threat-intel One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025 A single server has been systematically scraping data from Salesforce and ServiceNow customer portals since March 2025, targeting industries including telecoms, finance, and public sector. The attacker, operating under t… The Hacker News · Aug 18, 2026 High DEguest_accessdata_scrapingui_api
threat-intel Fuite fiscale, pas panique ! A cyber intrusion targeting the French tax authority (DGFiP) has potentially exposed sensitive data of both individuals and professionals. The incident, linked to a pirate selling stolen data on underground forums, highl… ZATAZ · Aug 18, 2026 High FRphishingdata-breachcyberattack
threat-intel SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers SafePal, a hardware wallet maker, disclosed a flaw in its order-tracking plug-in that exposed the personal data of approximately 39,798 customers, including names, addresses, and purchase details, between March 2025 and… The Hacker News · Aug 18, 2026 Medium data breachcryptocurrencyhardware wallet
data-breach 680,000 Impacted by French Tax Authority Data Breach A data breach at France’s tax authority, the DGFiP, has exposed the personal information of approximately 680,000 individuals, including reference tax income and cadastral data. The breach followed a threat actor’s boast… SecurityWeek · Aug 17, 2026 High FRdata breachgovernmenttax
data-breach 40,000 Impacted by SafePal Data Breach SafePal, a crypto hardware wallet manufacturer, has been the target of a data breach affecting approximately 40,000 customers. Hackers exploited a vulnerability in the order-tracking plugin to steal customer information,… SecurityWeek · Aug 17, 2026 Medium data breachcryptocurrencyphishing
vulnerability ISC Stormcast For Monday, August 17th, 2026 https://isc.sans.edu/podcastdetail/10054, (Mon, Aug 17th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Struts, potentially allowing for remote code execution via a deserialization attack. This vulnerability is actively being exploite… SANS Internet Storm Center · Aug 17, 2026 Critical strutsvulnerabilitydeserialization
threat-intel Investigation of banking hack leads to arrests in Germany, Brazil A coordinated investigation in Germany and Brazil has resulted in arrests and asset seizures linked to a €30 million banking hack. The hackers exploited a vulnerability in a payment provider to drain funds from German ac… The Record · Aug 14, 2026 High DEBRESbankingcybercrimemoney laundering
threat-intel France investigates tax authority breach after hacker claims 600,000 victims France’s tax authority, DGFiP, is investigating a breach that a hacker claims impacted over 600,000 individuals and businesses. The attacker gained unauthorized access to systems in late June, allowing them to steal data… The Record · Aug 14, 2026 High FRdata breachfrancegovernment
threat-intel Crypto wallet maker Trezor confirms 13,000 customers' details exposed in logistics breach Trezor, a leading cryptocurrency wallet manufacturer, has confirmed that details of approximately 13,000 customer accounts were exposed due to a logistics breach. This incident highlights a significant risk for users hol… The Register · Aug 14, 2026 High cryptocurrencyhardware walletdata breach
threat-intel ISC Stormcast For Friday, August 14th, 2026 https://isc.sans.edu/podcastdetail/10052, (Fri, Aug 14th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Aug 14, 2026 Medium phishingcredential stuffinglegacy systems
threat-intel Cyber actualités ZATAZ de la semaine du 10 au 16 août 2026 This week’s ZATAZ news highlights a surge in data breaches and phishing attacks targeting various organizations across Europe. Key incidents include a data leak exposing 148,288 motorists’ information from Cars.no, a mas… ZATAZ · Aug 13, 2026 High CVE-2026-59310FRTAPAphishingdata-breachransomware
threat-intel Cl0p industrialise ses attaques via PTC Windchill A critical vulnerability in PTC Windchill and FlexPLM has been exploited by the Cl0p group, leading to a widespread campaign targeting nearly 50 international companies, including Philips, Shell, Fiserv, and GE. The vuln… ZATAZ · Aug 13, 2026 High CVE-2026-12569vulnerabilitysupply-chainremote-code-execution
threat-intel Fisc : un accès illégitime confirmé a exposé des données A breach in the French tax authority (DGFiP) system in June 2026 led to unauthorized access and the extraction of sensitive data, potentially impacting up to 678,437 individuals and a further two million property owners.… ZATAZ · Aug 13, 2026 High FRdata breachtax datafrench government
threat-intel Trump taps cyber firms to go on offensive against criminals The Trump administration is expanding its efforts to combat cybercrime by allowing private cybersecurity firms to conduct offensive operations targeting transnational criminal networks. The initiative, outlined in a pres… The Record · Aug 13, 2026 High CHCAMYcybercrimeoffensive-cybercybersecurity
threat-intel WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud A new Android malware family, WindRelay, is being used in conjunction with a remote access trojan (RAT) called SpyNote to facilitate contactless payment fraud. The malware turns infected devices into NFC relays, allowing… The Hacker News · Aug 13, 2026 High CZSKSIandroidnfcrelay
vulnerability Belgium's eID Authentication Opens Citizen Accounts to RCE A critical vulnerability was discovered in Belgium's eID authentication system due to a severely flawed browser extension, "Connective." This vulnerability allowed attackers to steal Belgian citizens' identities, payment… Dark Reading · Aug 13, 2026 Critical BEbrowser extensionsrceidentity theft
vulnerability Attackers Exploit SharePoint Authentication Bypass After Public PoC Release Threat actors are actively exploiting a critical Microsoft SharePoint vulnerability (CVE-2026-55040) due to a bypass in the authentication feature. Following the release of a proof-of-concept by Rapid7, attackers are lev… The Hacker News · Aug 13, 2026 Critical CVE-2026-55040HOJANEjwtauthenticationsharepoint
threat-intel ISC Stormcast For Thursday, August 13th, 2026 https://isc.sans.edu/podcastdetail/10050, (Thu, Aug 13th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Aug 13, 2026 Medium phishingvulnerabilitycybersecurity
threat-intel ArtNexus : une fuite expose le marché international de l’art A database belonging to ArtNexus, an international art specialist, has been publicly exposed, offering a detailed map of its business ecosystem. The database, accessible without authentication, contains thousands of acco… ZATAZ · Aug 13, 2026 High FRdatabasephishingsocial engineering
threat-intel Impots.gouv.fr : un pirate revendique une intrusion A French hacker claims to have breached impots.gouv.fr, the French tax authority’s website, and exfiltrated 678,438 lines of data, including highly detailed tax information on French citizens and businesses. The data, pr… ZATAZ · Aug 12, 2026 High FRdata-breachphishingidentity theft