threat-intel Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks CERT-UA has warned of a new phishing campaign led by the UAC-0099 threat cluster (linked to Russia) utilizing a malicious Notepad++ plugin to deliver the MATCHBOIL.V2 malware. The campaign begins with a phishing email co… The Hacker News · Jul 24, 2026 High CVE-2025-66376CVE-2026-8496CVE-2025-49113RUUKALphishingmalwarevulnerability
data-breach Data Breach Confirmed After Australian Energy Giant Origin Is Hacked Origin Energy, a major Australian energy provider, suffered a data breach, with an attacker claiming to have stolen information from approximately 2 million customers. The attacker demanded a ransom, threatening to relea… SecurityWeek · Jul 24, 2026 High AUdata breachcybersecurityransomware
threat-intel ISC Stormcast For Friday, July 24th, 2026 https://isc.sans.edu/podcastdetail/10022, (Fri, Jul 24th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions and a concerning trend of Log4j exploitation attempts. The threat landscape remains volatile, with attack… SANS Internet Storm Center · Jul 24, 2026 Medium phishinglog4jbec
threat-intel Multiples vulnérabilités dans le noyau Linux d'Ubuntu (24 juillet 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Ubuntu. Some of these vulnerabilities allow for privilege escalation, data confidentiality breaches, and denial of service attacks. The vulnerabilities… CERT-FR · Jul 24, 2026 High CVE-2022-49803CVE-2022-49961CVE-2022-50073linuxkernelvulnerability
vulnerability Multiples vulnérabilités dans le noyau Linux de Debian LTS (24 juillet 2026) Multiple vulnerabilities have been discovered within the Linux kernel of Debian LTS. These vulnerabilities allow an attacker to cause privilege escalation, data confidentiality breaches, and data integrity issues. Affect… CERT-FR · Jul 24, 2026 High CVE-2025-23131CVE-2026-23272CVE-2026-23278linuxkerneldebian
vulnerability Multiples vulnérabilités dans le noyau Linux de Debian (24 juillet 2026) Multiple vulnerabilities have been discovered in the Linux kernel of Debian, potentially allowing attackers to elevate privileges, compromise data confidentiality, and cause denial of service. These vulnerabilities affec… CERT-FR · Jul 24, 2026 High CVE-2025-21807CVE-2026-46093CVE-2026-53027linuxkerneldebian
vulnerability Multiples vulnérabilités dans Google Chrome (24 juillet 2026) Google Chrome has been found to have multiple vulnerabilities, requiring users to update to a secure version to prevent potential security issues. The CERT-FR report details several CVEs associated with these flaws, urgi… CERT-FR · Jul 24, 2026 Medium CVE-2026-16804CVE-2026-16805CVE-2026-16806chromevulnerabilitysecurity
threat-intel Multiples vulnérabilités dans les produits IBM (24 juillet 2026) Multiple vulnerabilities have been discovered in IBM products, including remote code execution, privilege escalation, and denial-of-service vulnerabilities. Several of these vulnerabilities can be exploited to gain remot… CERT-FR · Jul 24, 2026 High CVE-2021-23336CVE-2021-47154CVE-2024-3651vulnerabilityremote code executionprivilege escalation
vulnerability Vulnérabilité dans les produits Moxa (24 juillet 2026) A critical vulnerability has been identified in Moxa products, allowing attackers to elevate their privileges. This security issue stems from a flaw within the Linux kernel and requires immediate attention to prevent pot… CERT-FR · Jul 24, 2026 Critical CVE-2026-46333linuxsshprivilege-escalation
vulnerability Multiples vulnérabilités dans le noyau Linux de SUSE (24 juillet 2026) Multiple vulnerabilities have been discovered in the SUSE Linux kernel. Some of these vulnerabilities allow for data confidentiality and integrity breaches, as well as bypassing security policies and causing denial of se… CERT-FR · Jul 24, 2026 High CVE-2023-20585CVE-2025-10263CVE-2025-39894linuxkernelsecurity
vulnerability Multiples vulnérabilités dans MongoDB (24 juillet 2026) Multiple vulnerabilities have been discovered in MongoDB, allowing an attacker to cause a denial of service and potentially exploit a security policy bypass. These vulnerabilities affect various versions of MongoDB Compa… CERT-FR · Jul 24, 2026 High CVE-2026-13055CVE-2026-13056CVE-2026-13057mongodbvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans les produits ESET (24 juillet 2026) Multiple vulnerabilities have been discovered in ESET’s security products, primarily for macOS, allowing attackers to potentially elevate their privileges. These vulnerabilities require immediate patching to prevent expl… CERT-FR · Jul 24, 2026 Medium CVE-2026-10610CVE-2026-7483macosvulnerabilitypatch
vulnerability Multiples vulnérabilités dans Microsoft Edge (24 juillet 2026) Multiple vulnerabilities have been discovered in Microsoft Edge, impacting versions prior to 150.0.4078.96. The exact nature of the vulnerabilities and the resulting security issue are not specified by the publisher. Use… CERT-FR · Jul 24, 2026 Medium CVE-2026-16413CVE-2026-16414CVE-2026-16415vulnerabilitypatchsecurity
vulnerability Vulnérabilité dans NetApp ONTAP 9 (24 juillet 2026) A critical vulnerability has been identified in NetApp ONTAP 9, potentially allowing attackers to cause denial of service, compromise data confidentiality, and damage data integrity. Affected versions require immediate p… CERT-FR · Jul 24, 2026 Critical CVE-2026-42511vulnerabilityremotedata
vulnerability Multiples vulnérabilités dans le noyau Linux de Red Hat (24 juillet 2026) Multiple vulnerabilities have been discovered in the Red Hat Linux kernel. Some of these vulnerabilities allow an attacker to cause remote code execution, privilege escalation, and a denial-of-service attack. These vulne… CERT-FR · Jul 24, 2026 High CVE-2024-46738CVE-2024-50076CVE-2025-39982linuxkernelvulnerability
threat-intel OpenAI-Hugging Face attack doesn't mean agents are evil – unless you tell them to be This article covers a range of cybersecurity and technology news, including a competitive landscape in AI hardware between AMD and Nvidia, a security incident involving Joomla extensions, and a general overview of variou… The Register · Jul 23, 2026 Medium IRSWcybersecurityj2eex11
threat-intel Researchers replace downloaded macOS apps with evil twins, Apple shrugs Researchers have discovered a method to replace downloaded macOS applications with malicious 'evil twin' versions, while Apple has not responded to the issue. This highlights a significant vulnerability in how users obta… The Register · Jul 23, 2026 Medium IRUSmacosmalwarephishing
threat-intel Russian Hackers Exploit Zimbra Zero-Day Against US, Ukraine Targets Russian state-sponsored threat actors, dubbed ‘Laundry Bear,’ have been exploiting a zero-day vulnerability (CVE-2025-66376) in Zimbra Collaboration Suite to target Western governments and enterprises, including US and U… Dark Reading · Jul 23, 2026 High CVE-2025-66376NLUSUAzimbraxssphishing
threat-intel Russian Espionage Group Exploited Zimbra Zero-Day to Steal Mail and 2FA Codes A Russian state-sponsored espionage group exploited a zero-click vulnerability in Zimbra's webmail client to steal email data, two-factor codes, and credentials from Western government and commercial organizations since… The Hacker News · Jul 23, 2026 High CVE-2025-66376USUKCJzero-dayxsscredential theft
ransomware Don’t swing at everything This week’s Threat Source newsletter highlights a new Rust-based remote access trojan (RAT), “msaRAT,” deployed by the Chaos ransomware group. The RAT leverages Chrome DevTools Protocol (CDP) to establish a covert comman… Cisco Talos · Jul 23, 2026 High CVE-2026-60137CVE-2026-63030