Philips and GE investigating Clop ransomware data theft claims

Two global tech giants, General Electric (GE) and Philips, have joined oil giant Shell in investigating claims that their systems were breached by the notorious Clop ransomware gang. The alleged data theft incident has sparked concerns about the security of enterprise software platforms widely used across various industries. According to reports, the Clop hacking group … Read more

Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

A China-Nexus Actor Exploits VMware vCenter Flaw, Deploying Babuk-Derived Ransomware Cybersecurity researchers have uncovered a sophisticated cyberattack that leverages a previously unknown vulnerability in VMware’s vCenter management software to deploy a custom-built ransomware variant derived from the infamous Babuk strain. The attack is suspected to be linked to China-based threat actors, who have been known … Read more

Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies

A new and highly sophisticated botnet, dubbed “Evooo1Bot,” has been discovered compromising Linux-based edge devices worldwide. This botnet exploits known vulnerabilities in various software applications, turning compromised machines into SOCKS5 proxies that can be controlled remotely by attackers. The implications are far-reaching, with potentially millions of devices at risk. At the heart of this issue … Read more

Fortune 500 Companies Hit in Azure Data Theft Campaign

A massive data theft campaign has targeted several Fortune 500 companies, exposing millions of sensitive records that could be used in sophisticated social engineering attacks. The threat actor, known as “TheHatman,” claims to have stolen over 5 million records from the Azure tenants of prominent brands like McDonald’s Corporation, Tata Consultancy Services (TCS), Vodafone, and … Read more

Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure

A critical vulnerability in SAP Commerce Cloud has been exploited just three days after its public disclosure, highlighting the urgent need for organizations to prioritize patching and monitoring their systems. The vulnerability, tracked as CVE-2026-58231, is a serious issue that allows attackers to execute arbitrary code and compromise internal components. It was publicly disclosed on … Read more

Recent macOS Screen Sharing Vulnerability Exploited in Attacks

A recent macOS vulnerability is being exploited in real-world attacks, allowing hackers to gain root access and deploy cryptominers on vulnerable systems. The flaw, tracked as CVE-2026-65400, affects Screen Sharing, a built-in feature that allows users to remotely control another Mac’s screen. The bug was patched by Apple just over a week ago, but threat … Read more

Microsoft working on Defender patch for ShieldBreak zero-day

Microsoft Rushes to Patch Zero-Day Flaw in Defender Amid Ongoing Dispute with Security Researcher A serious security hole has been discovered in Microsoft’s Defender antivirus software, allowing hackers to escalate privileges and gain control of Windows systems. The flaw, dubbed “ShieldBreak,” was publicly disclosed by a security researcher known as Nightmare Eclipse on August 14, … Read more

Fortune 500 Companies Hit in Azure Data Theft Campaign

A sophisticated threat actor, known by the moniker “TheHatman”, has been selling millions of records allegedly stolen directly from the Azure tenants of several Fortune 500 organizations. The compromised data includes sensitive information about employees, such as names, email addresses, phone numbers, and job titles. According to Hudson Rock, a company that specializes in tracking … Read more

Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure

A Critical SAP Commerce Cloud Vulnerability is Being Exploited Just Days After Disclosure In a disturbing example of how quickly attackers can move to exploit newly disclosed vulnerabilities, hackers have already started targeting a critical flaw in SAP’s Commerce Cloud platform just three days after its public disclosure. The vulnerability, tracked as CVE-2026-58231, has been … Read more

ISC Stormcast For Monday, August 17th, 2026 https://isc.sans.edu/podcastdetail/10054, (Mon, Aug 17th)

Cybersecurity Researchers Sound Alarm on New Malware Family Threatening Businesses Worldwide A newly discovered malware family is wreaking havoc on businesses globally, with cybersecurity experts warning of its highly sophisticated and adaptable nature. According to a recent analysis by SANS Institute’s Internet Storm Center (ISC), this malware family has been identified as “Xtreme”, and it’s … Read more