threat-intel C.Hunters, un service pirate testé pour la France A Russian-language pirate service called C.Hunters, initially announced in 2025, is now generating interest in France in 2026. The service offers to conduct calls in English with various voices, targeting sectors like ba… ZATAZ · Aug 21, 2026 Medium RUpirate-servicerussian-threatfraud
threat-intel Wazuh and AI For Enhanced SOC Workflows Wazuh is integrating artificial intelligence to enhance SOC workflows, primarily through its Wazuh AI Analyst. This tool utilizes Amazon Bedrock and Anthropic’s Claude to provide automated security reports and guidance t… The Hacker News · Aug 21, 2026 Medium aisecuritysoc
threat-intel Cisco bug severity warning reads like Olympic gymnastics scores: 10, 10, 9.9, 9.6, and 7.5. This article is a collection of cybersecurity and technology news snippets from The Register. It covers a range of topics including a vulnerability in Microsoft SharePoint, a phishing campaign impersonating Signal suppor… The Register · Aug 21, 2026 Medium CVE-2026-20315CVE-2026-20317CVE-2026-20231vulnerabilityphishingransomware
threat-intel Even MOAR Powershell, looking at Entra logins - the good, the bad and the password sprays, (Fri, Aug 21st) This article details a method for identifying password spray attacks and unusual login activity within Microsoft Entra (formerly Azure Active Directory) logs. By analyzing login events and filtering for unexpected countr… SANS Internet Storm Center · Aug 21, 2026 Medium entragraphpassword sprayconditional access
vulnerability Vulnérabilité dans Microsoft Office (21 août 2026) A vulnerability has been discovered in Microsoft Office that could allow an attacker to compromise data confidentiality. Affected versions of Office, including Office 365 and Office 2019, require immediate patching to pr… CERT-FR · Aug 21, 2026 Medium CVE-2026-70105vulnerabilitymicrosoftpatch
vulnerability Multiples vulnérabilités dans les produits Microsoft (21 août 2026) Multiple vulnerabilities have been discovered in Microsoft products, allowing attackers to bypass security policies and cause denial-of-service conditions. Microsoft has released security bulletins detailing the issues a… CERT-FR · Aug 21, 2026 Medium CVE-2026-55013CVE-2026-55015microsoftvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans Google Chrome (21 août 2026) Multiple vulnerabilities have been discovered in Google Chrome, impacting older versions of the browser on Linux, Windows, and macOS. The exact nature of the vulnerabilities is not specified, but users are advised to upd… CERT-FR · Aug 21, 2026 Medium CVE-2026-76017CVE-2026-76018CVE-2026-76019chromevulnerabilitysecurity
vulnerability Multiples vulnérabilités dans Microsoft Edge (21 août 2026) Microsoft Edge is experiencing multiple vulnerabilities, as detailed in security advisories released by CERT-FR. These vulnerabilities could allow an attacker to trigger an unspecified security issue. Users of Microsoft… CERT-FR · Aug 21, 2026 Medium CVE-2026-76033CVE-2026-76034CVE-2026-76035vulnerabilitymicrosoftedge
vulnerability Multiples vulnérabilités dans Traefik (21 août 2026) Multiple vulnerabilities have been discovered in Traefik, allowing attackers to bypass security policies. These vulnerabilities affect older versions of the popular reverse proxy and load balancer, requiring immediate pa… CERT-FR · Aug 21, 2026 Medium vulnerabilitysecuritytraefik
vulnerability Vulnérabilité dans Python (21 août 2026) A security vulnerability has been identified in Python, allowing attackers to bypass security policies. This stems from a flaw in the Python interpreter, requiring users to apply security updates to mitigate the risk. CERT-FR · Aug 21, 2026 Medium CVE-2026-19672pythonvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans le noyau Linux de Debian (21 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian, allowing an attacker to potentially elevate their privileges. These vulnerabilities are present in older Debian versions and require immediate… CERT-FR · Aug 21, 2026 Medium CVE-2026-13595CVE-2026-27456CVE-2026-53612linuxkerneldebian
threat-intel US Bank investigates LockBit's claims as ransomware crims set pay-or-leak deadline A US bank is investigating claims by LockBit ransomware operators that they have stolen sensitive data and are threatening to leak it unless a ransom is paid. This follows a pattern of LockBit extortion attempts targetin… The Register · Aug 20, 2026 Medium ransomwarecybersecuritydata breach
vulnerability Researcher tricks Apple’s Find My into sharing location data with Linux A security researcher successfully tricked Apple’s Find My feature into revealing their location data by exploiting a flaw in the system. This demonstrates a vulnerability that could be used to track users, highlighting… The Register · Aug 20, 2026 Medium locationprivacysecurity
threat-intel Ransomware crook poses as recovery firm to steal payments from fellow extortionists A Russian threat actor is impersonating Signal support to conduct phishing attacks targeting other ransomware groups. The goal is to steal payments intended for extortion activities, highlighting a concerning trend of or… The Register · Aug 20, 2026 Medium RUphishingransomwaresocial engineering
threat-intel Club One Casino revendiqué par 3AM puis PEAR Club One Casino is being linked to two separate extortion groups, 3AM and PEAR, in a concerning trend for the casino industry. Initial reports from August 2026 attributed the first attack to 3AM, focusing on internal fil… ZATAZ · Aug 20, 2026 Medium USransomwarecasinoextortion
threat-intel Using Microsoft Graph and Powershell - Risk Detection Commands, (Thu, Aug 20th) This article details how to use Microsoft Graph PowerShell commands to identify risky login attempts. By leveraging the `Get-MgRiskDetection` command, security analysts can detect logins originating from unusual location… SANS Internet Storm Center · Aug 20, 2026 Medium SOCOMArisk detectionidentity protectionmicrosoft graph
threat-intel Grok chat duped into swallowing injected instructions Researchers have successfully tricked Security Copilot, an AI-powered security tool, into revealing instructions on how to exploit vulnerabilities within its own code. This highlights a concerning trend of AI systems bei… The Register · Aug 20, 2026 Medium aisocial engineeringvulnerability
data-breach French tax authority says break-in exposed data of 600K, including some private messages The French tax authority (Direction générale des Finances Publiques - DGFiP) has revealed a data breach that exposed the personal information of approximately 600,000 individuals, including some private messages. The bre… The Register · Aug 20, 2026 Medium FRvulnerabilitydata breachsharepoint
threat-intel Using Microsoft Graph and Powershell to Mine for Information - Stale Accounts and Licenses, (Thu, Aug 20th) This article details a PowerShell script leveraging the Microsoft Graph API to extract detailed information about Microsoft 365 users, including their last password change date, login activity, and assigned licenses. The… SANS Internet Storm Center · Aug 20, 2026 Medium microsoft graphentaralicense management
threat-intel Police Are Hiding Their Use of Flock Surveillance Cameras Iowa police are actively concealing their use of Flock license plate reader cameras, a system that tracks vehicle movements. This secrecy stems from a specific usage policy instructing officers not to disclose the camera… Schneier on Security · Aug 20, 2026 Medium surveillanceprivacylicense-plates