIRCHaihardwarecybersecurity
threat-intel China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access A Chinese-made router manufacturer, Zhibotong Electronics (ZBT) through its brand Zbtlink, ships routers with two factory-installed implants – SPEAKINGSTONE and DARKLANTERN – that provide unauthenticated remote access to… The Hacker News · 2d ago High CVE-2026-74232CVE-2026-74233CVE-2026-66747CHc2routerfirmware
threat-intel Think You’ve Eliminated Chinese AI? Check the Model’s Lineage, Cisco Says Cisco research reveals that country-of-origin labels on AI models are misleading because they don't accurately reflect a model's lineage and can mask potentially problematic inherited behaviors. The study highlights a ‘s… SecurityWeek · 2d ago Medium CHUSaimodel lineageprovenance
supply-chain Shai-Hulud hackers: two men charged over TeamPCP’s global supply chain crime spree that hit OpenAI, and thousands more Two men from Western Australia have been charged in connection with TeamPCP, a cybercriminal group responsible for a global supply-chain hacking campaign that targeted over 1000 organizations, including OpenAI and the Eu… Graham Cluley · 2d ago High AUsupply chainopen sourcemalware
vulnerability Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server A critical security vulnerability in cPanel and WebHost Manager (WHM) allows an authenticated user adding parked or addon domains to execute code as the root user, potentially leading to full server control. While the vu… The Hacker News · 2d ago Critical CVE-2026-65643CVE-2026-58048CVE-2026-58047cpanelvulnerabilityroot
threat-intel Cyberattaque : des hackers font tomber des réseaux électriques ! A cyberattack attributed to Iranian-linked actors has reportedly disabled a small British power generation facility for four days, marking the first time a complete shutdown of such an installation has occurred in the UK… ZATAZ · 2d ago High IRUKUNcyberattackcritical infrastructureiran
vulnerability PaperCut Releases Emergency Patch for Exploited Zero-Day PaperCut has released an emergency patch for a zero-day vulnerability being actively exploited in its print management solutions. The vulnerability, currently unassigned a CVE, is linked to malware delivery and log delet… SecurityWeek · 2d ago High USCAEUzero-dayvulnerabilitypatch
vulnerability PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions PaperCut has confirmed a zero-day vulnerability is being actively exploited in its print management software, impacting all versions of NG and MF. The company released a patch and urges users to restrict internet access… The Hacker News · 2d ago Critical CVE-2023-27350RUzero-dayprint managementvulnerability
threat-intel APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations APT28-linked threat actors, tracked as BlueDelta, have been deploying a new backdoor named HOOKEDGE to target European government and diplomatic organizations since late 2025. HOOKEDGE, a lightweight Windows batch script… The Hacker News · 2d ago High ROSPTUapt28hookedgewebhook
threat-intel Some Malicious PE Stats, (Thu, Aug 27th) A security researcher used a Python script leveraging the pefile library to analyze a large dataset of malware samples from Malware Bazaar. By examining PE file headers, including the undocumented Rich Header and .NET CL… SANS Internet Storm Center · 2d ago Medium compilerrich headerpe file
threat-intel Print management outfit PaperCut is under 0-day attack, and it’s drawing customers’ blood PaperCut, a print management software company, is experiencing a zero-day attack, leading to potential data breaches and financial harm for its customers. The attack is exploiting a vulnerability within their software, a… The Register · 2d ago High RUCHzero-dayvulnerabilityphishing
threat-intel Australian cops cuff alleged TeamPCP masterminds This article covers a range of cybersecurity and technology news stories, including a takedown of Iranian propaganda sites, a security patch for a vulnerable SharePoint instance, and a report on Joomla extension vulnerab… The Register · 2d ago Medium IRsecuritycybersecurityj2ee
threat-intel ISC Stormcast For Friday, August 28th, 2026 https://isc.sans.edu/podcastdetail/10072, (Fri, Aug 28th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions with sophisticated spear-phishing attacks. The campaigns leveraged compromised credentials and utilized a… SANS Internet Storm Center · 2d ago High phishingcredential theftspear-phishing
threat-intel Fuite présumée de données électorales dominicaines A purported leak is claiming that the Dominican Republic’s electoral authority, the Junta Central Electoral (JCE), has been compromised, with 7.1 million citizen records and nearly 5.8 million IDs potentially exposed. A… ZATAZ · 3d ago High DOidentity theftdata breachfraud
threat-intel Congo : un pirate revendique 110 000 données e-Solde A hacker is claiming to possess 110,000 records linked to e-Solde, a Congolese government portal for public servants, containing sensitive data like identities, contacts, and salary information. The hacker, known for pre… ZATAZ · 3d ago High DEPHBUdata breachgovernment datacybercrime
threat-intel L’IA pirate qui promet anonymat et zéro filtre A French-language security news outlet, ZATAZ, tested DONG, an AI service claiming to offer anonymity and unfiltered content generation. The service allows users to create tools like HTML infostealers and generate explic… ZATAZ · 3d ago High aianonymityinfostealer
threat-intel Quand les fuites de données ciblent les victimes This article highlights a concerning trend where data breaches are increasingly used to generate actionable intelligence for criminal activity, particularly targeting wealthy individuals with crypto assets and luxury goo… ZATAZ · 3d ago High FRdata-breachcryptocurrencyphysical-attacks