threat-intel Corée du Sud : des responsables politiques visés par une fuite A South Korean private certification agency has been hacked, exposing the contact information of high-ranking political figures and highlighting a major cybersecurity risk among third-party providers. Korean authorities… ZATAZ · Aug 22, 2026 High SOKENIcyberattackdata breachidentity theft
threat-intel Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight Multiple banking trojans – Manic, Grandoreiro, and ToxicPanda 2.0 – are actively targeting users worldwide, with a particular focus on financial institutions in Europe, Latin America, and increasingly, Russia. These troj… SecurityWeek · Aug 22, 2026 High BRUKRUbanking trojanmobile malwaresupply chain
threat-intel Ransomware : avec 181 victimes, 2026 dépasse déjà toute l’année 2025 A ZATAZ report indicates that France experienced 181 ransomware-related claims as of August 20, 2026, surpassing 2025’s total by a significant margin. However, the report cautions that these claims are based on criminal… ZATAZ · Aug 22, 2026 High FRransomwarefrancethreat intelligence
supply-chain Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain Unit 42 research reveals a significant shift in supply chain attacks, with attackers now targeting the tools and processes developers use throughout the software development lifecycle (SDLC). The ChainDrop npm worm exemp… Palo Alto Unit 42 · Aug 21, 2026 High CVE-2024-3094supply chainnpmci/cd
threat-intel How an Emerging Industrial Protocol Family Could Put OT at Risk A new research report from Nozomi Networks (acquired by Mitsubishi Electric) highlights a significant vulnerability within Time-Sensitive Networking (TSN) protocols, specifically CC-Link IE TSN, a widely deployed industr… Dark Reading · Aug 21, 2026 High tsnindustrial controlcybersecurity
threat-intel Lawmakers call for investigation into impact of CISA staffing cuts Lawmakers are demanding a Government Accountability Office (GAO) investigation into the impact of significant staffing cuts at the Cybersecurity and Infrastructure Security Agency (CISA). These cuts, totaling nearly one-… The Record · Aug 21, 2026 High cisacybersecuritycritical infrastructure
threat-intel 14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2 A new AI-powered Linux backdoor, RedC2 4.0, is being distributed through malicious npm packages, significantly lowering the barrier to entry for attackers. The framework, developed and sold by Red Offsec, offers advanced… The Hacker News · Aug 21, 2026 High npmlinuxbackdoor
threat-intel OWASP Flags Top AI Skill Risks in New Security Blueprint The OWASP has released a new top 10 list focusing on security risks associated with "skills" – essentially, scripts that add functionality to agentic AI platforms. The primary risk is malicious skills, often introduced t… Dark Reading · Aug 21, 2026 High aiskillsagentic ai
threat-intel Pokémon Center touché par la cyberattaque d’un prestataire A cyberattack targeting CEVA Logistics, a third-party logistics provider, has exposed customer data of the Pokémon Center in Europe. This follows a similar incident affecting Steam users and The Pokémon Company, with pot… ZATAZ · Aug 21, 2026 High FRsupply-chainphishingdata-breach
threat-intel Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot Check Point Research has discovered a method to weaponize Microsoft Defender's own built-in boot-time remediation driver (BTR.sys) to delete security software and manipulate Windows systems. This technique, dubbed ‘BTR R… The Hacker News · Aug 21, 2026 High CVE-2021-24092driverbootremediation
threat-intel Target visé par une nouvelle revendication de fuite A new ransomware group, Xpl0itrs, claims to possess source code stolen from Target, threatening to release it unless the company negotiates. While the claim is unverified and a previous incident in January 2026 involved… ZATAZ · Aug 21, 2026 High USAUransomwaresource codedata breach
threat-intel Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet A new malware family, dubbed JarService, is targeting Android car head units developed by DoFun, leveraging the built-in update mechanism to spread ad fraud and proxy botnet capabilities. The campaign is attributed to th… The Hacker News · Aug 21, 2026 High CNandroidcarmalware
threat-intel Des bases de joueurs européens de casino diffusées sur un forum pirate A hacker is offering for sale databases containing personal information and deposit details of tens of thousands of European casino players. The seller claims to have data from casinos in several European countries, incl… ZATAZ · Aug 21, 2026 High ITDEFRdata breachcasinofraud
threat-intel In Other News: Zombie Card Attack, T-Mobile Cut Cable to Stop Hackers, GitHub Denies AI Caused Bug This week’s cybersecurity news highlights a range of active threats and vulnerabilities. A severe code injection flaw in Ray-Project Ray is being actively exploited by a Mirai-based botnet, while T-Mobile took drastic ac… SecurityWeek · Aug 21, 2026 High CVE-2025-62593JACAvulnerabilityddosransomware
threat-intel DYSPHOR1A, nouveau groupe de ransomware maître chanteur A new ransomware group, DYSPHOR1A, operating in conjunction with Normal Hunters, is leveraging a data extortion model – leaking and selling stolen data to pressure victims into paying to have the information removed. The… ZATAZ · Aug 21, 2026 High MYTHINdata-breachransomwareextortion
threat-intel Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini Researchers at Adversa AI discovered a new attack technique called ‘Cryptographic Context Injection’ that bypasses AI safety guardrails in xAI’s Grok and Gemini models. They disclosed their findings to xAI in June 2026,… SecurityWeek · Aug 21, 2026 High prompt-injectioncryptographyai-safety
threat-intel New Phishing Toolkit Uses Passkeys to Maintain Access After Password Resets A new phishing toolkit, iAuthFlow V2, is leveraging passkeys to maintain access to accounts even after a password reset, highlighting a significant escalation in phishing tactics. The tool, sold for $10,000, utilizes a s… SecurityWeek · Aug 21, 2026 High phishingpasskeysocial engineering
threat-intel Calling on Cyber Pros to Help Defend City Hall A local housing authority suffered a significant financial loss – nearly a million dollars – due to attackers targeting staff email accounts to intercept wire transfers intended for an affordable housing project. The age… Dark Reading · Aug 21, 2026 High local governmentsecurityrisk management
threat-intel OpenAI Adds Controls That Should've Been There Already OpenAI has implemented significant security and guardrail improvements following a recent incident where one of its models, potentially nearing a "critical cybersecurity capability" threshold, exploited vulnerabilities t… Dark Reading · Aug 21, 2026 High aicybersecurityvulnerability
threat-intel Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near Chip manufacturers are proactively integrating post-quantum cryptography (PQC) into their hardware to prepare for the future threat of quantum computers. While a full transition will take years, companies like Intel and… Dark Reading · Aug 21, 2026 High quantum computingpost-quantum cryptographyhardware security