Threats & incidents
-
ANSSI puts G7 Evian summit on cyber alert
France’s cyber agency is supporting G7 summit preparations as major diplomatic events remain exposed to espionage, destabilisation, extortion, and denial-of-service activity.
-
ServiceNow investigates customer data exposure
ServiceNow has reportedly warned affected customers after unauthenticated access through a vulnerable API endpoint allowed attackers to query customer instance data.
-
France contains Tchap account compromise
French officials say an account compromise affected public conversations in Tchap, the government messaging service, while private encrypted conversations remained protected.
-
SolarWinds flaw enters exploitation list
CISA has added a SolarWinds Serv-U denial-of-service vulnerability to its exploited catalogue, putting file-transfer resilience and exposed enterprise infrastructure back under scrutiny.
-
WhatsApp asks court to sanction NSO
Meta says WhatsApp disrupted NSO-linked spear-phishing attempts and is asking a US court to hold the spyware vendor in contempt of a permanent injunction.
-
Shai-Hulud hits scientific Python packages
A new Shai-Hulud wave has compromised science-focused PyPI packages, putting developer secrets, research workflows, and bioinformatics environments back in the software supply chain spotlight.
-
Microsoft repo incident exposes agent risk
A reported Miasma supply chain compromise affecting Microsoft-linked GitHub repositories shows how AI coding tools can turn development environments into credential-exfiltration paths.
-
NHS warns on exploited VPN flaw
NHS England has issued a high-severity alert after Check Point confirmed active exploitation of a critical VPN authentication bypass affecting legacy IKEv1 remote-access configurations.
-
European agencies warn on Russian technology targeting
European intelligence warnings link Russian technology targeting to sanctions pressure, cyber espionage, defence suppliers, dual-use research, and critical infrastructure exposure.
-
France keeps Exchange alert active
France has kept its Exchange Server warning active, keeping exposed mail infrastructure, emergency mitigations, and compromise detection inside the current European risk cycle.



