ECUADOR: Hacker Claims 20M+ Health Ministry Database Records, Offers 73GB Dataset for Sale.
🐧 Linux Kernel 7.2 Officially Released
Linux 7.2 has officially been released and is now the latest mainline version of the Linux kernel.
Linux 7.2 has officially been released and is now the latest mainline version of the Linux kernel.
ARGENTINA: Access to Municipal Government System Allegedly Offered for Sale
Hacker is advertising alleged unauthorized access to an Argentine municipal government environment associated with a .gob.ar domain.
Hacker is advertising alleged unauthorized access to an Argentine municipal government environment associated with a .gob.ar domain.
UAE: College Website Allegedly Breached, Databases and Source Code Leaked
Hacker claims to have compromised https://tahoor.ae, described in the underground forum post as a college website affiliated with Jawaharlal Nehru Technological University.
Hacker claims to have compromised https://tahoor.ae, described in the underground forum post as a college website affiliated with Jawaharlal Nehru Technological University.
Bolivia: Santa Cruz Government Data Breach Claimed
Hacker claims to have breached systems associated with the Autonomous Departmental Government of Santa Cruz, Bolivia, and extracted data related to its INOCUIDAD/food-safety operations.
Hacker claims to have breached systems associated with the Autonomous Departmental Government of Santa Cruz, Bolivia, and extracted data related to its INOCUIDAD/food-safety operations.
Hacker on an underground forum claims to possess databases associated with Serbia’s Republic Health Insurance Fund (RFZO), the country's mandatory health insurance institution.
Swiss secure-messaging provider Threema has confirmed that a series of large-scale DDoS attacks disrupted its services and infrastructure operated with colocation partner Nine.
Hacker on an underground forum claims to be selling a database belonging to Abwaab, an educational platform operating in Jordan and other Arab markets.
McDonald’s 1.7M+ Employee Records Allegedly Offered for Sale
Hacker on an underground forum claims to be selling an internal McDonald’s dataset allegedly obtained directly from an Azure tenant using compromised credentials.
Hacker on an underground forum claims to be selling an internal McDonald’s dataset allegedly obtained directly from an Azure tenant using compromised credentials.
The U.S. Department of State's "Rewards for Justice" program has announced a reward of up to $10 million for information leading to the identification and apprehension of five Iranian individuals linked to cyber activities.
Cyberattack on Dozens of Companies in Occupied Territories
Israel Police’s cyber unit say they arrested an Ashkelon man suspected of hacking dozens of companies with malware to steal sensitive data; his name is under a court gag order and detention extended to Aug 23.
Israel Police’s cyber unit say they arrested an Ashkelon man suspected of hacking dozens of companies with malware to steal sensitive data; his name is under a court gag order and detention extended to Aug 23.
CVE-2026-33824, allows attackers, without the need for authentication, to execute code on unpatched Windows systems by sending malicious packets through UDP ports 500 and 4500.
Cyberattack Forces University of Texas at San Antonio to Take Systems Offline
The University of Texas at San Antonio (UTSA) is dealing with significant technology disruptions after detecting malicious activity within its academic IT environment.
The University of Texas at San Antonio (UTSA) is dealing with significant technology disruptions after detecting malicious activity within its academic IT environment.
Over 50,000 exposed Stripe API keys show how leaked secrets can enable fraud, data access and account abuse within hours.
Ransomnews researchers have documented a large-scale leak of Stripe merchant API keys found exposed in public code repositories, GitHub Actions logs, and misconfigured web servers, with over 50,000 unique keys identified in total. The research is practical rather than theoretical: the team tested a sample of the keys, found a meaningful portion still active, and documented exactly how quickly a fraudster could exploit them.
Ransomnews researchers have documented a large-scale leak of Stripe merchant API keys found exposed in public code repositories, GitHub Actions logs, and misconfigured web servers, with over 50,000 unique keys identified in total. The research is practical rather than theoretical: the team tested a sample of the keys, found a meaningful portion still active, and documented exactly how quickly a fraudster could exploit them.
Forwarded from ᴛʜᴇ ɢʜᴏꜱᴛ ɪɴ ᴛʜᴇ ᴍᴀᴄʜɪɴᴇ
Establishment of Unit 8300: A New Election Promise by Bennett
Just as Unit 8200 exists for intelligence matters, we will create Unit 8300 for the battle for public opinion and influence.
#TGITM
Just as Unit 8200 exists for intelligence matters, we will create Unit 8300 for the battle for public opinion and influence.
#TGITM
The cybersecurity firm Huntress has reported a 155-fold increase in "Password Spraying" attacks in the first half of 2026. These attacks involve attackers targeting multiple accounts by using a small number of common or leaked passwords.
Cyber Dispatch™️
The cybersecurity firm Huntress has reported a 155-fold increase in "Password Spraying" attacks in the first half of 2026. These attacks involve attackers targeting multiple accounts by using a small number of common or leaked passwords.
In one identified campaign, over 81 million login attempts were recorded over a two-week period, resulting in the compromise of 78 accounts.
Attackers have exploited an older authentication method in Microsoft services, known as ROPC (Resource Owner Password Credentials), to bypass multi-factor authentication (MFA) in some organizations.
Attackers have exploited an older authentication method in Microsoft services, known as ROPC (Resource Owner Password Credentials), to bypass multi-factor authentication (MFA) in some organizations.
Turkey has busted an alleged $3 million telecom scam: dozens of suspects reportedly posed as internet-company reps, telling customers their old modems would inflate bills and pressuring [801] victims into buying useless replacements.
Adornis GmbH source code allegedly leaked on a cybercrime forum
⠀
A Hacker claim to have released the source code for Adornis Engine, an internal application framework associated with Adornis GmbH / NDI New Digital Intelligence. The project is described as a modular TypeScript monorepo used to build business web applications.
⠀
The allegedly leaked source code includes:
⠀
• Approximately 90 independent npm packages and modules
• TypeScript-based full-stack framework components
• Authentication and routing modules
• MongoDB integration
• BaseQL query layer
• MCP server functionality for AI agents
• AI and LLM integration modules
• CRM and CMS functionality
• Wiki, task and calendar modules
• Chat and collaboration features
• Expense reimbursement functionality
• Electronic signature support
• Survey and payment modules
• EBICS banking functionality
• Collaborative document editing
• TinyMCE and Monaco-based editing components
• Internationalization and translation support
• Caching and analytics modules
• Prometheus metrics integration
• Testing utilities
⠀
The listing describes Adornis Engine as an actively maintained internal framework used to rapidly build custom line-of-business applications.
⠀
⠀
A Hacker claim to have released the source code for Adornis Engine, an internal application framework associated with Adornis GmbH / NDI New Digital Intelligence. The project is described as a modular TypeScript monorepo used to build business web applications.
⠀
The allegedly leaked source code includes:
⠀
• Approximately 90 independent npm packages and modules
• TypeScript-based full-stack framework components
• Authentication and routing modules
• MongoDB integration
• BaseQL query layer
• MCP server functionality for AI agents
• AI and LLM integration modules
• CRM and CMS functionality
• Wiki, task and calendar modules
• Chat and collaboration features
• Expense reimbursement functionality
• Electronic signature support
• Survey and payment modules
• EBICS banking functionality
• Collaborative document editing
• TinyMCE and Monaco-based editing components
• Internationalization and translation support
• Caching and analytics modules
• Prometheus metrics integration
• Testing utilities
⠀
The listing describes Adornis Engine as an actively maintained internal framework used to rapidly build custom line-of-business applications.
⠀
U.S. Bank has been claimed a victim to LockBit Ransomware
🇺🇸 U.S. Bank - A U.S.-based financial institution providing banking, lending, payments, investment, credit, and wealth-management services to individuals, businesses, and institutions.
🇺🇸 U.S. Bank - A U.S.-based financial institution providing banking, lending, payments, investment, credit, and wealth-management services to individuals, businesses, and institutions.