Large-Scale DDoS Attack Causes Widespread Threema Service Outage

446/69 Tuesday, August 18, 2026 Threema, a paid secure messaging provider from Switzerland that focuses on privacy and security, disclosed that its services were affected by multiple large-scale Distributed Denial of Service (DDoS) attacks, resulting in communication issues and service disruptions. However, organizations using Threema On-Prem were not affected because that system runs on the […]

ThaiCERT

August 18, 2026

Fortune 500 Organizations Fall Victim to Azure Data Theft Campaign

445/69 Tuesday, August 18, 2026 Preliminary reports indicate that a threat actor using the name TheHatman has advertised for sale data allegedly stolen from the Azure environments of several leading Fortune 500 organizations. The potentially affected organizations include global brands such as McDonald’s, Tata Consultancy Services (TCS), Vodafone, HCL Technologies, and InterContinental Hotels Group (IHG). […]

ThaiCERT

August 18, 2026

Attempts Detected to Exploit SAP Commerce Cloud Vulnerability That Could Allow Code Execution on Systems

444/69 monday, August 17, 2026 Cybersecurity company Defused Cyber has detected attempts to exploit CVE-2026-58231 in SAP Commerce Cloud after SAP released patches for the vulnerability. The flaw is rated Critical, with a CVSS score of 10.0, and could allow unauthenticated attackers to execute code on affected systems and access internal components of the application. […]

ThaiCERT

August 17, 2026

CTM360 Finds More Than 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser Technique to Steal Credentials

443/69 monday, August 17, 2026 Cybersecurity researchers from CTM360 have published a report on a large-scale phishing campaign named RecruitTrap, which uses fake recruitment processes or job interview invitations to steal Google and Facebook credentials. In some cases, the campaign can also relay Multi-Factor Authentication (MFA) requests in real time. CTM360 stated that it identified […]

ThaiCERT

August 17, 2026

Threat Actors Found Buying Expired Domains to Use as Infrastructure for Cyberattacks and Malware Distribution

442/69 monday, August 17, 2026 Reports indicate a growing trend in cyberattacks in which threat actors purchase expired website domains that have been abandoned and repurpose them as infrastructure to deceive users and distribute malware. Statistics show that in the first half of the year, previously used domains accounted for 20% of all new domain […]

ThaiCERT

August 17, 2026

WordPress Releases Patch for RCE Vulnerability via Image File Processing

441/69 Friday, August 14, 2026 WordPress has released a security update to fix CVE-2026-65640, a High-severity vulnerability with a CVSS score of 8.8. The vulnerability could allow an authenticated attacker with Author-level privileges or higher to execute code on the system by uploading a specially crafted file. Exploitation requires file upload privileges and affects only […]

ThaiCERT

August 14, 2026

CEVA Logistics Hit by Cyberattack, Affecting Warehouses and Shipments in Europe

440/69 Friday, August 14, 2026 CEVA Logistics, a logistics company under CMA CGM Group, disclosed a cyberattack that occurred on July 29, 2026, affecting some of its operations in Europe. Eight warehouses were impacted, and the company is currently working to restore affected services. CEVA Logistics operates in more than 170 countries and is part […]

ThaiCERT

August 14, 2026

New Android Malware Can Steal Credit Card Data and Secretly Conduct Financial Transactions

439/69 Friday, August 14, 2026 Researchers from Group-IB have reported the discovery of a new threat targeting the Android operating system. This threat involves the combined use of WindRelay, a malware strain that relays data through Near Field Communication (NFC), and SpyNote, a Remote Administration Tool (RAT) used to control infected devices. The threat affects […]

ThaiCERT

August 14, 2026

Zoom Patches Zero-Click Vulnerability in Annotation Feature That Could Allow Code Execution on Users’ Devices

438/69 Thursday, August 13, 2026 Zoom has released a security update to fix CVE-2026-53413, a High-severity vulnerability with a CVSS score of 8.3 in the Annotation feature of Zoom clients. The vulnerability could allow an attacker who joins a meeting to execute code on other participants’ devices without requiring users to download files or click […]

ThaiCERT

August 13, 2026

ExfilSquad Adds New Victims and Uses Torrents to Publish Data Stolen from Cloud Portals

437/69 Thursday, August 13, 2026 Resecurity has published a report tracking the activities of ExfilSquad, a cybercrime group that emerged in mid-2026. The group uses a data theft and extortion model, threatening to publish stolen information on a dark web leak site if victims refuse to pay ransom, rather than deploying ransomware to encrypt systems. […]

ThaiCERT

August 13, 2026
1 2 3 109