threat-intel Multistate Water System Attacks Widen, Iran Suspected A coordinated campaign targeting water and wastewater systems across multiple states is underway, potentially linked to Iran and the CyberAv3ngers hacktivist group. Threat actors are exploiting poorly secured PLCs – indu… Dark Reading · Aug 10, 2026 High IRplccyberattackcritical infrastructure
threat-intel Poland uncovers second heat plant cyberattack that went hidden for months Poland’s CERT Polska uncovered a cyberattack targeting a combined heat and power plant that went undetected for months, highlighting a previously unknown attack vector involving private cellular networks. The attack, occ… The Record · Aug 10, 2026 High PORUcyberattackindustrial control systemsprivate cellular network
threat-intel New Jersey, Alabama Join States Targeted in Water Cyberattacks A coordinated cyberattack targeting water and wastewater facilities in the United States is expanding, with New Jersey and Alabama becoming the latest states to report incidents. The attacks, linked to Iranian hackers, a… SecurityWeek · Aug 10, 2026 High IRUScyberattackwater systemsics
threat-intel Claude Code puts auto mode in the driver's seat Several security incidents and developments are highlighted, including a vulnerability in Joomla extensions, a Microsoft SharePoint issue leading to a zero-day attack, and ongoing efforts to combat Iranian propaganda and… The Register · Aug 10, 2026 Medium IRUSvulnerabilityphishingransomware
threat-intel Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy Facility Polish CERT has revealed a second, parallel cyberattack targeting a smaller CHP plant supplying heat to 50,000 residents, utilizing a novel private APN attack vector. The attack, attributed to Russian APT group Sandworm,… SecurityWeek · Aug 10, 2026 High PLicsindustrial control systemsprivate apn
threat-intel Corporate Data Stolen in Levi Strauss Cyberattack Levi Strauss & Co. suffered a cyberattack resulting from social engineering, leading to unauthorized access to employee computers and potential corporate data theft. While initial investigations suggest no customer data… SecurityWeek · Aug 10, 2026 Medium social engineeringcyberattackdata breach
threat-intel OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause OpenAI is pausing internal development of its AI model Astra due to concerns about its rapidly advancing cyber capabilities. Initial evaluations suggest the model possesses ‘Critical’ cyber capabilities, including the po… The Hacker News · Aug 10, 2026 High aicybersecurityai-safety
threat-intel Military device manufacturer discloses cyber incident to SEC IEH Corporation, a military device manufacturer, suffered a cyberattack after an employee fell victim to a phishing scheme, gaining unauthorized access to their email account. The attackers accessed sensitive data includ… The Record · Aug 7, 2026 Medium INUSphishingcyberattackdata-breach
threat-intel N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands A flaw in N-able’s God mode feature allowed attackers to gain unauthorized access to customer networks. The vendor has confirmed that attackers exploited this vulnerability to compromise systems, and a second hotfix has… The Register · Aug 7, 2026 Critical CVE-2026-18577vulnerabilityremote managementcyberattack
threat-intel In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street Several significant cybersecurity events are unfolding this week, including a coordinated AI-powered scam network originating in Cambodia, a data breach at Amgen, a supply chain attack targeting QuickFox VPN, and a serie… SecurityWeek · Aug 7, 2026 High CHCAUSsupply-chainphishingransomware
threat-intel Levi Strauss says hackers breached employee computers, accessed corporate data Levi Strauss & Co. revealed that hackers gained access to employee computers through a social engineering attack, leading to the theft of corporate data. The company claims the breach didn't disrupt operations and that c… The Record · Aug 7, 2026 Medium cyberattacksocial engineeringretail
threat-intel French rugby club Stade Français restores systems after cyberattack, probes data leak Stade Français, a French rugby club, suffered a cyberattack that led to a data leak and disruption of its systems. The attackers, linked to the ransomware-as-a-service group Qilin, threatened to release further stolen da… The Record · Aug 7, 2026 High RUransomwaredata breachcyberattack
threat-intel Attacker phished way into US defense supplier's Microsoft 365 account A US defense supplier's Microsoft 365 account was compromised after an attacker successfully phished credentials. The attacker exploited a vulnerability to gain access, highlighting a continuing issue with phishing attac… The Register · Aug 7, 2026 Medium phishingmicrosoftcredential theft
threat-intel Cyberattack on North Carolina Ports ‘contained’ as Coast Guard, state officials investigate North Carolina Ports experienced a cybersecurity incident that forced a shift to manual operations, impacting cargo handling at all three port locations. While the incident has been contained, investigations are ongoing,… The Record · Aug 6, 2026 Medium cyberattackportsinfrastructure
threat-intel IBM's agentic AI platform is under active attack - patch now IBM's agentic AI platform is currently under active attack, with vulnerabilities exploited to gain control of systems. Attackers are leveraging prompt injection techniques to manipulate other AI agents, highlighting a gr… The Register · Aug 5, 2026 High CVE-2026-9198CHIRprompt injectionai securityvulnerability
threat-intel Cyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidents Cyberattacks on water systems are expanding, now affecting at least 12 states, with Iran suspected of being behind the campaign. The attacks, primarily targeting programmable logic controllers (PLCs), have led to boil wa… The Record · Aug 5, 2026 High IRcyberattackwater systemsplcs
threat-intel UK charities count the cost of Beacon CRM cyberattack A cyberattack on UK charities has resulted in significant financial losses due to the theft of sensitive data from Beacon CRM. The attackers exploited vulnerabilities within the system, leading to a substantial impact on… The Register · Aug 5, 2026 Medium cyberattackdata breachuk charities
threat-intel Angola's Largest Telco Breached Hours Before IPO Angola's largest telecommunications provider, Unitel, suffered a significant cyberattack hours before its IPO, causing widespread service disruptions and impacting critical digital services. The attack, which began on th… Dark Reading · Aug 5, 2026 High AOcyberattackafricatelecom
threat-intel Water Sector Cyberattacks Reportedly Hit at Least 12 States A growing number of US states, including Minnesota, Michigan, and Georgia, are experiencing cyberattacks targeting water and wastewater facilities. The FBI has linked these attacks to Iran, specifically targeting interne… SecurityWeek · Aug 5, 2026 High IRicsiotcyberattack
threat-intel Iran Cyberattacks Against Minnesota Water Systems Preliminary evidence suggests a coordinated cyberattack campaign targeting water systems in multiple US states, with Iran suspected as the source. While no significant damage has been reported, the incident highlights a… Schneier on Security · Aug 4, 2026 Medium USIRcyberattackcritical infrastructureattribution