ransomware Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack Coca-Cola’s Fairlife subsidiary suffered a ransomware attack from the Anubis group, resulting in a data breach and the potential release of 1TB of stolen data. Production has largely resumed, but the group is threatening… SecurityWeek · Jul 27, 2026 High ransomwaredata breachdouble extortion
threat-intel Beelzebub Raises $3.4 Million for Hacker-Trapping Platform Beelzebub, an Italian cybersecurity startup, has raised €3.4 million in seed funding to combat AI-powered cyberattacks. Their platform uses a combination of red and blue teaming, deception technology, and AI analysis to… SecurityWeek · Jul 27, 2026 Medium ITSAROaicybersecuritythreat intelligence
threat-intel Cognyte Sells a Mobile Cell Surveillance Van Cognyte, an Israeli surveillance firm, has sold a mobile cell surveillance van called FalcoNet, mimicking a cell tower to track nearby phones. This technology, similar to Stingrays, allows law enforcement to monitor comm… Schneier on Security · Jul 27, 2026 High ISsurveillanceprivacycell-site
threat-intel What’s Hiding in Your Mobile Apps? Lookout MSEC Aims to Find Out Lookout has launched a new Mobile Security Exposure Center (MSEC) designed to provide organizations with a deeper understanding of the vulnerabilities hidden within their mobile apps. MSEC creates a ‘software bill of mat… SecurityWeek · Jul 27, 2026 High CHmobile-securitysbomvulnerability
threat-intel Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware The China-linked cybercrime group behind tax-themed phishing campaigns is utilizing a sophisticated crypter service called Cruciferra to deliver a wide range of malware, including remote access trojans and information st… The Hacker News · Jul 27, 2026 High CNcrypterransomwarephishing
threat-intel Hacked Public Wi-Fi Gateways Used to Harvest Corporate Credentials A threat actor is exploiting vulnerabilities in public Wi-Fi gateways, particularly at hotels and conference centers, to steal corporate credentials, including Microsoft 365 accounts, and is leveraging tactics similar to… SecurityWeek · Jul 27, 2026 High USINSAdnscaptive portalcredential theft
vulnerability Java Spring Boot "heapdump" scans, (Mon, Jul 27th) A vulnerability in Spring Boot applications exposes a heapdump endpoint that, by default, contains sensitive data like API keys and database passwords. Attackers are leveraging a weak default username/password combinatio… SANS Internet Storm Center · Jul 27, 2026 High springheapdumpsecurity
threat-intel Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits Anthropic’s Opus 5 AI model excels at finding software vulnerabilities, nearly matching Mythos 5’s capabilities, but it cannot automatically generate exploits. Anthropic deliberately limits Opus 5’s exploit generation ab… SecurityWeek · Jul 27, 2026 Medium aivulnerabilitycybersecurity
data-breach DentaQuest Data Breach Potentially Impacts Over 23 Million People DentaQuest, a major dental and vision benefits administrator, experienced a significant data breach potentially impacting over 23 million people. Hackers gained access to sensitive information including Social Security n… SecurityWeek · Jul 27, 2026 High data breachsocial securityhealthcare
threat-intel TELESHIM Abuses Telegram for C2 in Attacks Against Middle East Governments A threat actor linked to East Asia has been targeting government entities in the Middle East using a sophisticated attack chain leveraging Telegram for command-and-control. The campaign utilizes malware families like TEL… The Hacker News · Jul 27, 2026 High CNedr evasiontelegramcommand and control
threat-intel GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption GitHub has implemented a three-day cooldown period for Dependabot to mitigate the risk of malicious packages being rapidly adopted by downstream projects. This new feature aims to slow down the spread of poisoned package… The Hacker News · Jul 27, 2026 Medium supply-chainpackage-managementdependency-updates
threat-intel Google goes it alone with a new cybercrime crew taxonomy This article is a collection of security news snippets from The Register. It highlights a Microsoft vulnerability in on-prem SharePoint, a phishing campaign impersonating Signal support, and a broader trend of increasing… The Register · Jul 27, 2026 High RUphishingvulnerabilitycybercrime
data-breach MCBS Data Breach Affects 1.2 Million Individuals A data breach at MCBS, a medical business management company, exposed the personal information of over 1.2 million individuals. The attack was attributed to the PEAR ransomware group, who also claimed responsibility for… SecurityWeek · Jul 27, 2026 High data breachransomwarephishing
vulnerability ISC Stormcast For Monday, July 27th, 2026 https://isc.sans.edu/podcastdetail/10024, (Mon, Jul 27th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Log4j 2, potentially allowing attackers to execute arbitrary code through a malicious log message. This vulnerability, alongside r… SANS Internet Storm Center · Jul 27, 2026 Critical log4jjndiremote code execution
vulnerability Multiples vulnérabilités dans GLPI (27 juillet 2026) Multiple vulnerabilities have been discovered in GLPI, including potential for privilege escalation, data integrity compromise, and SQL injection. These vulnerabilities affect GLPI versions prior to 11.0.8 and 10.0.26. U… CERT-FR · Jul 27, 2026 High CVE-2026-47678CVE-2026-47679CVE-2026-52848glpivulnerabilitysql injection
vulnerability Vulnérabilité dans Traefik (27 juillet 2026) A security vulnerability has been identified in Traefik, allowing attackers to bypass security policies. This affects older versions of the popular reverse proxy and load balancer, requiring immediate patching to prevent… CERT-FR · Jul 27, 2026 Medium traefikvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans les produits Atlassian (27 juillet 2026) Multiple vulnerabilities have been discovered in Atlassian products, including Confluence Data Center and Jira Service Management. These vulnerabilities allow for remote code execution, privilege escalation, denial of se… CERT-FR · Jul 27, 2026 High CVE-2022-37599CVE-2022-37601CVE-2022-37603vulnerabilitysupply-chaindata-breach
vulnerability Multiples vulnérabilités dans Microsoft Edge (27 juillet 2026) Multiple vulnerabilities have been discovered in Microsoft Edge, potentially allowing attackers to compromise data confidentiality and bypass security policies. These vulnerabilities are detailed in a series of security… CERT-FR · Jul 27, 2026 Medium CVE-2026-57978CVE-2026-57989CVE-2026-57990vulnerabilitymicrosoftedge
vulnerability Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th) A scan targeting ESAFENET CDG, a Chinese-focused document management system, revealed weak default passwords and vulnerabilities, including SQL injection and XSS. Threat actors are leveraging existing exploit scripts to… SANS Internet Storm Center · Jul 26, 2026 Medium CNdefault passwordsql injectionxss
threat-intel Chat Control : un pirate cible 24 responsables politiques français A hacker has released personal data of 24 French politicians, including photographs, contact information, and administrative IDs, in a protest against Chat Control 1.0, a temporary European measure designed to detect chi… ZATAZ · Jul 26, 2026 High FRdata breachdoxingcyberattack