threat-intel Curiouser and Curiouser Cisco Talos has identified "JWR", a new phishing framework and variant of "The Outsider" as a service, used to steal payment data, 2FA codes, and device fingerprints via SMS lures impersonating regional authorities. The… Cisco Talos · Aug 13, 2026 High phishingsmsmfa
threat-intel ZATAZ FAIT SON GRAND MÉNAGE D’ÉTÉ : LES OUTILS CYBER FONT PEAU NEUVE ZATAZ has revamped its cybersecurity resource page, offering a comprehensive collection of tools and educational materials designed to enhance cybersecurity awareness and skills. The update includes a wide range of resou… ZATAZ · Aug 13, 2026 Medium cyber threat intelligenceosintdark web
threat-intel Flock tightens privacy controls amid scandals over officer abuse Flock Safety, a license plate reader company, is implementing new privacy controls and requirements to address concerns about law enforcement misuse of its technology. Following numerous reports of officers using the cam… The Record · Aug 13, 2026 Medium surveillanceprivacycivil liberties
threat-intel Trump wants to grant private cyber firms a license to hack back This article is a collection of security and technology news snippets. It highlights a range of developments, including a potential US government initiative to allow private cybersecurity firms to conduct offensive opera… The Register · Aug 13, 2026 Medium IRcybersecurityphishingransomware
threat-intel New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure A Pakistan-aligned threat actor, APT36 (Transparent Tribe), is targeting Afghan telecom providers and critical infrastructure in South Asia with a new backdoor campaign called PATCHCORD. The campaign utilizes sector-spec… The Hacker News · Aug 13, 2026 High CVE-2024-6387AFINbackdoorc2afghanistan
threat-intel Trump taps cyber firms to go on offensive against criminals The Trump administration is expanding its efforts to combat cybercrime by allowing private cybersecurity firms to conduct offensive operations targeting transnational criminal networks. The initiative, outlined in a pres… The Record · Aug 13, 2026 High CHCAMYcybercrimeoffensive-cybercybersecurity
threat-intel Germany moves to give spy agencies hacking and sabotage powers Germany is poised to significantly expand the powers of its intelligence agencies, allowing them to conduct cyber operations, sabotage supply chains, and spread disinformation within the country. This legislation, a majo… The Record · Aug 13, 2026 High GERUcybersecurityintelligencesurveillance
threat-intel North Korean Remote Workers Are Infiltrating Government and Businesses: How to Expose Them Before Hiring North Korean IT workers are increasingly infiltrating government and businesses by securing jobs through traditional hiring processes. The FBI is currently investigating a case where a North Korean remote worker was hire… The Hacker News · Aug 13, 2026 High NOnorth korealazarus groupremote worker
threat-intel 'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft The ‘Jewelbug’ APT group, operating out of China, balances state-sponsored espionage and cryptocurrency theft, targeting governments, military organizations, and corporations globally. They utilize a custom command-and-c… Dark Reading · Aug 13, 2026 High CHMISOcyber espionagecryptocurrency theftnation-state
vulnerability Belgium's eID Authentication Opens Citizen Accounts to RCE A critical vulnerability was discovered in Belgium's eID authentication system due to a severely flawed browser extension, "Connective." This vulnerability allowed attackers to steal Belgian citizens' identities, payment… Dark Reading · Aug 13, 2026 Critical BEbrowser extensionsrceidentity theft
vulnerability Attackers Exploit SharePoint Authentication Bypass After Public PoC Release Threat actors are actively exploiting a critical Microsoft SharePoint vulnerability (CVE-2026-55040) due to a bypass in the authentication feature. Following the release of a proof-of-concept by Rapid7, attackers are lev… The Hacker News · Aug 13, 2026 Critical CVE-2026-55040HOJANEjwtauthenticationsharepoint
threat-intel Chinese Loongson processors have leaky caches, researchers find Researchers have discovered a significant security vulnerability in Chinese Loongson processors, specifically related to their cache memory. This allows attackers to potentially extract sensitive data from the processors… The Register · Aug 13, 2026 Medium CNvulnerabilitycachechina
threat-intel Des accès superadmin exposent 27 sites français A single administrator account granting access to 27 French websites was leaked on a hacking forum, with a direct incentive for other members to collect and deliver all accessible data within 48 hours. The author is acti… ZATAZ · Aug 13, 2026 High FRhackingdatabaseadministrator
vulnerability Multiples vulnérabilités dans les produits Fortinet (13 août 2026) Multiple vulnerabilities have been discovered in Fortinet products, including several that could allow for remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various… CERT-FR · Aug 13, 2026 High CVE-2026-26035CVE-2026-49975CVE-2026-70465vulnerabilitypatchremote code execution
threat-intel Impots.gouv.fr : un pirate revendique une intrusion A French hacker claims to have breached impots.gouv.fr, the French tax authority’s website, and exfiltrated 678,438 lines of data, including highly detailed tax information on French citizens and businesses. The data, pr… ZATAZ · Aug 12, 2026 High FRdata-breachphishingidentity theft
threat-intel Taïwan visé par une cyberattaque pilotée par IA ? A Taiwanese cybersecurity incident, potentially linked to a Chinese operator, has involved a sophisticated campaign utilizing multiple AI agents to target government systems and critical infrastructure. Researchers at Dr… ZATAZ · Aug 12, 2026 High CHaicyberattackintelligence
threat-intel Drones IA : l’angle mort de la vie privée Munera Intelligence in Montreal is using AI-powered drones to detect construction obstructions and other issues, raising significant privacy concerns. The article highlights the potential for extensive data collection –… ZATAZ · Aug 12, 2026 High CAFRsurveillanceaiprivacy
vulnerability Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows A Microsoft-based hacker has developed a new zero-day vulnerability in on-prem SharePoint, allowing them to gain system privileges on fully patched Windows systems. This represents a significant security risk, as it bypa… The Register · Aug 12, 2026 High CVE-2026-50656CVE-2026-33825CVE-2026-41091zero-daysharepointvulnerability
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation
threat-intel Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition Colombian Justice Ministry suffered a ransomware attack on August 2nd, disrupting services related to illicit drug monitoring and legal processes, just days before the presidential transition. The Ministry denied data th… Dark Reading · Aug 12, 2026 High COransomwarecloud securitythird-party risk