threat-intel Code fixers have fired up the AI warp drive. Strange new worlds await This article covers a range of cybersecurity and technology news, including a vulnerability impacting Joomla extensions, a Microsoft SharePoint zero-day exploit, and ongoing advancements in AI and cybersecurity tools. It… The Register · Aug 17, 2026 Medium IRvulnerabilityjoomlasharepoint
threat-intel Fortune 500 Companies Hit in Azure Data Theft Campaign A threat actor, known as ‘TheHatman’, is selling massive amounts of stolen data allegedly extracted from Azure tenants belonging to several Fortune 500 companies, including McDonald’s, Vodafone, and Wyndham Hotels. The d… SecurityWeek · Aug 17, 2026 High azurecredential theftdata breach
data-breach 1.6M RingCentral accounts' data dumped after ShinyHunters extortion attack Approximately 1.6 million RingCentral accounts have been exposed after a ShinyHunters extortion attack. Attackers gained access to sensitive data, including customer information, and are now demanding ransom for its retu… The Register · Aug 14, 2026 High credential stuffingdata breachransomware
threat-intel What Boards Need to Know About Tech Risk This article argues that boards of directors often fail to adequately address technology risks due to a focus on revenue-generating investments and a lack of understanding of the technical realities of digital infrastruc… Dark Reading · Aug 14, 2026 High technical debtrisk managementcybersecurity
data-breach 1.6 Million Likely Impacted by RingCentral Data Breach A data breach at RingCentral has potentially exposed the personal information of 1.6 million individuals, including email addresses, names, and phone numbers. The breach was orchestrated by the ShinyHunters extortion gro… SecurityWeek · Aug 14, 2026 Medium data breachsocial engineeringtor
threat-intel China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud The China-linked threat actor Jewelbug, operating as a ‘hack-for-hire’ group, is engaged in both sophisticated government espionage targeting nations across the Middle East, Southeast Asia, and South Asia, and cryptocurr… The Hacker News · Aug 14, 2026 High CHMISOespionagecryptocurrencyhack-for-hire
threat-intel OpenAI ditches Recall-style screenshot surveillance for friendly keylogging This article is a collection of security and technology news snippets. OpenAI is reportedly abandoning screenshot surveillance (Recall) in favor of keylogging, while IBM and Nvidia are partnering on a large-scale deploym… The Register · Aug 14, 2026 Medium CHUSphishingsurveillanceransomware
vulnerability Multiples vulnérabilités dans les produits Netgate (14 août 2026) Multiple vulnerabilities have been discovered in Netgate products, including pfSense. These vulnerabilities allow for data integrity compromise, data confidentiality breaches, and remote code execution. Several CVEs have… CERT-FR · Aug 14, 2026 High CVE-2026-56126CVE-2026-56127CVE-2026-56128vulnerabilitypfsenseremote code execution
vulnerability Multiples vulnérabilités dans le noyau Linux de Debian (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian. These vulnerabilities allow for privilege escalation, data compromise, and denial of service. Affected Debian versions are those prior to 6.12.… CERT-FR · Aug 14, 2026 High CVE-2025-40098CVE-2026-45897CVE-2026-45901linuxkerneldebian
vulnerability Multiples vulnérabilités dans le noyau Linux de Red Hat (14 août 2026) Multiple vulnerabilities have been discovered in Red Hat's Linux kernel. These vulnerabilities allow for data integrity compromise, data confidentiality breaches, and bypassing security policies, potentially leading to c… CERT-FR · Aug 14, 2026 High CVE-2024-53143CVE-2025-10263CVE-2025-54518linuxkernelvulnerability
threat-intel Multiples vulnérabilités dans le noyau Linux de Debian LTS (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian LTS. Several of these vulnerabilities allow for privilege escalation, data compromise, and denial of service. The vulnerabilities affect Debian… CERT-FR · Aug 14, 2026 High CVE-2024-36013CVE-2025-21807CVE-2025-40196linuxvulnerabilitydebian
vulnerability GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE A newly discovered zero-day SQL injection vulnerability in GeoServer is currently being actively exploited. The vulnerability, which has been assigned a GitHub security advisory identifier (GHSA-mqjf-5f49-2fjh), allows f… The Hacker News · Aug 13, 2026 Critical CVE-2024-36401CVE-2023-25158CVE-2023-25157sql injectionzero-dayremote code execution
threat-intel ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories This week's ThreatsDay Bulletin highlights a diverse range of security threats, including AI-related attacks, data breaches, and malware campaigns. Key concerns include GhostJacking, where AI agents are hijacked to execu… The Hacker News · Aug 13, 2026 High CVE-2026-20685USUKSWaiagentjackingdata breach
threat-intel Ghost Tap : une fraude NFC signalée depuis Pattaya This article details a case in Pattaya, Thailand, where a reader of ZATAZ discovered a NFC-based banking fraud. The incident highlights a technique called ‘Ghost Tap,’ where a compromised device relays NFC communications… ZATAZ · Aug 13, 2026 Medium THnfcfraudrelay
threat-intel New Mirai variant adds stealth capabilities to notorious botnet code A new, stealthier variant of the Mirai botnet, dubbed Evooo1Bot, has been actively exploiting vulnerabilities in internet-facing hardware for over a month. This malware boasts advanced features like encrypted communicati… The Record · Aug 13, 2026 High CACHGEmiraibotnetvulnerability
threat-intel New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure A Pakistan-aligned threat actor, APT36 (Transparent Tribe), is targeting Afghan telecom providers and critical infrastructure in South Asia with a new backdoor campaign called PATCHCORD. The campaign utilizes sector-spec… The Hacker News · Aug 13, 2026 High CVE-2024-6387AFINbackdoorc2afghanistan
threat-intel Cybersecurity M&A Roundup: 21 Deals Announced in July 2026 In July 2026, a significant wave of cybersecurity mergers and acquisitions occurred, with 21 deals announced. These transactions involved companies like Bank of America acquiring MDSec Consulting, Barracuda Networks acqu… SecurityWeek · Aug 13, 2026 Medium UNISTEmergersacquisitionscybersecurity
threat-intel Black Hat USA 2026: Will vulnerability discovery eventually decline in the AI era? The rapid increase in vulnerability discovery, driven by advancements in AI models like Anthropic's Claude Mythos, is overwhelming cybersecurity teams and raising concerns about responsible disclosure. The sheer volume o… WeLiveSecurity · Aug 13, 2026 High aivulnerabilitydiscovery
threat-intel Germany moves to give spy agencies hacking and sabotage powers Germany is poised to significantly expand the powers of its intelligence agencies, allowing them to conduct cyber operations, sabotage supply chains, and spread disinformation within the country. This legislation, a majo… The Record · Aug 13, 2026 High GERUcybersecurityintelligencesurveillance
threat-intel 'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft The ‘Jewelbug’ APT group, operating out of China, balances state-sponsored espionage and cryptocurrency theft, targeting governments, military organizations, and corporations globally. They utilize a custom command-and-c… Dark Reading · Aug 13, 2026 High CHMISOcyber espionagecryptocurrency theftnation-state