threat-intel LockBit 5.0 menace de publier des données d’Actua LockBit 5.0 is threatening to release sensitive data allegedly stolen from Actua, a French recruitment and temporary staffing agency. The ransomware group claims to possess documents – including passports, diplomas, CVs, and insurance certificates – relating to over 100,000 individuals hired by Actua and its partner co… ZATAZ · Aug 22, 2026 High FRransomwaredata breachrecruitment
threat-intel Un recrutement VPN français intrigue sur un forum pirate A Russian cybercriminal forum member is recruiting French speakers to develop a VPN, claiming it is entirely legal. However, the individual's history on the forum – including discussions about buying hacked accounts, spa… ZATAZ · Aug 21, 2026 Medium FRvpnrecruitmentfrance
threat-intel CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps A large-scale phishing campaign, dubbed RecruitTrap, is targeting over 3,000 recruitment-related URLs to steal Google and Facebook credentials, and in some cases, relay MFA prompts in real-time. The campaign uses Browser… The Hacker News · Aug 14, 2026 High phishingbrowser-in-the-browsercredential-theft
threat-intel CISA gives federal agencies two weeks to patch Microsoft bug exploited in DPRK campaign The CISA has ordered federal agencies to patch a critical Windows vulnerability being actively exploited by North Korean hackers as part of Operation ‘Dream Job’. This campaign, led by the Lazarus Group, impersonates rec… The Record · Aug 12, 2026 Critical CVE-2026-68820FRGEBRzero-daynorth koreaoperation dream job
threat-intel Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands Russian state-sponsored threat actors, linked to the Sandworm group, are using fake recruitment campaigns to trick IT professionals in Ukraine into installing malware. They impersonate IT companies like Sopra Steria Bulg… The Hacker News · Aug 11, 2026 High RUUKsocial engineeringvpnrecruitment
threat-intel Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers Security researchers simulated a cryptocurrency startup and hired three individuals they believe were North Korean operatives to test recruitment processes and identify potential risks. The operation involved sophisticat… The Hacker News · Aug 11, 2026 High USNOnorth korearecruitmentidentity theft
threat-intel FBI, South Korea warn of Gunra ransomware gang targeting critical infrastructure The FBI and South Korea’s government have issued a cybersecurity advisory warning of the Gunra ransomware gang, which is exploiting vulnerabilities in Fortinet firewalls to target critical infrastructure organizations gl… The Record · Aug 10, 2026 High CVE-2024-55591CVE-2025-24472SONOransomwarevulnerabilitysupply-chain
threat-intel Russian military hackers pose as recruiters to target Ukrainian IT workers Russian military hackers, linked to the Sandworm group (APT44/Seashell Blizzard), are impersonating IT recruiters to target Ukrainian IT workers and install malicious software. The operation involves using legitimate job… The Record · Aug 10, 2026 High UKRUrecruitmentvpnwireguard
Des cibles françaises au cœur d’une plateforme cybercriminelle A ZATAZ investigation has uncovered a list of French organizations targeted by a cybercriminal group, Krybit, who are aggressively recruiting affiliates through a platform offering a lucrative 80% revenue split. The grou… ZATAZ · Aug 7, 2026 FRMXUSransomwarerecruitmentcybercrime
threat-intel Suitable AI : 15 176 comptes exposés via GraphQL A hacker claims to have breached Suitable AI, a recruitment platform utilizing AI, exposing data of 15,176 candidates and potentially compromising administrator accounts. The breach stemmed from vulnerabilities in Suitab… ZATAZ · Jul 28, 2026 Medium INUSgraphqlvulnerabilitydata breach
phishing Invited to a “job interview” with Netflix or OpenAI? Beware! Your Google password could be at risk A sophisticated phishing campaign mimicking legitimate job offers from companies like Netflix, OpenAI, and Adobe is targeting Google account users. Attackers are using realistic email addresses and LinkedIn research to i… Graham Cluley · Jul 9, 2026 High phishingrecruitmentgoogle
threat-intel FBI Seizes 13 Websites That Officials Say Were Used by China to Target and Recruit US Workers The FBI has taken down thirteen websites used by Chinese intelligence operatives to target and recruit U.S. government employees with access to sensitive information. These websites impersonated consulting firms offering… SecurityWeek · Jun 11, 2026 High USCNespionagerecruitmentcybersecurity
threat-intel Got a LinkedIn message from a recruiter? It might be Chinese intelligence, warn FBI and MI5 A joint bulletin from the FBI, MI5, ASIO, CSIS, and NZSIS warns of a Chinese intelligence operation targeting Western professionals via LinkedIn and other job platforms. The operation involves posing as recruitment firms… Graham Cluley · Jun 5, 2026 High CHUNAUrecruitmentintelligencelinkedin
threat-intel Five Eyes: Chinese Spies Target Government, Military Staff With Fake Job Opportunities The Five Eyes intelligence alliance has issued an alert warning of a sophisticated Chinese espionage campaign targeting government and military personnel through fake job opportunities on platforms like LinkedIn. This ta… SecurityWeek · Jun 5, 2026 High CHUNAUespionagesocial-engineeringrecruitment
threat-intel Five Eyes warn Chinese spies are using job sites to recruit insiders The Five Eyes intelligence alliance has issued a joint warning about Chinese military intelligence services using online job platforms to recruit individuals with access to sensitive information. This tactic, described a… The Record · Jun 4, 2026 High CHAUCArecruitmentespionagecybersecurity