threat-intel US charges Iranians for sprawling hacking campaign on government agencies, universities The U.S. Justice Department has charged 17 Iranians linked to Iran’s military for a sprawling hacking campaign targeting U.S. government agencies, universities, and companies since 2013. The campaign, allegedly orchestra… The Record · Aug 19, 2026 High IRUShackingcyberattackiran
threat-intel Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P Researchers at Hunt.io have uncovered a campaign targeting over 14,500 Dahua IP cameras, leveraging credential attacks and two authentication bypass vulnerabilities (CVE-2021-33044 and CVE-2021-33045) to gain unauthorize… The Hacker News · Aug 19, 2026 High CVE-2021-33044CVE-2021-33045CVE-2024-39943UKRUcredential attackauthentication bypassp2p
threat-intel Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation Four critical vulnerabilities – affecting macOS, SharePoint, vCenter, and IKE – are currently being actively exploited in the wild. These flaws have led to widespread attacks, including the deployment of ransomware and b… The Hacker News · Aug 19, 2026 Critical CVE-2026-65400CVE-2026-55040CVE-2026-59310DEUSTRvulnerabilitycyberattackransomware
threat-intel CISA Urges Immediate Patching of Exploited Microsoft, VMware, Apple Vulnerabilities The CISA has issued an urgent warning about four actively exploited vulnerabilities affecting Microsoft, VMware, and Apple products. These flaws, including a double-free in Windows IKE and a weak authentication bypass in… SecurityWeek · Aug 19, 2026 Critical CVE-2026-33824CVE-2026-55040CVE-2026-59310CHvulnerabilitypatchingremote code execution
threat-intel China-Linked Hacker Shows AI Capabilities in APAC Attack A Chinese-language hacker group has demonstrated the use of AI-powered agents in a multi-stage attack targeting government agencies in the Asia-Pacific region, with Taiwan appearing as a likely target. The attack utilize… Dark Reading · Aug 19, 2026 High CHNOTAaicyberattackthreat intelligence
vulnerability Multiples vulnérabilités dans Oracle PeopleSoft (19 août 2026) A French security advisory from CERT-FR details multiple vulnerabilities within Oracle PeopleSoft versions 9.2 and 8.61-8.63. These flaws could lead to data breaches, data integrity issues, denial of service attacks, and… CERT-FR · Aug 19, 2026 High CVE-2026-60742CVE-2026-60821CVE-2026-60831oraclepeoplesoftvulnerability
threat-intel Threat Brief: Mitigating Large-Scale Credential Attacks (Updated August 18) A significant campaign, dubbed “TheHatman” and “FortiBleed,” is targeting organizations with leaked credentials, primarily leveraging password spraying against Fortinet and Sophos devices. TheHatman, an actor offering st… Palo Alto Unit 42 · Aug 18, 2026 High RUcredential theftpassword sprayingfortigate
threat-intel More than 200 victims of Medusa ransomware identified over the last year, CISA says The CISA and FBI have updated their advisory on the Medusa ransomware gang, revealing that over 500 victims have been identified in the last year, with a significant focus on the healthcare sector. Medusa is known for ra… The Record · Aug 18, 2026 High ransomwaremedusazero-day
threat-intel Berlin cuts two state ministries off government network after security breach Berlin authorities have isolated two state ministries from the city's government network following a suspected security breach. The exact details of the attack, including the perpetrators and stolen data, remain unknown,… The Record · Aug 18, 2026 Medium DEsecurity breachnetwork isolationgovernment systems
threat-intel Éducation nationale : le ministère confirme l’attaque l’Éducation confirme son piratage The French Ministry of Education has confirmed a data breach and the exfiltration of personal data following a cyberattack on July 25, 2026. The attack, allegedly carried out by the hacker group ZeroBytes, resulted in th… ZATAZ · Aug 18, 2026 High FRcyberattackdata breachphishing
threat-intel SpyGuard et MVT traquent les spywares mobiles This article highlights two tools – SpyGuard and Mobile Verification Toolkit (MVT) – designed to detect spyware on mobile devices. SpyGuard focuses on monitoring network communications for suspicious behavior, while MVT… ZATAZ · Aug 18, 2026 Medium spywaremobile securitydigital forensics
threat-intel Fuite fiscale, pas panique ! A cyber intrusion targeting the French tax authority (DGFiP) has potentially exposed sensitive data of both individuals and professionals. The incident, linked to a pirate selling stolen data on underground forums, highl… ZATAZ · Aug 18, 2026 High FRphishingdata-breachcyberattack
threat-intel Éducation nationale : un pirate annonce une fuite qui exposerait des millions de données A French hacker, ZeroBytes, claims to have exfiltrated 43GB of sensitive educational data from the French Ministry of Education and related institutions. The data includes information on over 2 million students, encompas… ZATAZ · Aug 17, 2026 High FRdata breachfrench educationpassword hashes
threat-intel An AI broke Snowflake's code. Then another AI agent exploited it Two separate AI systems have exploited vulnerabilities in Snowflake's code, highlighting a growing risk of autonomous AI attacks targeting critical infrastructure. The first AI, developed by Anthropic, used a subtle code… The Register · Aug 17, 2026 High UNaivulnerabilitycode-breaking
data-breach 680,000 Impacted by French Tax Authority Data Breach A data breach at France’s tax authority, the DGFiP, has exposed the personal information of approximately 680,000 individuals, including reference tax income and cadastral data. The breach followed a threat actor’s boast… SecurityWeek · Aug 17, 2026 High FRdata breachgovernmenttax
threat-intel Crook hawks millions of records allegedly plundered from corporate Azure tenants A group of Russian threat actors are exploiting vulnerabilities in Microsoft's on-prem SharePoint to steal corporate data. The attackers are impersonating Signal support to carry out phishing attacks, leveraging a zero-d… The Register · Aug 17, 2026 High RUzero-dayphishingdata breach
threat-intel Code fixers have fired up the AI warp drive. Strange new worlds await This article covers a range of cybersecurity and technology news, including a vulnerability impacting Joomla extensions, a Microsoft SharePoint zero-day exploit, and ongoing advancements in AI and cybersecurity tools. It… The Register · Aug 17, 2026 Medium IRvulnerabilityjoomlasharepoint
threat-intel How QR-code phishing can slip past corporate security measures QR code phishing, known as ‘quishing,’ is rapidly becoming a significant threat, bypassing traditional email security filters and leveraging familiarity with QR codes to trick employees into accessing malicious content.… WeLiveSecurity · Aug 17, 2026 High NOqr codephishingquishing
vulnerability ISC Stormcast For Monday, August 17th, 2026 https://isc.sans.edu/podcastdetail/10054, (Mon, Aug 17th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Struts, potentially allowing for remote code execution via a deserialization attack. This vulnerability is actively being exploite… SANS Internet Storm Center · Aug 17, 2026 Critical strutsvulnerabilitydeserialization
threat-intel Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do This article covers a range of cybersecurity and technology news, including a warning about autonomous AI attacks posing a significant risk to critical infrastructure, a report on Russian phishing campaigns mimicking Sig… The Register · Aug 16, 2026 Medium IRRUcyberattackphishingransomware