threat-intel Cl0p industrialise ses attaques via PTC Windchill A critical vulnerability in PTC Windchill and FlexPLM has been exploited by the Cl0p group, leading to a widespread campaign targeting nearly 50 international companies, including Philips, Shell, Fiserv, and GE. The vuln… ZATAZ · Aug 13, 2026 High CVE-2026-12569vulnerabilitysupply-chainremote-code-execution
threat-intel Global Threat Campaign Hits Critical VMware vCenter Flaw A single threat actor has been aggressively exploiting a critical vulnerability (CVE-2026-59310) in VMware vCenter, initiating a global threat campaign that began shortly after public disclosure. The vulnerability, a dir… Dark Reading · Aug 13, 2026 High USFRIRvulnerabilityexploitreverse_ssh
vulnerability GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE A newly discovered zero-day SQL injection vulnerability in GeoServer is currently being actively exploited. The vulnerability, which has been assigned a GitHub security advisory identifier (GHSA-mqjf-5f49-2fjh), allows f… The Hacker News · Aug 13, 2026 Critical CVE-2024-36401CVE-2023-25158CVE-2023-25157sql injectionzero-dayremote code execution
threat-intel Fisc : un accès illégitime confirmé a exposé des données A breach in the French tax authority (DGFiP) system in June 2026 led to unauthorized access and the extraction of sensitive data, potentially impacting up to 678,437 individuals and a further two million property owners.… ZATAZ · Aug 13, 2026 High FRdata breachtax datafrench government
threat-intel ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories This week's ThreatsDay Bulletin highlights a diverse range of security threats, including AI-related attacks, data breaches, and malware campaigns. Key concerns include GhostJacking, where AI agents are hijacked to execu… The Hacker News · Aug 13, 2026 High CVE-2026-20685USUKSWaiagentjackingdata breach
threat-intel Cl0p cible Philips et Shell, deux géants européens Cybercriminal group Cl0p has added Philips and Shell to its list of victims, claiming to have stolen 89GB of data from Shell and 13.5GB from Philips. Philips acknowledges a attempted compromise on an internal server, whi… ZATAZ · Aug 13, 2026 Medium NLGBcybercrimedata breachincident response
threat-intel Curiouser and Curiouser Cisco Talos has identified "JWR", a new phishing framework and variant of "The Outsider" as a service, used to steal payment data, 2FA codes, and device fingerprints via SMS lures impersonating regional authorities. The… Cisco Talos · Aug 13, 2026 High phishingsmsmfa
threat-intel ZATAZ FAIT SON GRAND MÉNAGE D’ÉTÉ : LES OUTILS CYBER FONT PEAU NEUVE ZATAZ has revamped its cybersecurity resource page, offering a comprehensive collection of tools and educational materials designed to enhance cybersecurity awareness and skills. The update includes a wide range of resou… ZATAZ · Aug 13, 2026 Medium cyber threat intelligenceosintdark web
threat-intel ZATAZ vérifiera en direct si votre mail est exposé ZATAZ has discovered a massive collection of 1.7 billion French email addresses and passwords, obtained from a darkweb storage space. The data, dating back to 2013, was extracted from a compromised cloud service and repr… ZATAZ · Aug 13, 2026 High FRdarkwebcredentialsphishing
threat-intel Flock tightens privacy controls amid scandals over officer abuse Flock Safety, a license plate reader company, is implementing new privacy controls and requirements to address concerns about law enforcement misuse of its technology. Following numerous reports of officers using the cam… The Record · Aug 13, 2026 Medium surveillanceprivacycivil liberties
vulnerability Magento visé quelques heures après la divulgation d’un correctif A critical vulnerability (CVE-2026-71362) in Adobe Commerce, Commerce B2B, and Magento Open Source has been actively exploited shortly after its patch release. While no confirmed customer breaches have been publicly repo… ZATAZ · Aug 13, 2026 Critical CVE-2026-71362session hijackingpatchecommerce
vulnerability VMware vCenter : des serveurs français compromis A critical vulnerability, CVE-2026-59310, affecting VMware vCenter has been actively exploited since August 3rd, with over 360 compromised IP addresses across 47 countries, including a significant number in France. The v… ZATAZ · Aug 13, 2026 High CVE-2026-59310CVE-2026-47876CVE-2026-59309DEUSTRvulnerabilityexploitreverse shell
threat-intel Ghost Tap : une fraude NFC signalée depuis Pattaya This article details a case in Pattaya, Thailand, where a reader of ZATAZ discovered a NFC-based banking fraud. The incident highlights a technique called ‘Ghost Tap,’ where a compromised device relays NFC communications… ZATAZ · Aug 13, 2026 Medium THnfcfraudrelay
threat-intel New Mirai variant adds stealth capabilities to notorious botnet code A new, stealthier variant of the Mirai botnet, dubbed Evooo1Bot, has been actively exploiting vulnerabilities in internet-facing hardware for over a month. This malware boasts advanced features like encrypted communicati… The Record · Aug 13, 2026 High CACHGEmiraibotnetvulnerability
threat-intel Maisons du Monde : une fuite au timing troublant A cybercriminal has allegedly put up for sale a database containing 135,081 customer records belonging to Maisons du Monde, including names, dates of birth, addresses, phone numbers, and email addresses. The timing of th… ZATAZ · Aug 13, 2026 Medium UKdata breachphishingsocial engineering
threat-intel Trump wants to grant private cyber firms a license to hack back This article is a collection of security and technology news snippets. It highlights a range of developments, including a potential US government initiative to allow private cybersecurity firms to conduct offensive opera… The Register · Aug 13, 2026 Medium IRcybersecurityphishingransomware
threat-intel New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure A Pakistan-aligned threat actor, APT36 (Transparent Tribe), is targeting Afghan telecom providers and critical infrastructure in South Asia with a new backdoor campaign called PATCHCORD. The campaign utilizes sector-spec… The Hacker News · Aug 13, 2026 High CVE-2024-6387AFINbackdoorc2afghanistan
threat-intel The backup Microsoft never promised you Microsoft’s native data retention and recovery tools aren’t a substitute for true cyber resilience, leaving businesses vulnerable when ransomware attacks compromise their identity management (Entra ID). The gap between a… The Register · Aug 13, 2026 High identity theftransomwaredata recovery
threat-intel Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 In July 2026, a significant wave of cybersecurity mergers and acquisitions occurred, with 21 deals announced. These transactions involved companies like Bank of America acquiring MDSec Consulting, Barracuda Networks acqu… SecurityWeek · Aug 13, 2026 Medium UNISTEmergersacquisitionscybersecurity
threat-intel Black Hat USA 2026: Will vulnerability discovery eventually decline in the AI era? The rapid increase in vulnerability discovery, driven by advancements in AI models like Anthropic's Claude Mythos, is overwhelming cybersecurity teams and raising concerns about responsible disclosure. The sheer volume o… WeLiveSecurity · Aug 13, 2026 High aivulnerabilitydiscovery