threat-intel Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware Threat actors are spending heavily – nearly $7 million – on expired domains to build a criminal enterprise focused on illegal sports streaming, online gambling promotion, and malware infrastructure. These ‘dropcatch’ dom… The Hacker News · Aug 14, 2026 High VIRUAUdropcatchexpired domainsmalware
threat-intel Amid AI-Driven Bug Tsunami, NIST Looks to…AI The National Institute of Standards and Technology (NIST) is seeking public input on how to modernize the National Vulnerability Database (NVD) in light of a massive surge in software vulnerabilities, driven in part by A… Dark Reading · Aug 14, 2026 Medium vulnerabilityaicybersecurity
threat-intel Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office A data breach at Scotland's Crown Office and Procurator Fiscal Service (COPFS) has exposed the personal information of approximately 300 employees, potentially impacting a wider number of Scottish government agencies inv… Dark Reading · Aug 14, 2026 High UKvendor-riskdata-breachphishing
data-breach French tax authority admits data heist after crook touts 2M records The French tax authority, l'administration fiscale, has admitted to a data breach resulting in the potential theft of up to two million records. The breach was facilitated by a criminal attempting to sell the stolen data… The Register · Aug 14, 2026 Medium FRdata breachgovernmentcybersecurity
threat-intel France investigates tax authority breach after hacker claims 600,000 victims France’s tax authority, DGFiP, is investigating a breach that a hacker claims impacted over 600,000 individuals and businesses. The attacker gained unauthorized access to systems in late June, allowing them to steal data… The Record · Aug 14, 2026 High FRdata breachfrancegovernment
threat-intel Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth The HoneyMyte threat actor (aka Mustang Panda) has updated its CoolClient backdoor with a new, signed Windows kernel-mode rootkit, significantly enhancing its stealth capabilities. This rootkit, implemented through a dri… The Hacker News · Aug 14, 2026 High MYMOPArootkitkernel-modestealth
threat-intel Autonomous AI attacks pose 'clear and present danger' to critical infrastructure A growing trend indicates that attackers are increasingly leveraging open-source AI agents to autonomously launch sophisticated cyberattacks against critical infrastructure, including government systems, energy companies… The Register · Aug 14, 2026 High CHIRNOaicyberattackcritical infrastructure
threat-intel In Other News: Rapid7 Layoffs, Hacking a Boeing 737, Refrigeration System Vulnerabilities This week’s cybersecurity news highlights a range of concerning developments, including a government contract sparking AI concerns, a North Korean IT worker infiltrating a US federal agency, vulnerabilities discovered in… SecurityWeek · Aug 14, 2026 High NOransomwarecyberattackvulnerability
threat-intel Cyberharcèlement : la Belgique prépare un bannissement numérique Belgium is considering a system to temporarily ban individuals from social media platforms who are convicted of online offenses, drawing inspiration from a similar law in France. The initiative, spearheaded by Minister o… ZATAZ · Aug 14, 2026 Medium BEcyberbullyingonline crimesocial media
threat-intel Who’s Tracking You? Use This New Service to Find Out DecryptAds is a new service designed to expose the complex ecosystem of adtech companies tracking users online. By scraping data from files like ads.txt, app-ads.txt, and sellers.json, it reveals a network of data broker… Krebs on Security · Aug 14, 2026 High CHRUUAadtechdata-brokermalvertising
threat-intel Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware Apple is warning users in over 150 countries about potential mercenary spyware attacks, sending notifications via email and in-app alerts. These sophisticated attacks target specific individuals – journalists, activists,… The Hacker News · Aug 14, 2026 High spywaremercenarythreat-intel
threat-intel Scottish prosecutors cast eye over leaky supplier after staff data exposed Scottish prosecutors are investigating a supplier after a data breach exposed staff information. The incident highlights ongoing security vulnerabilities within third-party services and the potential for misuse of sensit… The Register · Aug 14, 2026 Medium CHUKdata breachcybersecuritysupplier security
threat-intel China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud The China-linked threat actor Jewelbug, operating as a ‘hack-for-hire’ group, is engaged in both sophisticated government espionage targeting nations across the Middle East, Southeast Asia, and South Asia, and cryptocurr… The Hacker News · Aug 14, 2026 High CHMISOespionagecryptocurrencyhack-for-hire
vulnerability Hackers Exploiting Unpatched GeoServer Zero-Day A zero-day vulnerability in GeoServer is being actively exploited by threat actors shortly after its public disclosure. The flaw, a SQL injection, allows remote code execution and has prompted immediate action from secur… SecurityWeek · Aug 14, 2026 High sql injectionzero-dayremote code execution
threat-intel New Zealand says China tried using space investments to spy on local affairs New Zealand intelligence agencies have uncovered evidence that China has been attempting to utilize its growing investments in space technology to conduct espionage operations targeting local affairs. This involves lever… The Register · Aug 14, 2026 High CNespionagespace-basedsurveillance
threat-intel OpenAI ditches Recall-style screenshot surveillance for friendly keylogging This article is a collection of security and technology news snippets. OpenAI is reportedly abandoning screenshot surveillance (Recall) in favor of keylogging, while IBM and Nvidia are partnering on a large-scale deploym… The Register · Aug 14, 2026 Medium CHUSphishingsurveillanceransomware
vulnerability Multiples vulnérabilités dans le noyau Linux de Debian (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian. These vulnerabilities allow for privilege escalation, data compromise, and denial of service. Affected Debian versions are those prior to 6.12.… CERT-FR · Aug 14, 2026 High CVE-2025-40098CVE-2026-45897CVE-2026-45901linuxkerneldebian
threat-intel Multiples vulnérabilités dans le noyau Linux de Debian LTS (14 août 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian LTS. Several of these vulnerabilities allow for privilege escalation, data compromise, and denial of service. The vulnerabilities affect Debian… CERT-FR · Aug 14, 2026 High CVE-2024-36013CVE-2025-21807CVE-2025-40196linuxvulnerabilitydebian
vulnerability GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE A newly discovered zero-day SQL injection vulnerability in GeoServer is currently being actively exploited. The vulnerability, which has been assigned a GitHub security advisory identifier (GHSA-mqjf-5f49-2fjh), allows f… The Hacker News · Aug 13, 2026 Critical CVE-2024-36401CVE-2023-25158CVE-2023-25157sql injectionzero-dayremote code execution
threat-intel Fisc : un accès illégitime confirmé a exposé des données A breach in the French tax authority (DGFiP) system in June 2026 led to unauthorized access and the extraction of sensitive data, potentially impacting up to 678,437 individuals and a further two million property owners.… ZATAZ · Aug 13, 2026 High FRdata breachtax datafrench government