threat-intel Multiples vulnérabilités dans le noyau Linux d'Ubuntu (17 juillet 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Ubuntu. Some of these vulnerabilities allow for privilege escalation, remote denial of service, and data confidentiality compromise. The vulnerabilitie… CERT-FR · Jul 17, 2026 High CVE-2021-47117CVE-2021-47202CVE-2022-48816linuxkernelvulnerability
ransomware Anubis ransomware: what you need to know The Anubis ransomware, delivered as a service, is targeting healthcare organizations, but its reach extends beyond this sector. This RaaS operation is causing significant disruption and data loss for affected entities, h… Graham Cluley · Jul 16, 2026 High ransomwareraashealthcare
threat-intel Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation Senator Ron Wyden is urging the Trump administration to push back against Canadian legislation that could force U.S. tech companies to create backdoors and share user data, potentially compromising U.S. national security… The Record · Jul 16, 2026 High CAUSsurveillanceprivacyencryption
threat-intel Agentic AI Is Untamable: Ask the Right Security Questions This article discusses the growing challenge of ‘agentic AI’ – artificial intelligence systems that operate with increasing autonomy and unpredictability – and argues that traditional cybersecurity approaches are inadequ… Dark Reading · Jul 16, 2026 High agentic aiai securitycybersecurity
threat-intel Begun, the Patch Wars have Cisco Talos has identified a sophisticated, financially motivated Russian-speaking adversary, UAT-11795, actively targeting users in the U.S. and Europe since June 2025. This campaign utilizes trojanized software install… Cisco Talos · Jul 16, 2026 High UNRUEUsupply-chainaptzero-day
threat-intel Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack Two young British hackers, Owen Flowers and Thalha Jubair, were convicted and sentenced to five and a half years for a sophisticated attack on Transport for London (TfL), resulting in significant disruption and financial… The Hacker News · Jul 16, 2026 High cybercrimehackvulnerability
threat-intel ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories This week’s security news is a mixed bag, encompassing a range of threats from sophisticated ransomware attacks to deceptive software distribution and widespread surveillance techniques. A new ransomware family, Spirals,… The Hacker News · Jul 16, 2026 High CVE-2026-46817CVE-2023-4346CVE-2026-35273NESPPOransomwareinfostealerbrandjacking
threat-intel Legacy Systems, Real-World Impacts: The Reality of OT Security This article highlights the unique challenges of securing Operational Technology (OT) systems compared to traditional IT environments. Unlike IT, OT vulnerabilities often lead to devastating real-world consequences – lik… SecurityWeek · Jul 16, 2026 High otcybersecurityvulnerability
threat-intel Sandworm hackers have a CAPTCHA trick for Ukrainians Sandworm, a hacking group linked to Russia's military intelligence, is using a sophisticated CAPTCHA trick to trick Ukrainian targets into installing malware on their computers. The group employs a 'ClickFix' technique,… The Record · Jul 16, 2026 High RUsocial engineeringmalware distributionransomware
vulnerability n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another Issuer A vulnerability in n8n’s Enterprise token exchange feature allows attackers to log in as users from another issuer if the platform trusts more than one external token issuer. The flaw stems from a mismatch between the is… The Hacker News · Jul 16, 2026 High CVE-2026-59208CVE-2026-54305jwttokenidentity-binding
threat-intel Two Scattered Spider Hackers Sentenced to Jail in UK Two members of the Scattered Spider cybercrime group, Thalha Jubair and Owen Flowers, were sentenced to prison in the UK for their role in a 2024 attack on Transport for London, resulting in significant financial losses.… SecurityWeek · Jul 16, 2026 High UKUSEScybercrimeukscattered spider
threat-intel HelloNet campaign — new malicious modules launched through the ViPNet update system A Chinese-speaking Advanced Persistent Threat (APT) group, likely operating since May 2026, has been targeting Russian organizations using a sophisticated campaign centered around the ViPNet software suite. The campaign… Securelist · Jul 16, 2026 High CHaptdll hijackingprocess injection
threat-intel AI Data Centers Are Being Built Faster Than They Can Be Secured A Lava Labs report highlights significant security risks associated with the rapid growth of AI data centers, arguing that these new facilities are being built without adequately addressing the unique vulnerabilities ste… SecurityWeek · Jul 16, 2026 High aidata centersecurity
threat-intel New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands A new modular malware, TELEPUZ, is spreading via ClickFix lures and is being developed by a solo developer or small team. The malware steals data, runs commands, and evades detection through various techniques, including… The Hacker News · Jul 16, 2026 High BRINclickfixpastejackingmalware-as-a-service
threat-intel ‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing ClickLock Stealer, a new macOS malware, bypasses macOS security through social engineering and aggressive process killing to steal sensitive data, including browser data, cryptocurrency wallets, and password manager info… SecurityWeek · Jul 16, 2026 High DEFRITmacossocial engineeringprocess killing
threat-intel New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password A new macOS infostealer, dubbed ClickLock Stealer, is actively targeting users by forcing them to enter their passwords repeatedly through a loop of killing apps. The malware, a copy of GSocket, uses a deceptive Cloudfla… The Hacker News · Jul 16, 2026 High EUmacosinfostealerpassword
threat-intel GoSerpent: a persistent threat evolves with sophisticated data collection and exfiltration A sophisticated, evolving threat actor, potentially linked to TetrisPhantom, has been targeting government and diplomatic entities in Southeast Asia since late 2025 with a campaign utilizing tools like GoSerpent, Stowawa… Securelist · Jul 16, 2026 High VNTHproxyremote accessdata exfiltration
vulnerability Rockwell Automation 1756-EN2, 1756-EN3, and 1756-ENBT Rockwell Automation has released a vulnerability in its 1756-EN2, 1756-EN3, and 1756-ENBT communication modules. Exploitation could lead to a denial-of-service condition. Users are advised to update to the latest version… CISA Advisories · Jul 16, 2026 High CVE-2026-9653vulnerabilitycontrol systemscisa
vulnerability Rockwell Automation CompactLogix, ControlLogix, Compact GuardLogix and GuardLogix Several vulnerabilities exist in Rockwell Automation's CompactLogix, ControlLogix, Compact GuardLogix, and GuardLogix controllers. Successful exploitation could lead to a denial-of-service condition due to an invalid pro… CISA Advisories · Jul 16, 2026 High CVE-2025-12011CVE-2025-12012CVE-2025-11698firmwarecontrol-systemdenial-of-service
vulnerability Rockwell Automation Arena Rockwell Automation has released an advisory regarding critical vulnerabilities in its Arena simulation software. Specifically, versions up to V17.00.00 are affected by memory corruption flaws that could allow an attacke… CISA Advisories · Jul 16, 2026 High CVE-2026-8085CVE-2026-8312CVE-2026-8313vulnerabilitycontrol-systemmemory-corruption