threat-intel Des accès superadmin exposent 27 sites français A single administrator account granting access to 27 French websites was leaked on a hacking forum, with a direct incentive for other members to collect and deliver all accessible data within 48 hours. The author is acti… ZATAZ · Aug 13, 2026 High FRhackingdatabaseadministrator
vulnerability Multiples vulnérabilités dans les produits Fortinet (13 août 2026) Multiple vulnerabilities have been discovered in Fortinet products, including several that could allow for remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various… CERT-FR · Aug 13, 2026 High CVE-2026-26035CVE-2026-49975CVE-2026-70465vulnerabilitypatchremote code execution
threat-intel Impots.gouv.fr : un pirate revendique une intrusion A French hacker claims to have breached impots.gouv.fr, the French tax authority’s website, and exfiltrated 678,438 lines of data, including highly detailed tax information on French citizens and businesses. The data, pr… ZATAZ · Aug 12, 2026 High FRdata-breachphishingidentity theft
threat-intel Long-running Data Theft Campaign Targeting Salesforce, ServiceNow The "City-Forum" campaign, active since March 2025, has seen a threat actor targeting Salesforce and ServiceNow instances with custom tools to steal data. Unlike traditional attacks relying on publicly available tools, t… Dark Reading · Aug 12, 2026 High USCAGBsalesforceservicenowguest access
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation
threat-intel 737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One A massive collection of 737 Chrome VPN and proxy extensions are being used to route user traffic through a single SOCKS5 proxy infrastructure, primarily targeting Russian-speaking users seeking access to blocked content.… The Hacker News · Aug 12, 2026 High RUvpnproxychrome
threat-intel Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition Colombian Justice Ministry suffered a ransomware attack on August 2nd, disrupting services related to illicit drug monitoring and legal processes, just days before the presidential transition. The Ministry denied data th… Dark Reading · Aug 12, 2026 High COransomwarecloud securitythird-party risk
threat-intel WhatsApp Unveils New Scam Alert Feature WhatsApp is rolling out a limited beta feature called Scam Alert, designed to identify potentially scam messages on users' devices *before* they are sent. The feature uses on-device machine learning, doesn't send message… SecurityWeek · Aug 12, 2026 Medium GERUmachine learningencryptionprivacy
threat-intel Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNow With Custom Toolset A sophisticated and innovative campaign, dubbed ‘City-Forum,’ is targeting Salesforce and ServiceNow using a custom multi-platform toolset. The attackers are exploiting unauthenticated guest user access to gather data, p… SecurityWeek · Aug 12, 2026 High guest userunauthenticated accessdata exfiltration
vulnerability Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS A critical vulnerability (CVE-2026-20349, CVSS: 8.6) in Cisco ASA and FTD software has been actively exploited in the wild. This flaw, triggered by a crafted HTTP request, can lead to a denial-of-service condition and is… The Hacker News · Aug 12, 2026 Critical CVE-2026-20349cveasaftd
vulnerability Cisco Patches Firewall Zero-Day Exploited for DoS Attacks Cisco has released patches to address a zero-day vulnerability (CVE-2026-20349) in its firewall software, which allows unauthenticated attackers to cause a denial-of-service attack. Cisco detected active exploitation of… SecurityWeek · Aug 12, 2026 High CVE-2026-20349zero-dayvulnerabilityasa
threat-intel Multiples vulnérabilités dans Microsoft Windows (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Windows, including remote code execution, privilege escalation, and denial-of-service attacks. Microsoft indicates that vulnerability CVE-2026-42976 is actively… CERT-FR · Aug 12, 2026 High CVE-2026-68820CVE-2026-42976CVE-2026-49179vulnerabilityremote code executionprivilege escalation
vulnerability Multiples vulnérabilités dans les produits Intel (12 août 2026) Multiple vulnerabilities have been discovered in Intel products, impacting a range of their processors. These vulnerabilities could lead to privilege escalation, data confidentiality breaches, and denial of service attac… CERT-FR · Aug 12, 2026 High intelvulnerabilitysecurity
vulnerability Vulnérabilité dans les produits Cisco (12 août 2026) A vulnerability in Cisco’s Adaptive Security Appliance (ASA) allows attackers to trigger a denial-of-service attack. Cisco has confirmed that this vulnerability is actively being exploited, and users are urged to apply t… CERT-FR · Aug 12, 2026 High CVE-2026-20349ciscoasavulnerability
threat-intel NSA installs DHS lawyer as new general counsel The National Security Agency (NSA) has appointed Kerianne Tobitsch, a former Homeland Security lawyer and Jones Day partner, as its new general counsel. This appointment follows a series of high-level departures within t… The Record · Aug 11, 2026 Medium fisansasurveillance
threat-intel Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing A new version of the Kimwolf/AISURU Android and IoT botnet, Kimwolf v7, has been discovered by Palo Alto Networks Unit 42. This version significantly improves its operational resilience and DDoS attack capabilities by ut… The Hacker News · Aug 11, 2026 High botnetddosadb
vulnerability Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client A Security, an Israeli offensive-security startup, discovered three Zoom vulnerabilities that could allow a meeting participant to hijack another attendee’s computer. The flaws, including a buffer over-write and a use-af… The Hacker News · Aug 11, 2026 High CVE-2026-53413CVE-2026-53414CVE-2026-53415ISzoomvulnerabilitybuffer overflow
vulnerability August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day Microsoft released a substantial update addressing 421 vulnerabilities, including a critical zero-day exploit in a kernel-mode driver (afd.sys). Threat actors, potentially including nation-state actors like those linked… SecurityWeek · Aug 11, 2026 High CVE-2026-68820CVE-2025-32709CVE-2025-21418zero-daykernel-modeprivilege escalation
threat-intel DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi A DEF CON participant is suspected of attempting to gain control of Delta Airlines' in-flight Wi-Fi network. This incident highlights concerns about the potential for malicious actors to exploit vulnerabilities in critic… The Register · Aug 11, 2026 Medium cybersecurityinfrastructurewifi
vulnerability Zoom Patches Zero-Click Code Execution Vulnerability Zoom has released patches to address four critical vulnerabilities, including a zero-click remote code execution flaw that could allow an attacker to take control of any participant’s machine without any user interaction… SecurityWeek · Aug 11, 2026 Critical CVE-2026-53413CVE-2026-53414CVE-2026-53415vulnerabilityremote code executionzero-click