threat-intel Black Hat special: Rewind and revisit This article is a promotional piece from Cisco Talos highlighting their Humans of Talos series, a podcast showcasing the diverse backgrounds of threat intelligence professionals. It announces their presence at Black Hat… Cisco Talos · Jul 30, 2026 Info threat-intelpodcastblack hat
vulnerability Critical Ruflo Flaw Lets Attackers Spawn Rogue AI Swarms A critical vulnerability (CVE-2026-59726, CVSS 10/10) in Ruflo, an AI agent orchestration platform, allows unauthenticated attackers to execute commands within the container, potentially leading to remote code execution,… SecurityWeek · Jul 30, 2026 Critical CVE-2026-59726vulnerabilityremote code executionapi key theft
threat-intel 240 bases françaises diffusées par des pirates A massive leak of 240 French databases, totaling approximately 90% of which are already known, has been released by multiple pirates. The data spans incidents since 2022 and includes organizations like Gustave Auto, Wina… ZATAZ · Jul 30, 2026 High FRdata leakcybercrimedata breach
threat-intel 1 in 5 Data Center Assets Are Within Easy Reach of Attackers A Claroty report reveals that nearly one in five data center assets are within easy reach of attackers, with a significant portion (18%) just one network hop away from internet exposure. This exposes critical infrastruct… SecurityWeek · Jul 30, 2026 High cyber-physical systemsot securitydata center
threat-intel Mercor face aux affirmations d’un pirate A hacker claiming to be linked to Lapsus$ is alleging a major data breach at Mercor, a US startup specializing in AI data and intelligence. The hacker claims to possess 1.150GB of user data, including biometric informati… ZATAZ · Jul 30, 2026 High N/data breachbiometricslapsus$
threat-intel North Korea’s elite hackers turned on their own government – and got caught North Korea's elite hackers, trained by the Reconnaissance and Intelligence General Bureau (the same agency behind the Lazarus Group), turned their skills inward and attempted to steal funds from the country's two larges… Graham Cluley · Jul 30, 2026 High KPnorth koreahackingcybercrime
threat-intel Le rôle de l’IA dans les opérations de cybercriminalité sur le dark web The article highlights a growing trend in cybercrime – the use of artificial intelligence by criminals on the dark web. AI is being used to create more convincing phishing attacks, automate various stages of attacks, and… ZATAZ · Jul 30, 2026 High aicybercrimedark web
threat-intel Beyond the screenshot: Why you should verify what you see The article highlights a growing problem: the increasing ease with which digital evidence, particularly screenshots, can be manipulated to deceive. As AI tools make it easier to create convincing fake images, consumers a… WeLiveSecurity · Jul 30, 2026 Medium frauddigital-evidencescreenshots
threat-intel US and Allies Update SBOM Guidance The US government, alongside 13 allied nations, has released updated guidance on Software Bill of Materials (SBOMs) to enhance software supply chain security and transparency. This revised guidance builds upon previous e… SecurityWeek · Jul 30, 2026 Info USAUsbomsupply chainsoftware security
ransomware Toy Ghouls’ new toy: the GenieLocker ransomware The Toy Ghouls group, also known as Bearlyfy, Labubu, and Laboo.boo, has released GenieLocker, a custom ransomware family targeting organizations in Russia, primarily in the manufacturing sector. This new ransomware is a… Securelist · Jul 30, 2026 High
vulnerability Chrome 151 Patches 370 Vulnerabilities Google released Chrome 151, addressing a massive 370 security vulnerabilities. This update includes critical and high-severity bugs across various components, highlighting the ongoing need for diligent security practices… SecurityWeek · Jul 30, 2026 High vulnerabilitychromesecurity
threat-intel Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation Russian threat actors, linked to Laundry Bear (TA488), are exploiting a vulnerability in Microsoft Outlook Web Access (OWA) to maintain persistent access to email accounts within U.S. and European government entities and… The Hacker News · Jul 30, 2026 High CVE-2026-42897CVE-2025-66376USEUxsscredential theftpersistence
threat-intel FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks The FCC has added foreign-produced mobile robots and networked power inverters to its Covered List, aiming to mitigate cybersecurity risks associated with these devices. This action prevents new models from receiving equ… The Hacker News · Jul 30, 2026 High CVE-2025-35027CVE-2025-2894UNcybersecuritynational securitysupply chain
threat-intel Headteacher had the most guessable username-password combo you could imagine This article is a roundup of cybersecurity and technology news, covering a range of topics including a phishing campaign targeting Signal users, a zero-day vulnerability in on-prem SharePoint, and a report on vulnerabili… The Register · Jul 30, 2026 Medium UNphishingvulnerabilityransomware
vulnerability Cisco Secure FMC Zero-Day Exploited in the Wild A zero-day vulnerability (CVE-2026-20316) in Cisco Secure Firewall Management Center (FMC) is being actively exploited in the wild. Attackers are leveraging default credentials to gain access to sensitive data, and Cisco… SecurityWeek · Jul 30, 2026 High CVE-2026-20316CVE-2026-20079zero-dayvulnerabilitycisco
threat-intel Excuses like 'AI did it' don't exist in the eyes of the law This article is a collection of security-related news snippets, covering a range of topics from cybersecurity incidents and vulnerabilities to acquisitions and technological developments within the open-source and Linux… The Register · Jul 30, 2026 Medium IRCHphishingzero-dayransomware
threat-intel Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet Amazon has attributed the September 2025 compromise of npm packages debug and chalk, along with subsequent incidents involving typo-crypto and axios, to North Korea’s Sapphire Sleet group. While initial reports attribute… The Hacker News · Jul 30, 2026 High KPnpmthreat intelligencemalware
vulnerability Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data A zero-day vulnerability in Cisco Secure Firewall Management Center (FMC) software is actively being exploited, allowing unauthenticated remote attackers to gain access to sensitive data. The vulnerability stems from sta… The Hacker News · Jul 30, 2026 High CVE-2026-20316CVE-2026-20079zero-dayauthenticationremote
threat-intel ISC Stormcast For Thursday, July 30th, 2026 https://isc.sans.edu/podcastdetail/10030, (Thu, Jul 30th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques to steal credentials. The threat landscape is evolving rapi… SANS Internet Storm Center · Jul 30, 2026 High phishingcredential stuffingbusiness applications
threat-intel SE Asian Cybercriminal Syndicates Become a Global Power Southeast Asian cybercriminal syndicates have evolved into a global organized crime crisis, fueled by technological advancements and corruption. These groups, originating largely from China and operating across Southeast… Dark Reading · Jul 30, 2026 Critical CHMYCAcybercrimecryptocurrencytrafficking