threat-intel Cheap Android TV Boxes Pose as Phones and Turn Owners’ Broadband Into Proxies A Chinese company, Zhejiang Fengwo IoT Technology Co., Ltd., is behind the ‘Fuyao’ operation, which involves shipping cheap Android TV boxes with apps that mimic phones and then use them to relay internet traffic as SOCK… The Hacker News · Jul 31, 2026 High CHHOSIandroidad fraudsocks5
threat-intel Cyber actualités ZATAZ de la semaine du 27 juillet au 2 août 2026 This week’s ZATAZ news focuses heavily on data breaches and security incidents, primarily targeting French organizations and involving a wide range of sensitive information. Numerous data leaks are being reported, includ… ZATAZ · Jul 31, 2026 High FRdata breachcybersecurityhacktivism
threat-intel The Morning After We Pull a Root of Trust, Nobody Owns It The article highlights a critical gap in cybersecurity preparedness: the lack of coordinated response when a root certificate is removed from a browser’s trust store. While security teams are adept at identifying and rem… Dark Reading · Jul 31, 2026 High trust-anchorcertificate-revocationcryptography
threat-intel Hacktivisme : une fuite « Macroleak » de 2017 contre Chat Control ressort du darkweb ! A hacktivist has released a collection of 85 previously unseen files from 2017, claiming they were obtained to disrupt a 2017 presidential and legislative campaign and as a response to the European Chat Control project.… ZATAZ · Jul 31, 2026 High FRhacktivismdata breachprivacy
threat-intel Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw Researchers at Nanyang Technological University in Singapore have discovered 84 previously unknown vulnerabilities in 4G and 5G core network implementations, including flaws that could lead to denial-of-service attacks a… The Hacker News · Jul 31, 2026 High CVE-2026-8233UNvulnerability5g4g
threat-intel Finland to disconnect fiber-optic link to Russia as lease expires Finland is disconnecting a fiber-optic telecommunications link to Russia as its lease expires, following the end of electricity trade between the two countries due to the invasion of Ukraine. This action is part of a bro… The Record · Jul 31, 2026 Medium FIRUtelecominfrastructurerussia
threat-intel Quatre jeux cyber pour stimuler vos vacances ZATAZ has released four cybersecurity-themed games designed to stimulate observation, logic, and decryption skills during holidays and travel. The games involve interpreting natural sounds (like a waterfall), searching f… ZATAZ · Jul 31, 2026 Info cybersecurityobservationlogic
vulnerability Multiples vulnérabilités dans le noyau Linux de SUSE (31 juillet 2026) Multiple vulnerabilities have been discovered in the SUSE Linux kernel. Several of these vulnerabilities can lead to data confidentiality and integrity breaches, as well as the circumvention of security policies and deni… CERT-FR · Jul 31, 2026 High CVE-2023-20585CVE-2025-10263CVE-2025-39894kernelpatchsecurity
threat-intel Read This Before You Buy That TV Streaming Stick A security firm, Bitsight, uncovered a complex and widespread ad fraud network centered around H96 streaming devices. These devices, often sold by major retailers, are secretly used to generate revenue by masquerading as… Krebs on Security · Jul 30, 2026 High CHHOSIiotproxyad fraud
threat-intel Russian spies take their half-click email attack from Zimbra to Outlook Russian intelligence operatives are leveraging a phishing campaign mimicking Signal support to trick users into revealing sensitive information. This tactic has expanded beyond Zimbra to now target Outlook users, highlig… The Register · Jul 30, 2026 High CVE-2026-42897RUCHphishingsocial engineeringrussian threat actor
threat-intel Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks A Chinese-speaking threat actor, operating under the aliases knaithe and KnYuan, is leveraging AI to conduct autonomous cyberattacks. Using the Hermes Agent framework and DeepSeek, they autonomously identified and exploi… Palo Alto Unit 42 · Jul 30, 2026 High CVE-2026-33017CVE-2026-21858CVE-2025-68613CNaiautonomousvulnerability
threat-intel Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation Russian threat actors, linked to Laundry Bear (TA488), are exploiting a vulnerability in Microsoft Outlook Web Access (OWA) to maintain persistent access to email accounts within U.S. and European government entities and… The Hacker News · Jul 30, 2026 High CVE-2026-42897CVE-2025-66376USEUxsscredential theftpersistence
vulnerability Cisco Secure FMC Zero-Day Exploited in the Wild A zero-day vulnerability (CVE-2026-20316) in Cisco Secure Firewall Management Center (FMC) is being actively exploited in the wild. Attackers are leveraging default credentials to gain access to sensitive data, and Cisco… SecurityWeek · Jul 30, 2026 High CVE-2026-20316CVE-2026-20079zero-dayvulnerabilitycisco
vulnerability Cisco FMC Zero-Day Actively Exploited, Static Credentials Could Expose Sensitive Data A zero-day vulnerability in Cisco Secure Firewall Management Center (FMC) software is actively being exploited, allowing unauthenticated remote attackers to gain access to sensitive data. The vulnerability stems from sta… The Hacker News · Jul 30, 2026 High CVE-2026-20316CVE-2026-20079zero-dayauthenticationremote
threat-intel SE Asian Cybercriminal Syndicates Become a Global Power Southeast Asian cybercriminal syndicates have evolved into a global organized crime crisis, fueled by technological advancements and corruption. These groups, originating largely from China and operating across Southeast… Dark Reading · Jul 30, 2026 Critical CHMYCAcybercrimecryptocurrencytrafficking
threat-intel 'Flying Eagle' Full-Service Mobile RAT Builder Wings Across China A sophisticated, full-service mobile malware-as-a-service (MaaS) framework called ‘Flying Eagle’ has emerged from the Chinese cybercriminal underground, enabling criminals to build and deploy mobile malware campaigns wit… Dark Reading · Jul 30, 2026 High CHmaasmobile malwarecybercrime
vulnerability Vulnérabilité dans Cisco Firewall Management Center (30 juillet 2026) A vulnerability in Cisco Firewall Management Center (FMC) allows an attacker to compromise data confidentiality and bypass security policies. Cisco has confirmed that CVE-2026-20316 is actively being exploited. Users of… CERT-FR · Jul 30, 2026 High CVE-2026-20316ciscovulnerabilitysecurity
threat-intel Word worm crawls into Copilot, spreads chaos A group of Russian hackers are impersonating Signal support to launch phishing attacks, targeting users with links to malicious websites. Simultaneously, a zero-day vulnerability in on-prem SharePoint is being exploited,… The Register · Jul 29, 2026 High RUIRphishingzero-daysharepoint
threat-intel Laundry Bear’s webmail hackers had more in store after February, report says Laundry Bear, a Russian state-linked APT group, has been aggressively exploiting vulnerabilities in both Zimbra Collaboration Suite’s webmail platform and Microsoft Outlook Web Access (OWA) to steal emails and credential… The Record · Jul 29, 2026 High CVE-2026-42897NLUSRUaptvulnerabilityzero-day
threat-intel Russia accuses Telegram founder of aiding terrorism, seeks international arrest Russia has formally accused Telegram founder Pavel Durov of aiding terrorism, seeking an international arrest warrant due to allegations that the messaging app was used by Ukrainian intelligence to organize terrorist att… The Record · Jul 29, 2026 High RUUKFRrussiatelegramukraine