threat-intel ToxicPanda Banking Trojan Matures into Enterprise Threat ToxicPanda, a banking Trojan, has evolved into a more sophisticated enterprise threat, expanding its reach beyond individual banking apps to compromise entire Android devices and potentially access corporate resources. T… Dark Reading · 6d ago High LAITPObankingmobileenterprise
threat-intel ⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More This week saw a surge in high-impact cyberattacks and vulnerabilities, highlighting the increasing sophistication and speed of threat actors. AI is now being weaponized to craft exploit scripts targeting Siemens PLCs, wh… The Hacker News · 6d ago High CVE-2026-19478CVE-2021-27101CVE-2023-34362UNRUvulnerabilitysupply-chainransomware
threat-intel The Vulnerability Gap: Why Discovery Is Outrunning Repair The increasing speed of AI-powered vulnerability discovery is outpacing the ability of open-source software maintainers to address those vulnerabilities, creating a significant gap in the cybersecurity landscape. This is… Dark Reading · 6d ago High vulnerabilityaiopen-source
ransomware Gunra ransomware: what you need to know The Gunra ransomware gang is aggressively targeting organizations across multiple sectors, leveraging unpatched VPNs and firewalls to gain access and deploy their ransomware. They are demanding payments to decrypt stolen… Graham Cluley · 6d ago High vpnfirewallransomware
threat-intel WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords Two new malware families, WordlistLoader and SynkLoader, are being used to deliver the Amatera Stealer via ClickFix phishing campaigns. WordlistLoader reconstructs shellcode for Amatera, utilizing techniques to evade det… The Hacker News · 6d ago High phishingransomwaremalware
threat-intel Hackers infect Android car systems to build proxy botnet Hackers are exploiting vulnerabilities in Chinese automotive software provider DoFun's Android car head units to build a proxy botnet. The malware, initially delivered through a legitimate system application (TWCore), al… The Record · 6d ago High CHGEandroidbotnetproxy
vulnerability 91 Vulnerabilities Patched in Spring Application Framework Broadcom released a massive update addressing 91 vulnerabilities within the Spring application framework. Many of these flaws, including a critical Remote Code Execution (RCE) vulnerability, could be exploited for variou… SecurityWeek · 6d ago High CVE-2026-59270CVE-2026-59285CVE-2026-59318springvulnerabilityrce
threat-intel Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor A cyber espionage campaign, dubbed Operation QUICSILVER, targeting Myanmar's government and IT sector is being conducted by a China-linked threat actor. The campaign uses a graduation ceremony lure to deliver a Go backdo… The Hacker News · 6d ago High MYMOPAcyber espionagebackdoorkernel-mode
threat-intel The Outsized Shadow: Why 5% of AI Users Are Your Biggest Security Risk A growing number of enterprise users are quietly adopting a wide range of AI tools – both corporate and personal – creating a significant security blind spot for IT and security teams. While organizations are attempting… The Hacker News · 6d ago High shadow aiai securityprompt injection
threat-intel Venezuelan Gets Record Federal Prison Term for ATM Jackpotting A Venezuelan national has been sentenced to a record 96 months in prison for his involvement in a sophisticated ATM jackpotting scheme, linked to the Venezuelan terrorist organization Tren de Aragua. The scheme resulted… SecurityWeek · 6d ago High VEatmjackpottingcybercrime
threat-intel Personal Information Exposed in Apollo Global Data Breach Apollo Global Management suffered a data breach due to a social engineering attack, exposing sensitive personal information like names, contact details, and Social Security numbers. The attack was attributed to the UNC66… SecurityWeek · 6d ago High vishingsocial engineeringdata breach
threat-intel Rethinking Application Security for the AI Era The speed at which attackers can now exploit vulnerabilities – thanks to advancements in AI – is dramatically increasing, shrinking the window from vulnerability disclosure to exploit from months to hours. This necessita… SecurityWeek · 6d ago High aivulnerabilitypatching
threat-intel Iran-Linked Hackers Shut Down UK Power Plant for Four Days Iranian-linked hackers successfully shut down a British power plant for four days, raising significant concerns about the escalating cyber threat landscape and the vulnerability of UK critical infrastructure. The inciden… SecurityWeek · 6d ago High UKIRUSirancyberattackcritical infrastructure
threat-intel UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit The Chinese-speaking cybercrime group UAT-10147 is aggressively targeting web servers globally, leveraging AI-powered tools to automate intrusion operations and establish persistent access. They utilize a new cross-platf… The Hacker News · 6d ago High CVE-2022-0995CVE-2021-3156CVE-2015-5287CHBRBOairansomwaremalware
threat-intel If you're not using AI to attack your own systems, your adversaries will As AI agents increasingly take on tasks traditionally performed by humans, including hacking, a new attack surface is emerging. Companies are now facing a surge in AI-enabled phishing, impersonation, and reconnaissance,… The Register · Aug 22, 2026 High aired teamingcyberattack
threat-intel Cyber actualités ZATAZ de la semaine du 17 au 23 août 2026 This week’s cybersecurity news is dominated by data breaches, ransomware attacks, and widespread data exposures. ShinyHunters is targeting Logitech and Streamlabs, while RingCentral has experienced a massive 1.6 million… ZATAZ · Aug 22, 2026 High FRBESOransomwaredata breachvpn
threat-intel ShinyHunters menace Logitech et Streamlabs The ShinyHunters group is aggressively targeting numerous companies, including Logitech and Streamlabs, using a coordinated extortion campaign. They claim to have compromised vast amounts of sensitive data – including pe… ZATAZ · Aug 22, 2026 High SWEUdata breachextortioncyber extortion
threat-intel Rentrée scolaire 2026 : les arnaques à surveiller The article details a surge in cyber scams targeting families and businesses during the 2026 school year preparations, leveraging the high volume of administrative tasks and financial transactions associated with the per… ZATAZ · Aug 22, 2026 High cyber-fraudsocial-engineeringschool-year
threat-intel Une chemise à 10 € et le piège se referme A family in France fell victim to a sophisticated online scam that began with a seemingly innocuous sale of a 10 euro shirt on Vinted. Through a series of carefully crafted messages, a fake Vinted advisor, and a fabricat… ZATAZ · Aug 22, 2026 High FRonline-fraudsocial-engineeringvinted
threat-intel LockBit 5.0 menace de publier des données d’Actua LockBit 5.0 is threatening to release sensitive data allegedly stolen from Actua, a French recruitment and temporary staffing agency. The ransomware group claims to possess documents – including passports, diplomas, CVs,… ZATAZ · Aug 22, 2026 High FRransomwaredata breachrecruitment