threat-intel Des pirates revendiquent le piratage d’un miroir de Coco A mirror site for the defunct Coco discussion forum, presented as a successor to the original site shut down due to illegal activities, has been compromised by the threat actor CuteSec. The attackers gained extensive con… ZATAZ · Aug 8, 2026 High data breachpassword compromiseuser data
threat-intel OpenAI pledges to add Astra security as Anthropic loosens Fable's leash OpenAI is bolstering its AI security by integrating Astra, while Anthropic is loosening restrictions on its Fable system. This shift reflects growing concerns about the potential risks associated with increasingly autono… The Register · Aug 7, 2026 Medium IRaisecurityvulnerability
threat-intel Ransomware attacks spike as world distracted by AI Ransomware attacks are increasing, potentially coinciding with a global focus on AI. This article highlights a range of security incidents, including a zero-day exploit targeting on-prem SharePoint, phishing attacks mimi… The Register · Aug 7, 2026 Medium IRransomwarephishingvulnerability
vulnerability Multiples vulnérabilités dans le noyau Linux d'Ubuntu (07 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Ubuntu. Several of these vulnerabilities allow for privilege escalation, data confidentiality breaches, and a security issue not specified by the publi… CERT-FR · Aug 7, 2026 High CVE-2022-49803CVE-2022-49961CVE-2022-50073linuxvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans WordPress (07 août 2026) Multiple vulnerabilities have been discovered in WordPress, including remote code execution and privilege escalation, potentially leading to data compromise. These flaws are primarily affecting older versions of the plat… CERT-FR · Aug 7, 2026 High CVE-2026-64638wordpressvulnerabilityssrf
vulnerability Multiples vulnérabilités dans Google Chrome (07 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, potentially allowing an attacker to trigger a security issue. These vulnerabilities affect Chrome versions prior to 151.0.7922.108 on Windows and Linux, and… CERT-FR · Aug 7, 2026 High CVE-2026-19137CVE-2026-19138CVE-2026-19139chromevulnerabilitysecurity
threat-intel How the famed USENIX Security conf is managing a flood of papers in the AI era The USENIX Security conference is grappling with a surge in research papers, particularly those leveraging AI and machine learning. While AI usage is increasing, concerns are being raised about the potential for autonomo… The Register · Aug 6, 2026 Medium USCHRUaimachine learningvulnerability
threat-intel ThreatsDay: Odysseus RCE, Samsung One-Click Takeover, iCloud Backdoor Fight + 27 More Stories This week's 'ThreatsDay' bulletin highlights a diverse range of security threats, including a China-linked telecom risk, a multi-stage phishing attack leveraging ClickOnce files, a supply chain attack involving 846 softw… The Hacker News · Aug 6, 2026 High CVE-2025-21079CVE-2025-58486CVE-2026-25177CHUSsupply-chainmalwarephishing
threat-intel Zero-Click AI Browser Hacking: Claude and ChatGPT Atlas Hijacked via Emails, X Posts Zenity researchers have uncovered two zero-click hacking techniques targeting AI browser agents, ChatGPT Atlas and Claude in Chrome. These attacks allow attackers to hijack user sessions, conduct phishing campaigns (incl… SecurityWeek · Aug 6, 2026 High zero-clickprompt injectionagentic browser
threat-intel IT department put sticky notes on the laptops to help employees log in This article is a collection of security-related news snippets from The Register. It covers a range of topics including a phishing campaign mimicking Signal support, a zero-day exploit targeting on-prem SharePoint, and a… The Register · Aug 6, 2026 Medium CHIRSWphishingzero-dayransomware
vulnerability Multiples vulnérabilités dans KeyCloak (06 août 2026) Multiple vulnerabilities have been discovered in Keycloak, potentially allowing for privilege escalation, denial of service attacks, and data compromise. These vulnerabilities affect versions 26.6.x through 26.6.5, 26.7.… CERT-FR · Aug 6, 2026 High CVE-2026-15572CVE-2026-15573CVE-2026-16071keycloakvulnerabilitysecurity
threat-intel No Perfect Fix for AI Browser Prompt Injection Flaws Research presented at Black Hat USA 2026 revealed that despite numerous security guardrails, AI-powered web browsers remain vulnerable to prompt injection attacks. Artem Chaikin demonstrated how attackers can bypass thes… Dark Reading · Aug 5, 2026 High prompt injectionai securityweb browser
threat-intel Prompt injection isn't the bug, AI agent frameworks are This article discusses the increasing risk of prompt injection attacks within AI agent frameworks, rather than the models themselves. The rise of open-source AI models, particularly from China, is prompting a reaction fr… The Register · Aug 5, 2026 Medium CHIRUSprompt injectionaillm
threat-intel CSS: The Hidden Threat Lurking in Your Inbox Researchers have discovered that Cascading Style Sheets (CSS), traditionally used for website design, can be weaponized to steal sensitive data from webmail platforms. While not a new threat, the potential for CSS-based… Dark Reading · Aug 5, 2026 Medium csswebmailsecurity
threat-intel London cops handed victim's new address and number to her stalker, watchdog says This article is a collection of security and technology news snippets from The Register. It covers a range of topics including a security watchdog investigation into police handing over a stalker's information, a Chinese… The Register · Aug 5, 2026 Medium CHUKcybersecurityvulnerabilityransomware
threat-intel New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts Researchers at Palo Alto Networks have uncovered new attack methods that allow malware to steal passkey-protected accounts, bypassing traditional security measures. These techniques exploit vulnerabilities in Chrome’s sy… SecurityWeek · Aug 5, 2026 High passkeyauthenticationchrome
threat-intel Bypassing AI guardrails is so easy a script kiddie can do it Recent developments highlight the increasing ease with which AI model guardrails can be bypassed, allowing even novice attackers to manipulate large language models. This vulnerability stems from the rapid release of ope… The Register · Aug 4, 2026 Medium CHIRaimlprompt injection
threat-intel Tennessee congressional hopeful accused of shooting license plate cameras Several AI and open-source model developments are occurring, including Alibaba's release of its Qwen model and competition in the AI space. Simultaneously, security concerns are rising, with reports of phishing attacks i… The Register · Aug 4, 2026 Medium CHIRaiopen-sourcephishing
threat-intel How legitimate cloud platforms enable phishers to bypass MFA Threat actors are increasingly leveraging legitimate cloud platforms – like Cloudflare, Vercel, Netlify, and GitHub Pages – to conduct sophisticated phishing attacks. These attacks utilize multi-stage adversary-in-the-mi… Securelist · Aug 4, 2026 High phishingaitmbitb
vulnerability TP-Link Omada ZTP Vulnerabilities Chain Into Full Network Takeover Researchers at Forescout discovered 15 vulnerabilities in TP-Link’s Omada networking ecosystem’s zero-touch provisioning (ZTP) system, allowing attackers to potentially take over entire networks by chaining together thes… SecurityWeek · Aug 4, 2026 High CVE-2025-7850CVE-2025-7851ztpnetworkvulnerability