vulnerability Spectre rears its ugly head again as researchers show some RISC-V chips are susceptible Researchers have discovered that some RISC-V chips are vulnerable to Spectre, a hardware-level security flaw that can be exploited to steal sensitive data. This represents a resurgence of Spectre concerns, highlighting t… The Register · Aug 12, 2026 Medium spectrerisc-vhardware
threat-intel Drones IA : l’angle mort de la vie privée Munera Intelligence in Montreal is using AI-powered drones to detect construction obstructions and other issues, raising significant privacy concerns. The article highlights the potential for extensive data collection –… ZATAZ · Aug 12, 2026 High CAFRsurveillanceaiprivacy
vulnerability Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows A Microsoft-based hacker has developed a new zero-day vulnerability in on-prem SharePoint, allowing them to gain system privileges on fully patched Windows systems. This represents a significant security risk, as it bypa… The Register · Aug 12, 2026 High CVE-2026-50656CVE-2026-33825CVE-2026-41091zero-daysharepointvulnerability
threat-intel Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor The Lazarus Group, a North Korean threat actor, is exploiting a newly patched zero-day vulnerability in Microsoft Windows' AFD.sys driver to gain SYSTEM access and deploy a backdoor called Troy. They are leveraging a sop… The Hacker News · Aug 12, 2026 High CVE-2026-68820CVE-2025-49113FRGEBRzero-daysocial engineeringphishing
threat-intel FBI: Hackers using social engineering to breach accounts and steal explicit content The FBI is warning about a growing trend of hackers using social engineering to infiltrate social media accounts, primarily to steal explicit content and sell it on criminal marketplaces. These attacks often involve impe… The Record · Aug 12, 2026 High social engineeringdata breachcybercrime
threat-intel Walmart's "Trusted Agent" Approach to Purple Teaming Walmart has shifted its purple teaming strategy from a competitive red/blue team dynamic to a collaborative approach focused on building trust and continuous improvement. By co-locating teams, implementing a ‘trusted age… Dark Reading · Aug 12, 2026 Medium purple teamingtrustcollaboration
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation
threat-intel Uber Freight keeps on trucking after extortion crew breaks in Uber Freight is experiencing ongoing issues following an extortion attempt by cybercriminals who gained unauthorized access to their systems. The attackers demanded a ransom to prevent the release of sensitive data, high… The Register · Aug 12, 2026 High cyberattackransomwarelogistics
threat-intel Linux Kernel Process Accounting, (Wed, Aug 12th) This article details the Linux kernel process accounting feature, a tool for logging process activity on Linux systems. It’s a relatively simple-to-implement feature that doesn’t require kernel recompilation and can be u… SANS Internet Storm Center · Aug 12, 2026 Medium linuxprocess-monitoringlogging
threat-intel 737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One A massive collection of 737 Chrome VPN and proxy extensions are being used to route user traffic through a single SOCKS5 proxy infrastructure, primarily targeting Russian-speaking users seeking access to blocked content.… The Hacker News · Aug 12, 2026 High RUvpnproxychrome
threat-intel Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition Colombian Justice Ministry suffered a ransomware attack on August 2nd, disrupting services related to illicit drug monitoring and legal processes, just days before the presidential transition. The Ministry denied data th… Dark Reading · Aug 12, 2026 High COransomwarecloud securitythird-party risk
vulnerability Exposed: Woeful security at UK criminal records office that led to sensitive data leak A security vulnerability in Joomla extensions has been exploited to compromise numerous websites, highlighting a broader issue of security weaknesses within open-source CMS platforms. This incident underscores the ongoin… The Register · Aug 12, 2026 Medium joomlavulnerabilityopen-source
threat-intel Black Hat USA 2026: AI is racing ahead of cybersecurity controls Black Hat USA 2026 focused heavily on the accelerating role of AI in cybersecurity, both as a threat and a tool. Experts highlighted the rapid discovery of vulnerabilities by AI systems and the need for robust oversight… WeLiveSecurity · Aug 12, 2026 Medium aicybersecurityvulnerabilities
threat-intel Mindgard Raises $30 Million to Protect AI Systems AI security startup Mindgard secured $30 million in Series A funding to bolster its platform for identifying and mitigating vulnerabilities in AI systems. The company’s platform proactively tests AI models and applicatio… SecurityWeek · Aug 12, 2026 Medium aisecurityvulnerability
threat-intel Three intrusions at UK criminal records office went undetected for two years The UK criminal records office, ACRO, suffered three undetected intrusions over two years due to severe security failings, including unaddressed vulnerabilities in its public-facing website and ignored cybersecurity aler… The Record · Aug 12, 2026 High security breachdata breachransomware
threat-intel WhatsApp Unveils New Scam Alert Feature WhatsApp is rolling out a limited beta feature called Scam Alert, designed to identify potentially scam messages on users' devices *before* they are sent. The feature uses on-device machine learning, doesn't send message… SecurityWeek · Aug 12, 2026 Medium GERUmachine learningencryptionprivacy
threat-intel Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset A sophisticated and innovative campaign, dubbed ‘City-Forum,’ is targeting Salesforce and ServiceNow using a custom multi-platform toolset. The attackers are exploiting unauthenticated guest user access to gather data, p… SecurityWeek · Aug 12, 2026 High guest userunauthenticated accessdata exfiltration
threat-intel Akira ransomware scum blocked victim's security tools – and broke their own encryptor Russian threat actors are impersonating Signal support to conduct phishing attacks, targeting users to steal their information. This follows a trend of Iranian propaganda sites being taken down by the US, and a marketing… The Register · Aug 12, 2026 Medium IRRUphishingthreat intelligencesocial engineering
threat-intel Walmart Leaders Transform Security Operations Without Going Bananas Walmart is shifting its cybersecurity operations strategy to prioritize trust and innovation, moving away from a fear-based approach (FUD) and towards a collaborative model with business leadership. The company is focusi… Dark Reading · Aug 12, 2026 Medium cybersecuritytrustinnovation
vulnerability Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery Microsoft released a massive update with 62 critical and 357 important security vulnerabilities, marking a significant increase in the number of flaws discovered and highlighting the growing role of AI in vulnerability d… The Record · Aug 12, 2026 High CVE-2026-68820CVE-2026-62832vulnerabilitypatch tuesdayai