threat-intel LLMs and Contextual Integrity Researchers have discovered that large language models (LLMs) frequently leak sensitive information from their memory, even when it's inappropriate for the current task. This behavior stems from a lack of contextual awar… Schneier on Security · Aug 18, 2026 Medium llmcontextual integrityprivacy
threat-intel SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers SafePal, a hardware wallet maker, disclosed a flaw in its order-tracking plug-in that exposed the personal data of approximately 39,798 customers, including names, addresses, and purchase details, between March 2025 and… The Hacker News · Aug 18, 2026 Medium data breachcryptocurrencyhardware wallet
vulnerability Dozens of WebKit Vulnerabilities Patched With Fresh macOS, iOS Security Updates Apple released security updates for macOS, iOS, and iPadOS addressing dozens of vulnerabilities primarily within the WebKit browser engine. These updates fix issues ranging from crashes and data exposure to potential sys… SecurityWeek · Aug 18, 2026 Medium webkitsecuritypatch
vulnerability Multiples vulnérabilités dans Typo3 (18 août 2026) Multiple vulnerabilities have been discovered in Typo3, allowing attackers to bypass security policies. These flaws require immediate patching to prevent exploitation and potential security breaches. The French CERT has… CERT-FR · Aug 18, 2026 Medium CVE-2026-15305CVE-2026-19418typo3vulnerabilitysecurity
vulnerability Multiples vulnérabilités dans Mattermost Desktop App (18 août 2026) Multiple vulnerabilities have been discovered in the Mattermost Desktop App, potentially allowing an attacker to compromise data confidentiality and a security issue not specified by the vendor. Users of versions prior t… CERT-FR · Aug 18, 2026 Medium CVE-2026-75587mattermostvulnerabilitydesktop app
vulnerability Multiples vulnérabilités dans GitLab (18 août 2026) Multiple vulnerabilities have been discovered in GitLab, including one that could allow attackers to compromise data integrity and another through Cross-Site Request Forgery (CSRF). GitLab versions 19.0.x through 19.0.8,… CERT-FR · Aug 18, 2026 Medium CVE-2026-19478CVE-2026-19650gitlabvulnerabilitysecurity
vulnerability Apple Patches iOS and macOS, (Mon, Aug 17th) Apple released security updates for iOS, iPadOS, and macOS to address 108 vulnerabilities, primarily targeting the WebKit component. This update follows a smaller macOS patch and represents a significant effort to bolste… SANS Internet Storm Center · Aug 17, 2026 Medium CVE-2026-28958CVE-2026-28973CVE-2026-28984webkitsecuritypatch
vulnerability Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection Researchers at Wiz discovered a GitHub Actions workflow injection vulnerability in Snowflake's snowflakedb/snowflake-connector-net repository. An attacker could craft a GitHub issue to inject malicious code into a workfl… The Hacker News · Aug 17, 2026 Medium github actionsworkflow injectionjira
threat-intel An “invisible” car? Researcher uses machine learning to hide vehicles from Flock cameras A cybersecurity researcher has developed a method using machine learning to generate patterns that successfully evade detection by surveillance cameras, specifically targeting systems like Flock’s license plate readers.… Graham Cluley · Aug 17, 2026 Medium surveillanceprivacylicense plate recognition
threat-intel Hacking Public Wi-Fi DNS to Steal Credentials Attackers are exploiting vulnerabilities in public Wi-Fi networks to hijack DNS settings, leading to users being redirected to fraudulent login pages and having their credentials stolen. This technique bypasses standard… Schneier on Security · Aug 17, 2026 Medium dnswificredential theft
data-breach 40,000 Impacted by SafePal Data Breach SafePal, a crypto hardware wallet manufacturer, has been the target of a data breach affecting approximately 40,000 customers. Hackers exploited a vulnerability in the order-tracking plugin to steal customer information,… SecurityWeek · Aug 17, 2026 Medium data breachcryptocurrencyphishing
threat-intel Code fixers have fired up the AI warp drive. Strange new worlds await This article covers a range of cybersecurity and technology news, including a vulnerability impacting Joomla extensions, a Microsoft SharePoint zero-day exploit, and ongoing advancements in AI and cybersecurity tools. It… The Register · Aug 17, 2026 Medium IRvulnerabilityjoomlasharepoint
threat-intel Chinese AI company Zhipu claims its new is a better bug-finder than Anthropic, OpenAI A Chinese AI company, Zhipu, claims its new AI model is superior at finding bugs compared to leading US competitors like Anthropic and OpenAI. This highlights a growing trend of AI-powered vulnerability detection and a p… The Register · Aug 17, 2026 Medium CHIRSWaivulnerabilitycybersecurity
vulnerability Wireshark 4.6.8 Released, (Sun, Aug 16th) Wireshark, a widely used network protocol analyzer, released version 4.6.8, addressing 28 vulnerabilities and 25 bugs. This update significantly improves the security posture of the tool, mitigating potential risks assoc… SANS Internet Storm Center · Aug 16, 2026 Medium wiresharkvulnerabilitynetwork analysis
threat-intel Stopping a cyberattack while walking your dog - defensive AI security CEO says it's not ruff to do This article covers a range of cybersecurity and technology news, including a warning about autonomous AI attacks posing a significant risk to critical infrastructure, a report on Russian phishing campaigns mimicking Sig… The Register · Aug 16, 2026 Medium IRRUcyberattackphishingransomware
threat-intel Amid AI-Driven Bug Tsunami, NIST Looks to…AI The National Institute of Standards and Technology (NIST) is seeking public input on how to modernize the National Vulnerability Database (NVD) in light of a massive surge in software vulnerabilities, driven in part by A… Dark Reading · Aug 14, 2026 Medium vulnerabilityaicybersecurity
data-breach French tax authority admits data heist after crook touts 2M records The French tax authority, l'administration fiscale, has admitted to a data breach resulting in the potential theft of up to two million records. The breach was facilitated by a criminal attempting to sell the stolen data… The Register · Aug 14, 2026 Medium FRdata breachgovernmentcybersecurity
threat-intel Cyberharcèlement : la Belgique prépare un bannissement numérique Belgium is considering a system to temporarily ban individuals from social media platforms who are convicted of online offenses, drawing inspiration from a similar law in France. The initiative, spearheaded by Minister o… ZATAZ · Aug 14, 2026 Medium BEcyberbullyingonline crimesocial media
threat-intel Google Cloud Sets Out Post-Quantum Roadmap With 2029 Readiness Goal Google Cloud is proactively preparing its infrastructure for the advent of quantum computing by outlining a roadmap to transition to post-quantum cryptography (PQC). Their goal is to achieve full readiness by 2029, focus… SecurityWeek · Aug 14, 2026 Medium post-quantumcryptographyquantum computing
data-breach 1.6 Million Likely Impacted by RingCentral Data Breach A data breach at RingCentral has potentially exposed the personal information of 1.6 million individuals, including email addresses, names, and phone numbers. The breach was orchestrated by the ShinyHunters extortion gro… SecurityWeek · Aug 14, 2026 Medium data breachsocial engineeringtor