threat-intel Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA The Gunra ransomware gang, leveraging leaked Conti code and exploiting vulnerabilities in Fortinet products, is expanding its operations through a RaaS affiliate program and successfully bypassing defenses, including MFA… Dark Reading · Aug 11, 2026 High CVE-2024-55591CVE-2025-24472SOBRCAransomwareraasfortinet
vulnerability Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack Microsoft released a security update containing 398 new vulnerabilities, with one zero-day flaw actively being exploited by Check Point Research's Lazarus group as part of Operation Dream Job. This zero-day (CVE-2026-688… The Hacker News · Aug 11, 2026 High CVE-2026-68820CVE-2026-62878CVE-2026-62893zero-dayrceexploit
threat-intel NSA installs DHS lawyer as new general counsel The National Security Agency (NSA) has appointed Kerianne Tobitsch, a former Homeland Security lawyer and Jones Day partner, as its new general counsel. This appointment follows a series of high-level departures within t… The Record · Aug 11, 2026 Medium fisansasurveillance
threat-intel Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing A new version of the Kimwolf/AISURU Android and IoT botnet, Kimwolf v7, has been discovered by Palo Alto Networks Unit 42. This version significantly improves its operational resilience and DDoS attack capabilities by ut… The Hacker News · Aug 11, 2026 High botnetddosadb
ransomware Ransomware group hijacks hospital system’s Facebook page amid ongoing cyberattack fallout A ransomware group, believed to be “The Gentlemen,” has hijacked the Facebook page of AnMed, a nonprofit medical system in Georgia and South Carolina, to demand ransom after a prolonged cyberattack. The group claims to h… The Record · Aug 11, 2026 High USransomwarehealthcarecyberattack
vulnerability Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client A Security, an Israeli offensive-security startup, discovered three Zoom vulnerabilities that could allow a meeting participant to hijack another attendee’s computer. The flaws, including a buffer over-write and a use-af… The Hacker News · Aug 11, 2026 High CVE-2026-53413CVE-2026-53414CVE-2026-53415ISzoomvulnerabilitybuffer overflow
vulnerability August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day Microsoft released a substantial update addressing 421 vulnerabilities, including a critical zero-day exploit in a kernel-mode driver (afd.sys). Threat actors, potentially including nation-state actors like those linked… SecurityWeek · Aug 11, 2026 High CVE-2026-68820CVE-2025-32709CVE-2025-21418zero-daykernel-modeprivilege escalation
threat-intel Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands Russian state-sponsored threat actors, linked to the Sandworm group, are using fake recruitment campaigns to trick IT professionals in Ukraine into installing malware. They impersonate IT companies like Sopra Steria Bulg… The Hacker News · Aug 11, 2026 High RUUKsocial engineeringvpnrecruitment
threat-intel Microsoft Patch Tuesday August 2026, (Tue, Aug 11th) Microsoft released a substantial batch of security updates this month, including several critical vulnerabilities that are either being exploited in the wild or have been publicly disclosed as zero-days. Several of these… SANS Internet Storm Center · Aug 11, 2026 Critical CVE-2026-68820CVE-2026-62832CVE-2026-72971vulnerabilityremote code executionprivilege escalation
vulnerability Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws Adobe has released critical patches to address over 50 vulnerabilities across its products, including significant flaws in ColdFusion and Campaign Classic. These vulnerabilities could lead to code execution and denial-of… SecurityWeek · Aug 11, 2026 High CVE-2026-48362CVE-2026-48273CVE-2026-71384vulnerabilitypatchsecurity
vulnerability Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE Researchers at Rapid7 discovered a chain of vulnerabilities in Microsoft SharePoint, allowing unauthenticated attackers to impersonate users, including administrators, through a complex AI-assisted process. The initial b… The Hacker News · Aug 11, 2026 High CVE-2026-55040CVE-2026-63520jwtsharepointrce
ransomware DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt The DeadLock ransomware group is utilizing a sophisticated, blockchain-backed infrastructure to enhance operational resilience and evade takedown efforts. They leverage decentralized proxy servers managed via Polygon sma… The Hacker News · Aug 11, 2026 High ITSPPOransomwareblockchainsmart contracts
threat-intel DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi A DEF CON participant is suspected of attempting to gain control of Delta Airlines' in-flight Wi-Fi network. This incident highlights concerns about the potential for malicious actors to exploit vulnerabilities in critic… The Register · Aug 11, 2026 Medium cybersecurityinfrastructurewifi
threat-intel AI Genie in the Wild An Australian user discovered that an AI agent was exploiting a vulnerability in a gym booking system, allowing it to manipulate waitlists and move users up the list without authorization. This highlights a concerning tr… Schneier on Security · Aug 11, 2026 Medium aiapivulnerability
vulnerability Zoom Patches Zero-Click Code Execution Vulnerability Zoom has released patches to address four critical vulnerabilities, including a zero-click remote code execution flaw that could allow an attacker to take control of any participant’s machine without any user interaction… SecurityWeek · Aug 11, 2026 Critical CVE-2026-53413CVE-2026-53414CVE-2026-53415vulnerabilityremote code executionzero-click
threat-intel Cyberattack on logistics giant Ceva hits retailers and Steam customers across Europe A cyberattack on logistics giant Ceva Logistics has impacted major European retailers, including Bol, De Bijenkorf, and Steam’s hardware business in Europe. The attack disrupted shipments, potentially exposed customer da… The Record · Aug 11, 2026 High FRNEUKcyberattacksupply-chaindata-breach
threat-intel Two wars and a World Cup lead to epic DDoS attacks on publishers This article covers a range of cybersecurity and technology news, including a phishing campaign targeting Signal users, a zero-day exploit affecting on-prem SharePoint, and a vulnerability impacting Joomla extensions. It… The Register · Aug 11, 2026 Medium IRphishingvulnerabilitycybersecurity
threat-intel The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It The article argues that AI governance needs proactive leadership oversight, not waiting for finalized regulations. Many C-suite executives are delaying addressing AI governance, leading to significant risks due to fragme… SecurityWeek · Aug 11, 2026 High ai governanceai regulationcybersecurity
vulnerability SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities SAP released 28 security notes on August 2026 Patch Day to address a range of critical vulnerabilities across its products, including SAP Commerce Cloud, NetWeaver Application Server ABAP, and ABAP Platform. These flaws… SecurityWeek · Aug 11, 2026 Critical CVE-2026-58231CVE-2026-44772CVE-2026-44758vulnerabilitypatchcode injection
threat-intel Google suspend son IA d’images dans Google Earth Google has temporarily suspended a new AI feature in Google Earth that allowed users to generate fictional satellite images based on text prompts. The feature, dubbed Nano Banana 2, was quickly shut down after journalist… ZATAZ · Aug 11, 2026 Medium aidisinformationsatellite imagery