threat-intel ISC Stormcast For Thursday, August 13th, 2026 https://isc.sans.edu/podcastdetail/10050, (Thu, Aug 13th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Aug 13, 2026 Medium phishingvulnerabilitycybersecurity
threat-intel ArtNexus : une fuite expose le marché international de l’art A database belonging to ArtNexus, an international art specialist, has been publicly exposed, offering a detailed map of its business ecosystem. The database, accessible without authentication, contains thousands of acco… ZATAZ · Aug 13, 2026 High FRdatabasephishingsocial engineering
threat-intel Impots.gouv.fr : un pirate revendique une intrusion A French hacker claims to have breached impots.gouv.fr, the French tax authority’s website, and exfiltrated 678,438 lines of data, including highly detailed tax information on French citizens and businesses. The data, pr… ZATAZ · Aug 12, 2026 High FRdata-breachphishingidentity theft
threat-intel Smashing Security podcast #480: This is the AI service you should never sign up to This episode of Smashing Security tackles two distinct cybersecurity concerns: a deceptive AI service offering drastically reduced access to Anthropic's Claude model, and a phishing-as-a-service platform called ‘Greatnes… Graham Cluley · Aug 12, 2026 High phishingaiincels
threat-intel Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor The Lazarus Group, a North Korean threat actor, is exploiting a newly patched zero-day vulnerability in Microsoft Windows' AFD.sys driver to gain SYSTEM access and deploy a backdoor called Troy. They are leveraging a sop… The Hacker News · Aug 12, 2026 High CVE-2026-68820CVE-2025-49113FRGEBRzero-daysocial engineeringphishing
threat-intel WhatsApp Unveils New Scam Alert Feature WhatsApp is rolling out a limited beta feature called Scam Alert, designed to identify potentially scam messages on users' devices *before* they are sent. The feature uses on-device machine learning, doesn't send message… SecurityWeek · Aug 12, 2026 Medium GERUmachine learningencryptionprivacy
threat-intel Akira ransomware scum blocked victim's security tools – and broke their own encryptor Russian threat actors are impersonating Signal support to conduct phishing attacks, targeting users to steal their information. This follows a trend of Iranian propaganda sites being taken down by the US, and a marketing… The Register · Aug 12, 2026 Medium IRRUphishingthreat intelligencesocial engineering
threat-intel Brit rail cops bring live facial recognition to the London Underground A security report highlighted a vulnerability where malicious actors are exploiting extension bugs in Joomla websites, allowing them to launch phishing attacks by impersonating Signal support. This follows a broader tren… The Register · Aug 12, 2026 Medium joomlaphishingvulnerability
threat-intel ISC Stormcast For Wednesday, August 12th, 2026 https://isc.sans.edu/podcastdetail/10048, (Wed, Aug 12th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Aug 12, 2026 High phishingransomwaresupply chain
threat-intel Signal adds an extra layer of security to make sure you're actually chatting with the right person A phishing campaign is underway where attackers are impersonating Signal support to trick users into revealing their information. This follows a broader trend of security vulnerabilities being exploited in open-source so… The Register · Aug 11, 2026 Medium phishingjoomlavulnerability
threat-intel Two wars and a World Cup lead to epic DDoS attacks on publishers This article covers a range of cybersecurity and technology news, including a phishing campaign targeting Signal users, a zero-day exploit affecting on-prem SharePoint, and a vulnerability impacting Joomla extensions. It… The Register · Aug 11, 2026 Medium IRphishingvulnerabilitycybersecurity
threat-intel Deepfake hiccup unmasks suspected digital certificate fraudster This article discusses a potential digital certificate fraud scheme linked to deepfake technology, where Russian actors are impersonating Signal support to launch phishing attacks. The vulnerability stems from flaws in J… The Register · Aug 11, 2026 Medium RUdeepfakephishingjoomla
threat-intel Malicious SIMs can shut down phones, steal files, and drag 5G back to 2G This article discusses a security vulnerability where malicious actors are exploiting SIM cards to disable phones, steal data, and potentially downgrade connections to 2G, enabling more sophisticated phishing attacks. Th… The Register · Aug 11, 2026 High CVE-2025-48618CHRUsim cardphishingtelecom security
ransomware Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks The Gunra ransomware group, linked to state-sponsored actors, is aggressively targeting critical infrastructure and organizations globally, leveraging vulnerabilities in Fortinet and Schneider Electric appliances to gain… The Hacker News · Aug 11, 2026 High CVE-2024-5559CVE-2025-24472SOBRSPransomwarevulnerabilitysupply-chain
threat-intel Steam : une fuite chez CEVA expose des clients européens A data breach at CEVA Logistics, a logistics provider for Steam, has exposed customer delivery data, including names, addresses, phone numbers, and order details. This exposes Steam users, particularly in Europe, to targ… ZATAZ · Aug 11, 2026 High DEdata breachphishingsupply chain
threat-intel Cars.no : une fuite revendiquée expose 148 288 automobilistes A Norwegian security researcher claims to have discovered a publicly accessible database belonging to Cars Software, an automotive software provider used by over 500 garages, dealerships, and wholesalers in Norway. The d… ZATAZ · Aug 10, 2026 High NOdatabasephishingdata breach
threat-intel Un phishing Ameli qui observe avant de frapper This article details a sophisticated phishing campaign mimicking the French Assurance Maladie (health insurance) to steal user data and potentially launch further attacks. The campaign uses a layered approach, including… ZATAZ · Aug 10, 2026 High FRINphishingsocial engineeringcloaking
threat-intel Une fausse lettre AR24 vole les identifiants mail This article details a phishing campaign mimicking AR24 to steal email credentials. The attackers use a fake ‘letter of recommendation’ email with a fabricated ‘invoice due’ to create a sense of urgency and trick victims… ZATAZ · Aug 10, 2026 High phishingsocial engineeringcredential theft
threat-intel Attackers pick Levi's pockets in social engineering attack Attackers are leveraging social engineering to steal data from Levi's customers. The attackers impersonated Signal support to trick users into providing their credentials, leading to a data breach. The Register · Aug 10, 2026 Medium social engineeringdata breachphishing
threat-intel Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development North Korea's Kimsuky hacking group is building an offline AI infrastructure to bolster its phishing attacks and automate malware development. Security firm Genians discovered this setup, finding tools like Ollama, GPT4A… The Hacker News · Aug 10, 2026 High KRaiphishingnorth korea