Swiss secure-messaging provider Threema has confirmed that a series of large-scale DDoS attacks disrupted its services and infrastructure operated with colocation partner Nine.
Hacker on an underground forum claims to be selling a database belonging to Abwaab, an educational platform operating in Jordan and other Arab markets.
McDonald’s 1.7M+ Employee Records Allegedly Offered for Sale
Hacker on an underground forum claims to be selling an internal McDonald’s dataset allegedly obtained directly from an Azure tenant using compromised credentials.
Hacker on an underground forum claims to be selling an internal McDonald’s dataset allegedly obtained directly from an Azure tenant using compromised credentials.
The U.S. Department of State's "Rewards for Justice" program has announced a reward of up to $10 million for information leading to the identification and apprehension of five Iranian individuals linked to cyber activities.
Cyberattack on Dozens of Companies in Occupied Territories
Israel Police’s cyber unit say they arrested an Ashkelon man suspected of hacking dozens of companies with malware to steal sensitive data; his name is under a court gag order and detention extended to Aug 23.
Israel Police’s cyber unit say they arrested an Ashkelon man suspected of hacking dozens of companies with malware to steal sensitive data; his name is under a court gag order and detention extended to Aug 23.
CVE-2026-33824, allows attackers, without the need for authentication, to execute code on unpatched Windows systems by sending malicious packets through UDP ports 500 and 4500.
Cyberattack Forces University of Texas at San Antonio to Take Systems Offline
The University of Texas at San Antonio (UTSA) is dealing with significant technology disruptions after detecting malicious activity within its academic IT environment.
The University of Texas at San Antonio (UTSA) is dealing with significant technology disruptions after detecting malicious activity within its academic IT environment.
Over 50,000 exposed Stripe API keys show how leaked secrets can enable fraud, data access and account abuse within hours.
Ransomnews researchers have documented a large-scale leak of Stripe merchant API keys found exposed in public code repositories, GitHub Actions logs, and misconfigured web servers, with over 50,000 unique keys identified in total. The research is practical rather than theoretical: the team tested a sample of the keys, found a meaningful portion still active, and documented exactly how quickly a fraudster could exploit them.
Ransomnews researchers have documented a large-scale leak of Stripe merchant API keys found exposed in public code repositories, GitHub Actions logs, and misconfigured web servers, with over 50,000 unique keys identified in total. The research is practical rather than theoretical: the team tested a sample of the keys, found a meaningful portion still active, and documented exactly how quickly a fraudster could exploit them.
Forwarded from ᴛʜᴇ ɢʜᴏꜱᴛ ɪɴ ᴛʜᴇ ᴍᴀᴄʜɪɴᴇ
Establishment of Unit 8300: A New Election Promise by Bennett
Just as Unit 8200 exists for intelligence matters, we will create Unit 8300 for the battle for public opinion and influence.
#TGITM
Just as Unit 8200 exists for intelligence matters, we will create Unit 8300 for the battle for public opinion and influence.
#TGITM
The cybersecurity firm Huntress has reported a 155-fold increase in "Password Spraying" attacks in the first half of 2026. These attacks involve attackers targeting multiple accounts by using a small number of common or leaked passwords.
Cyber Dispatch™️
The cybersecurity firm Huntress has reported a 155-fold increase in "Password Spraying" attacks in the first half of 2026. These attacks involve attackers targeting multiple accounts by using a small number of common or leaked passwords.
In one identified campaign, over 81 million login attempts were recorded over a two-week period, resulting in the compromise of 78 accounts.
Attackers have exploited an older authentication method in Microsoft services, known as ROPC (Resource Owner Password Credentials), to bypass multi-factor authentication (MFA) in some organizations.
Attackers have exploited an older authentication method in Microsoft services, known as ROPC (Resource Owner Password Credentials), to bypass multi-factor authentication (MFA) in some organizations.
Turkey has busted an alleged $3 million telecom scam: dozens of suspects reportedly posed as internet-company reps, telling customers their old modems would inflate bills and pressuring [801] victims into buying useless replacements.
Adornis GmbH source code allegedly leaked on a cybercrime forum
⠀
A Hacker claim to have released the source code for Adornis Engine, an internal application framework associated with Adornis GmbH / NDI New Digital Intelligence. The project is described as a modular TypeScript monorepo used to build business web applications.
⠀
The allegedly leaked source code includes:
⠀
• Approximately 90 independent npm packages and modules
• TypeScript-based full-stack framework components
• Authentication and routing modules
• MongoDB integration
• BaseQL query layer
• MCP server functionality for AI agents
• AI and LLM integration modules
• CRM and CMS functionality
• Wiki, task and calendar modules
• Chat and collaboration features
• Expense reimbursement functionality
• Electronic signature support
• Survey and payment modules
• EBICS banking functionality
• Collaborative document editing
• TinyMCE and Monaco-based editing components
• Internationalization and translation support
• Caching and analytics modules
• Prometheus metrics integration
• Testing utilities
⠀
The listing describes Adornis Engine as an actively maintained internal framework used to rapidly build custom line-of-business applications.
⠀
⠀
A Hacker claim to have released the source code for Adornis Engine, an internal application framework associated with Adornis GmbH / NDI New Digital Intelligence. The project is described as a modular TypeScript monorepo used to build business web applications.
⠀
The allegedly leaked source code includes:
⠀
• Approximately 90 independent npm packages and modules
• TypeScript-based full-stack framework components
• Authentication and routing modules
• MongoDB integration
• BaseQL query layer
• MCP server functionality for AI agents
• AI and LLM integration modules
• CRM and CMS functionality
• Wiki, task and calendar modules
• Chat and collaboration features
• Expense reimbursement functionality
• Electronic signature support
• Survey and payment modules
• EBICS banking functionality
• Collaborative document editing
• TinyMCE and Monaco-based editing components
• Internationalization and translation support
• Caching and analytics modules
• Prometheus metrics integration
• Testing utilities
⠀
The listing describes Adornis Engine as an actively maintained internal framework used to rapidly build custom line-of-business applications.
⠀
U.S. Bank has been claimed a victim to LockBit Ransomware
🇺🇸 U.S. Bank - A U.S.-based financial institution providing banking, lending, payments, investment, credit, and wealth-management services to individuals, businesses, and institutions.
🇺🇸 U.S. Bank - A U.S.-based financial institution providing banking, lending, payments, investment, credit, and wealth-management services to individuals, businesses, and institutions.
The Netherlands Forensic Institute has found a way to crack Google Pixel phones, though it did not say which OS the phone was running. There is a high chance they were using an OS like GrapheneOS, since all three suspects were using Google Pixel phones. Or perhaps they are just fans of Google products.
They have already cracked one of the suspects' phones — that of Swedish national Veronica K., a suspect in a triple murder — prosecutors told the high-security court at Schiphol today.
The phone held images of weapons and stacks of cash, plus chats investigators can now read. The Forensic Institute expects to crack the two co-defendants' Pixels too.
They have already cracked one of the suspects' phones — that of Swedish national Veronica K., a suspect in a triple murder — prosecutors told the high-security court at Schiphol today.
The phone held images of weapons and stacks of cash, plus chats investigators can now read. The Forensic Institute expects to crack the two co-defendants' Pixels too.
A young security researcher figured out a way to enroll a Linux device into Apple’s Find My network and read live location data from it.
Find My is Apple’s app for, you guessed it, finding things – whether AirTags, iPads, or other supported devices and items. It also works for people. Families can track each other's whereabouts for safety reasons, and friends can tell when others are hanging out without them.
Find My is Apple’s app for, you guessed it, finding things – whether AirTags, iPads, or other supported devices and items. It also works for people. Families can track each other's whereabouts for safety reasons, and friends can tell when others are hanging out without them.
Cyber Dispatch™️
A young security researcher figured out a way to enroll a Linux device into Apple’s Find My network and read live location data from it. Find My is Apple’s app for, you guessed it, finding things – whether AirTags, iPads, or other supported devices and items.…
In typical Apple fashion, though, the full Find My experience is limited to Apple hardware, like an iPhone or Mac. iBiz also offers Find Devices via the iCloud website, although it lacks Find My’s people-tracking feature for viewing locations others have shared with you.
However, the 22-year-old researcher, who goes by “Zerotistic,” devised a way to enroll a Linux-based machine into the iNetwork, tricking Apple into sending the people-location data it exclusively reserves for Apple devices.
However, the 22-year-old researcher, who goes by “Zerotistic,” devised a way to enroll a Linux-based machine into the iNetwork, tricking Apple into sending the people-location data it exclusively reserves for Apple devices.
40 Malicious Firefox Extensions Pose as Web3 Products to Steal Wallet Secrets.