// 1 ZERO-DAY · 4 CVE · 3 EXPLOIT IN THE LAST 24H
CYBERSECZERO-DAY

Lazarus Shares Zero-Day and C2 With Gunra: South Korea Raises Alarm

Four South Korean agencies confirm the Lazarus Group shared tools, infrastructure, and a zero-day vulnerability with the Gunra ransomw…

Aug 07, 2026views - 1k

ransomware

ExfilSquad Exfiltrates Data on 100,000 UK Police Officers: Debut Without Encryption

The emerging ransomware group ExfilSquad has exfiltrated contact data for over 100,000 officers from the UK Police National Legal Data…

Aug 06, 2026views - 1.1k

ransomware

Kodak Confirms 'Limited' Breach, but ShinyHunters Claims 2.2 Million Records

Kodak acknowledged unauthorized access to a 'limited amount' of corporate data on June 18, 2026, but did not verify the 2.2 million re…

Aug 06, 2026views - 1.2k

ransomware

Orova Strikes Hong Kong on Day of SFC's First Ransomware Fine

The Orova ransomware group listed five Hong Kong victims on August 4, 2026, bringing its confirmed tally to 24 in three months. The ne…

Aug 06, 2026views - 456

CYBERSEC

Analog Devices Separates Real Breach from ExfilSquad Claim: The Lesson

Analog Devices confirmed file exfiltration in its July 29 SEC 8-K filing but distances the ExfilSquad claim of 570,000 records as a se…

Aug 05, 2026views - 1.2k

CYBERSECZERO-DAY

INC Ransomware Chains Two SonicWall Zero-Days for Root Access via VPN Appliance

Two zero-days in SonicWall SMA 1000 let INC Ransomware gain remote root access. Pre-disclosure exploitation began June 22, three weeks…

Aug 05, 2026views - 1.3k

ransomware

CRPx0 Lists Hyundai Turkey: The Credibility Gap in Dark Web Claims

Ransomware group CRPx0 has listed Hyundai Turkey on its dark web leak site. With no official confirmation and no independent verificat…

Aug 04, 2026views - 1.1k

ransomwareCRITICAL

Data-Theft Campaign Targets Windchill and FlexPLM via CVE-2026-12569 RCE

A data-theft extortion campaign is exploiting CVE-2026-12569, a critical unauthenticated RCE in PTC Windchill and FlexPLM, to deploy h…

Aug 04, 2026views - 1.1k

CYBERSECZERO-DAY

INC Ransomware Dominates SonicWall Zero-Day Chain: When the VPN Appliance Becomes an Unmonitored Bridge

INC Ransomware has emerged as the dominant threat actor actively weaponizing a chain of two zero-day vulnerabilities in SonicWall SMA…

Aug 03, 2026views - 1.2k

cybersec

Phishing Tops 50% of IR Cases: Cisco Talos Flags Perimeter Collapse

In Q2 2026, phishing became the leading initial access vector in over half of Cisco Talos Incident Response engagements, up from rough…

Aug 03, 2026views - 1.1k

CYBERSEC

Estée Lauder's 10-Month Oracle EBS Breach: The Suspected Patch Gap That Let Clop In

Estée Lauder disclosed a 10-month breach of its Oracle E-Business Suite HR system. The Clop ransomware group exploited CVE-2025-61882,…

Aug 02, 2026views - 1.2k

ransomware

AnMed Ransomware: 72-Hour Criminal Deadline Collides With 72-Hour CIRCIA Mandate

AnMed Health suffered a ransomware attack starting July 26, 2026, with a patient reporting a 72-hour ransom demand. The health system…

Aug 02, 2026views - 1.1k