threat-intel In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions Several cybersecurity events were highlighted this week, including a reassessment of the Log4j vulnerability as ‘non-finding,’ a ransomware attack against Paylogix exposing sensitive data, and US sanctions against Iranian cyber actors. Other notable developments included a credential leak study revealing thousands of a… SecurityWeek · 2d ago High IRSONElog4jcredential leakransomware
threat-intel ⚡ Weekly Recap: AI-Powered PLC Attacks, GitLab Attacks, Stripe Key Leaks and More This week saw a surge in high-impact cyberattacks and vulnerabilities, highlighting the increasing sophistication and speed of threat actors. AI is now being weaponized to craft exploit scripts targeting Siemens PLCs, wh… The Hacker News · 6d ago High CVE-2026-19478CVE-2021-27101CVE-2023-34362UNRUvulnerabilitysupply-chainransomware
threat-intel Fuite Stripe : au moins 200 Français concernés A massive data leak linked to Stripe has exposed the email addresses of at least 200 French users, including both customers and merchants, alongside a significant number of addresses from various services across France,… ZATAZ · Aug 20, 2026 High FRBECAdata breachemail leakcyber intelligence
threat-intel Stripe visé par une fuite revendiquée de 662 bases de données ! A purported data leak claiming to contain 33GB of Stripe data, including 1.033 API keys and 662 customer databases, has been published by a known data broker. The leak includes 6.16 million email addresses, 688,000 compl… ZATAZ · Aug 19, 2026 High USLUFRdata leakapi keyscustomer data
threat-intel Expired credit cards revived by researchers to make unauthorized payments Researchers have discovered a method to revive expired credit cards and use them for unauthorized payments. This vulnerability stems from a flaw in how Stripe handles AI token sales, allowing attackers to manipulate the… The Register · Aug 18, 2026 High credit-cardsaitokenization
threat-intel ArtNexus : une fuite expose le marché international de l’art A database belonging to ArtNexus, an international art specialist, has been publicly exposed, offering a detailed map of its business ecosystem. The database, accessible without authentication, contains thousands of acco… ZATAZ · Aug 13, 2026 High FRdatabasephishingsocial engineering
threat-intel Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images North Korean threat actors, linked to the Contagious Interview campaign (REF9403), are using fake coding tests and SVG images containing steganography to deliver a multi-stage malware payload – OtterCookie – to software… The Hacker News · Jul 17, 2026 High KPsteganographysupply chaindeveloper
ransomware Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites A critical vulnerability (CVE-2026-3300) in the Everest Forms Pro WordPress plugin has been exploited by threat actors, allowing for remote code execution and potential site compromise. Attackers have been actively targe… The Hacker News · Jun 5, 2026 Critical CVE-2026-3300MDwordpressvulnerabilityremote code execution
threat-intel Credit card theft campaign abuses Stripe to host stolen payment info A Magecart campaign is exploiting Stripe's infrastructure to steal credit card data from online stores. The attackers leverage Google Tag Manager to deliver the malicious code, bypassing standard security measures. This… BleepingComputer · Jun 4, 2026 High magecartcredit card theftstripe