<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Use Case Intel — Threat Intel Feed</title>
    <description>High-fidelity IOCs aggregated from The Hacker News, BleepingComputer, Microsoft Security Blog and CISA KEV. Refreshed daily. CVEs/hashes via regex; domains/IPs only when defanged by the source author.</description>
    <link>https://clankerusecase.com/</link>
    <atom:link href="https://clankerusecase.com/intel/iocs.rss.xml" rel="self" type="application/rss+xml" />
    <language>en-us</language>
    <pubDate>Tue, 18 Aug 2026 12:38:30 +0000</pubDate>
    <lastBuildDate>Tue, 18 Aug 2026 12:38:30 +0000</lastBuildDate>
    <generator>usecaseintel/generate.py</generator>
    <item>
      <title>[SHA256/CRIT] 6f445252494a0908ab51d526e09134cebc33a199384771acd58c4a87f1ffc063</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;6f445252494a0908ab51d526e09134cebc33a199384771acd58c4a87f1ffc063&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:6f445252494a0908ab51d526e09134cebc33a199384771acd58c4a87f1ffc063</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] 1f6c69403678646a60925dcffe8509d22bb570c611324b93bec9aea72024ef6b</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;1f6c69403678646a60925dcffe8509d22bb570c611324b93bec9aea72024ef6b&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:1f6c69403678646a60925dcffe8509d22bb570c611324b93bec9aea72024ef6b</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA1/CRIT] 779a8af3b9838a33d1e199da3fc2f02a49e7c13e</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA1:&lt;/strong&gt; &lt;code&gt;779a8af3b9838a33d1e199da3fc2f02a49e7c13e&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha1:779a8af3b9838a33d1e199da3fc2f02a49e7c13e</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[MD5/CRIT] 1f63fa7921c2f5fb8f8ffa430d02ac4a</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;MD5:&lt;/strong&gt; &lt;code&gt;1f63fa7921c2f5fb8f8ffa430d02ac4a&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:md5:1f63fa7921c2f5fb8f8ffa430d02ac4a</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 67.217.57.240</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;67.217.57.240&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:67.217.57.240</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 54.154.170.233</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;54.154.170.233&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:54.154.170.233</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 45.95.168.100</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;45.95.168.100&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:45.95.168.100</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 45.61.150.83</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;45.61.150.83&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:45.61.150.83</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 193.29.224.83</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;193.29.224.83&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:193.29.224.83</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 185.215.180.70</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;185.215.180.70&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:185.215.180.70</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 18.230.118.147</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;18.230.118.147&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:18.230.118.147</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 18.228.3.224</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;18.228.3.224&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:18.228.3.224</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 162.248.53.119</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;162.248.53.119&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:162.248.53.119</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 158.160.123.117</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;158.160.123.117&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:158.160.123.117</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 121.160.102.68</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;121.160.102.68&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:121.160.102.68</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 104.194.151.181</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;104.194.151.181&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:104.194.151.181</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 103.127.134.124</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;103.127.134.124&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:103.127.134.124</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] pool.supportxmr.com</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;pool.supportxmr.com&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:pool.supportxmr.com</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] gulf.moneroocean.stream</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;gulf.moneroocean.stream&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News, Unit 42 (Palo Alto)&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:gulf.moneroocean.stream</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>Unit 42 (Palo Alto)</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] eu.zano.k1pool.com</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;eu.zano.k1pool.com&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:eu.zano.k1pool.com</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] bwqqvqfgsseplyoltois92rdukv0mm5th.oast.fun</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;bwqqvqfgsseplyoltois92rdukv0mm5th.oast.fun&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:bwqqvqfgsseplyoltois92rdukv0mm5th.oast.fun</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2025-62593</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2025-62593&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News, CISA KEV&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2025-62593</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2023-48022</title>
      <link>https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2023-48022&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-18 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2023-48022</guid>
      <pubDate>Tue, 18 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] f13cb360768363d3424e2192c7805b8c8015eb8706dbbbcdead6aed8cf390109</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;f13cb360768363d3424e2192c7805b8c8015eb8706dbbbcdead6aed8cf390109&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:f13cb360768363d3424e2192c7805b8c8015eb8706dbbbcdead6aed8cf390109</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[SHA256/CRIT] 55a1eb4c2d3da04376df39d7ba832569c6af1a37a0cf2b95f754ac898023a30c</title>
      <link>https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;55a1eb4c2d3da04376df39d7ba832569c6af1a37a0cf2b95f754ac898023a30c&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Philips and GE investigating Clop ransomware data theft claims&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:55a1eb4c2d3da04376df39d7ba832569c6af1a37a0cf2b95f754ac898023a30c</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[SHA256/CRIT] 4c0886349e9d348569fffe1b7a31e474d514508bf0cd6f1e5dd99c2a73525e4d</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;4c0886349e9d348569fffe1b7a31e474d514508bf0cd6f1e5dd99c2a73525e4d&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:4c0886349e9d348569fffe1b7a31e474d514508bf0cd6f1e5dd99c2a73525e4d</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 91.92.40.118</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;91.92.40.118&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:91.92.40.118</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 5.34.177.38</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;5.34.177.38&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:5.34.177.38</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 5.34.176.100</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;5.34.176.100&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:5.34.176.100</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 5.180.41.35</title>
      <link>https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;5.180.41.35&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Philips and GE investigating Clop ransomware data theft claims&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:5.180.41.35</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 216.152.151.204</title>
      <link>https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;216.152.151.204&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Philips and GE investigating Clop ransomware data theft claims&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:216.152.151.204</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 216.152.148.54</title>
      <link>https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;216.152.148.54&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Philips and GE investigating Clop ransomware data theft claims&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:216.152.148.54</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 192.255.141.13</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;192.255.141.13&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:192.255.141.13</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 185.144.28.120</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;185.144.28.120&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:185.144.28.120</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 146.59.252.178</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;146.59.252.178&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:146.59.252.178</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 104.243.35.63</title>
      <link>https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;104.243.35.63&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Philips and GE investigating Clop ransomware data theft claims&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:104.243.35.63</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] studiotikva.com</title>
      <link>https://thehackernews.com/2026/08/cavern-c2-uses-dns-and-google-apps.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;studiotikva.com&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, Securelist (Kaspersky)&lt;/p&gt;&lt;p&gt;Context: Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:studiotikva.com</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>Securelist (Kaspersky)</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] intel.se9ly9upbhay.shop</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;intel.se9ly9upbhay.shop&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:intel.se9ly9upbhay.shop</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/HIGH] d8t9ldn1onp04vb3399g5krtxh14hkh3.oast.me</title>
      <link>https://thehackernews.com/2026/08/snowflake-github-actions-flaw-lets_0330881554.html</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;d8t9ldn1onp04vb3399g5krtxh14hkh3.oast.me&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;high&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:d8t9ldn1onp04vb3399g5krtxh14hkh3.oast.me</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/MED] apexappliexi.dgfp.finances.gouv.fr</title>
      <link>https://www.bleepingcomputer.com/news/security/french-tax-authority-data-breach-affects-678-000-individuals/</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;apexappliexi.dgfp.finances.gouv.fr&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;med&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer&lt;/p&gt;&lt;p&gt;Context: French tax authority data breach affects 678,000 individuals&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:apexappliexi.dgfp.finances.gouv.fr</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[DOMAIN/HIGH] anonfilesnew.com</title>
      <link>https://www.bleepingcomputer.com/news/security/hacker-claims-36-million-azure-account-records-stolen-from-major-companies/</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;anonfilesnew.com&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;high&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Hacker claims 3.6 million Azure account records stolen from major companies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:anonfilesnew.com</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-71479</title>
      <link>https://github.com/advisories/GHSA-8r8v-xf7q-rcpr</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-71479&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: GitHub Security Advisories&lt;/p&gt;&lt;p&gt;Context: [GHSA / CRITICAL] CVE-2026-71479: New API: Integer overflow in quota billing yields negative charges (self-crediting)&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-71479</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>GitHub Security Advisories</category>
    </item>
    <item>
      <title>[CVE/HIGH] CVE-2026-69414</title>
      <link>https://www.bleepingcomputer.com/news/security/microsoft-working-on-defender-patch-for-shieldbreak-zero-day/</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-69414&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;high&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Microsoft working on Defender patch for ShieldBreak zero-day&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-69414</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-64859</title>
      <link>https://github.com/advisories/GHSA-6x2c-phff-wx57</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-64859&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: GitHub Security Advisories&lt;/p&gt;&lt;p&gt;Context: [GHSA / CRITICAL] CVE-2026-64859: New API: User List API Leaks Root User Access Token Leading to Privilege Escalation&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-64859</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>GitHub Security Advisories</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-64849</title>
      <link>https://github.com/advisories/GHSA-7gwp-5pfp-969j</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-64849&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: GitHub Security Advisories&lt;/p&gt;&lt;p&gt;Context: [GHSA / CRITICAL] CVE-2026-64849: MLflow: Unauthenticated full-read SSRF in webhook delivery: _validate_webhook_url bypassed via unvalidated HTTP redirects (and DNS rebinding)&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-64849</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>GitHub Security Advisories</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-59310</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-59310&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-59310</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-59309</title>
      <link>https://thehackernews.com/2026/08/suspected-china-nexus-actor-exploits.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-59309&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-59309</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-55158</title>
      <link>https://github.com/advisories/GHSA-2qvg-qr73-mqxp</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-55158&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: GitHub Security Advisories&lt;/p&gt;&lt;p&gt;Context: [GHSA / CRITICAL] CVE-2026-55158: conflibot vulnerable to command injection via crafted pull request branch names under pull_request_target&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-55158</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>GitHub Security Advisories</category>
    </item>
    <item>
      <title>[CVE/HIGH] CVE-2026-54121</title>
      <link>https://www.bleepingcomputer.com/news/security/certighost-and-the-privilege-hiding-in-your-certificate-authority/</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-54121&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;high&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Certighost and the Privilege Hiding in Your Certificate Authority&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-54121</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-50656</title>
      <link>https://www.bleepingcomputer.com/news/security/microsoft-working-on-defender-patch-for-shieldbreak-zero-day/</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-50656&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, The Hacker News&lt;/p&gt;&lt;p&gt;Context: Microsoft working on Defender patch for ShieldBreak zero-day&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-50656</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-47698</title>
      <link>https://github.com/advisories/GHSA-cfcw-xp6x-25gj</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-47698&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: GitHub Security Advisories&lt;/p&gt;&lt;p&gt;Context: [GHSA / CRITICAL] CVE-2026-47698: vm2: Sandbox Breakout Using Dangerous Host Proto Mutators&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-47698</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>GitHub Security Advisories</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-47686</title>
      <link>https://github.com/advisories/GHSA-m283-3h24-438v</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-47686&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: GitHub Security Advisories&lt;/p&gt;&lt;p&gt;Context: [GHSA / CRITICAL] CVE-2026-47686: VM2 has Missing Error.cause Sanitization that Enables Sandbox Escape to RCE&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-47686</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>GitHub Security Advisories</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-19650</title>
      <link>https://thehackernews.com/2026/08/critical-gitlab-graphql-flaw-could-let.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-19650&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-19650</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-19478</title>
      <link>https://thehackernews.com/2026/08/critical-gitlab-graphql-flaw-could-let.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-19478&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-19478</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-12569</title>
      <link>https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-12569&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Philips and GE investigating Clop ransomware data theft claims&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-12569</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2025-55583</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2025-55583&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2025-55583</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2025-31718</title>
      <link>https://thehackernews.com/2026/08/unisoc-volte-video-call-exploit-chain.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2025-31718&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2025-31718</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2025-1974</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2025-1974&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2025-1974</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2025-10123</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2025-10123&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2025-10123</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2024-4577</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2024-4577&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2024-4577</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2024-29269</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2024-29269&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2024-29269</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2024-10914</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2024-10914&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2024-10914</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2023-34362</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2023-34362&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2023-34362</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2023-1389</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2023-1389&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2023-1389</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2022-37055</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2022-37055&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2022-37055</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2022-30525</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2022-30525&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2022-30525</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2022-29464</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2022-29464&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2022-29464</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2022-26134</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2022-26134&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2022-26134</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2022-20210</title>
      <link>https://thehackernews.com/2026/08/unisoc-volte-video-call-exploit-chain.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2022-20210&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2022-20210</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2021-46422</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2021-46422&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2021-46422</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2021-36260</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2021-36260&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2021-36260</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2020-10987</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2020-10987&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2020-10987</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2019-14931</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2019-14931&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2019-14931</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2018-14558</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2018-14558&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2018-14558</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2016-6277</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2016-6277&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2016-6277</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2007-3010</title>
      <link>https://thehackernews.com/2026/08/evooo1bot-linux-botnet-exploits-known.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2007-3010&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-17 · Sources: The Hacker News, BleepingComputer, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2007-3010</guid>
      <pubDate>Mon, 17 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
      <category>BleepingComputer</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[SHA256/CRIT] e853748ca8f9a5a9168263617409a9039ab09f4ffc7d860374c1e3b0b67b31a5</title>
      <link>https://www.bleepingcomputer.com/news/security/new-amnesiastealer-macos-malware-hijacks-browser-sessions-via-remote-control/</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;e853748ca8f9a5a9168263617409a9039ab09f4ffc7d860374c1e3b0b67b31a5&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-16 · Sources: BleepingComputer, The Hacker News&lt;/p&gt;&lt;p&gt;Context: New AmnesiaStealer macOS malware hijacks browser sessions via remote control&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:e853748ca8f9a5a9168263617409a9039ab09f4ffc7d860374c1e3b0b67b31a5</guid>
      <pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] de5748aac4a4d4cb48cf050652679e6bc49eda33d9ffaa0d280b578122fab55a</title>
      <link>https://www.bleepingcomputer.com/news/security/new-amnesiastealer-macos-malware-hijacks-browser-sessions-via-remote-control/</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;de5748aac4a4d4cb48cf050652679e6bc49eda33d9ffaa0d280b578122fab55a&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-16 · Sources: BleepingComputer, The Hacker News&lt;/p&gt;&lt;p&gt;Context: New AmnesiaStealer macOS malware hijacks browser sessions via remote control&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:de5748aac4a4d4cb48cf050652679e6bc49eda33d9ffaa0d280b578122fab55a</guid>
      <pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/HIGH] safepal.com</title>
      <link>https://www.bleepingcomputer.com/news/security/safepal-data-breach-impacts-39-798-customers-stolen-info-for-sale/</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;safepal.com&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;high&lt;/strong&gt; · First seen: 2026-08-16 · Sources: BleepingComputer&lt;/p&gt;&lt;p&gt;Context: SafePal data breach impacts 39,798 customers, stolen info for sale&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:safepal.com</guid>
      <pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] github.aoitour.com</title>
      <link>https://www.bleepingcomputer.com/news/security/new-amnesiastealer-macos-malware-hijacks-browser-sessions-via-remote-control/</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;github.aoitour.com&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-16 · Sources: BleepingComputer, The Hacker News&lt;/p&gt;&lt;p&gt;Context: New AmnesiaStealer macOS malware hijacks browser sessions via remote control&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:github.aoitour.com</guid>
      <pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[DOMAIN/CRIT] debug.allllowef.space</title>
      <link>https://www.bleepingcomputer.com/news/security/new-amnesiastealer-macos-malware-hijacks-browser-sessions-via-remote-control/</link>
      <description>&lt;p&gt;&lt;strong&gt;DOMAIN:&lt;/strong&gt; &lt;code&gt;debug.allllowef.space&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-16 · Sources: BleepingComputer, The Hacker News&lt;/p&gt;&lt;p&gt;Context: New AmnesiaStealer macOS malware hijacks browser sessions via remote control&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:domain:debug.allllowef.space</guid>
      <pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2020-9771</title>
      <link>https://www.bleepingcomputer.com/news/security/new-amnesiastealer-macos-malware-hijacks-browser-sessions-via-remote-control/</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2020-9771&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-16 · Sources: BleepingComputer, The Hacker News&lt;/p&gt;&lt;p&gt;Context: New AmnesiaStealer macOS malware hijacks browser sessions via remote control&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2020-9771</guid>
      <pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
      <category>BleepingComputer</category>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] cd08115806662469bbedec4b03f8427b97c8a4b3bc1442dc18b72b4e19395fe3</title>
      <link>https://www.stepsecurity.io/blog/teampcp-supply-chain-attack-cicd-secrets-cloudsek-disclosure</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;cd08115806662469bbedec4b03f8427b97c8a4b3bc1442dc18b72b4e19395fe3&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: StepSecurity&lt;/p&gt;&lt;p&gt;Context: Team PCP Stole 78,330 Secrets From 2,186 Organizations. CloudSEK Just Published the List.&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:cd08115806662469bbedec4b03f8427b97c8a4b3bc1442dc18b72b4e19395fe3</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>StepSecurity</category>
    </item>
    <item>
      <title>[SHA256/CRIT] 7321caa303fe96ded0492c747d2f353c4f7d17185656fe292ab0a59e2bd0b8d9</title>
      <link>https://www.stepsecurity.io/blog/teampcp-supply-chain-attack-cicd-secrets-cloudsek-disclosure</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;7321caa303fe96ded0492c747d2f353c4f7d17185656fe292ab0a59e2bd0b8d9&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: StepSecurity&lt;/p&gt;&lt;p&gt;Context: Team PCP Stole 78,330 Secrets From 2,186 Organizations. CloudSEK Just Published the List.&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:7321caa303fe96ded0492c747d2f353c4f7d17185656fe292ab0a59e2bd0b8d9</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>StepSecurity</category>
    </item>
    <item>
      <title>[IPV4/CRIT] 83.142.209.203</title>
      <link>https://www.stepsecurity.io/blog/teampcp-supply-chain-attack-cicd-secrets-cloudsek-disclosure</link>
      <description>&lt;p&gt;&lt;strong&gt;IPV4:&lt;/strong&gt; &lt;code&gt;83.142.209.203&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: StepSecurity, Snyk&lt;/p&gt;&lt;p&gt;Context: Team PCP Stole 78,330 Secrets From 2,186 Organizations. CloudSEK Just Published the List.&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:ipv4:83.142.209.203</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>StepSecurity</category>
      <category>Snyk</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-65400</title>
      <link>https://thehackernews.com/2026/08/apple-macos-screen-sharing-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-65400&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-65400</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-58231</title>
      <link>https://thehackernews.com/2026/08/sap-commerce-cloud-cve-2026-58231.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-58231&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-58231</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-43779</title>
      <link>https://thehackernews.com/2026/08/apple-macos-screen-sharing-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-43779&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-43779</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-43777</title>
      <link>https://thehackernews.com/2026/08/apple-macos-screen-sharing-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-43777&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-43777</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-43760</title>
      <link>https://thehackernews.com/2026/08/apple-macos-screen-sharing-flaw.html</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-43760&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-43760</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[CVE/CRIT] CVE-2026-33634</title>
      <link>https://www.stepsecurity.io/blog/teampcp-supply-chain-attack-cicd-secrets-cloudsek-disclosure</link>
      <description>&lt;p&gt;&lt;strong&gt;CVE:&lt;/strong&gt; &lt;code&gt;CVE-2026-33634&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-15 · Sources: StepSecurity, The Hacker News, CISA KEV&lt;/p&gt;&lt;p&gt;Context: Team PCP Stole 78,330 Secrets From 2,186 Organizations. CloudSEK Just Published the List.&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:cve:CVE-2026-33634</guid>
      <pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
      <category>StepSecurity</category>
      <category>The Hacker News</category>
      <category>CISA KEV</category>
    </item>
    <item>
      <title>[SHA256/CRIT] fd3ca4007b225fdf8de7af4345a19179d5efa8c4bb9205f88cda806e5684b1eb</title>
      <link>https://www.aikido.dev/blog/top-enterprise-sca-tools</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;fd3ca4007b225fdf8de7af4345a19179d5efa8c4bb9205f88cda806e5684b1eb&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: Aikido, Unit 42 (Palo Alto), Cisco Talos, Microsoft Security Blog&lt;/p&gt;&lt;p&gt;Context: Top enterprise SCA tools in 2026&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:fd3ca4007b225fdf8de7af4345a19179d5efa8c4bb9205f88cda806e5684b1eb</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>Aikido</category>
      <category>Unit 42 (Palo Alto)</category>
      <category>Cisco Talos</category>
      <category>Microsoft Security Blog</category>
    </item>
    <item>
      <title>[SHA256/CRIT] f1ef5fe4c0cdcff13cc750c867728b89719f81437bdc49041edd1ae1f3edb4e8</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;f1ef5fe4c0cdcff13cc750c867728b89719f81437bdc49041edd1ae1f3edb4e8&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:f1ef5fe4c0cdcff13cc750c867728b89719f81437bdc49041edd1ae1f3edb4e8</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] ed96e7f1085a50251eb8967ac53777272a617831084f0edad8a769c583a18869</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;ed96e7f1085a50251eb8967ac53777272a617831084f0edad8a769c583a18869&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:ed96e7f1085a50251eb8967ac53777272a617831084f0edad8a769c583a18869</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] ea893abf20b00d9bfc042a88fbf7b4bd42e68ce07c116d3e3b002e5b4a853877</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;ea893abf20b00d9bfc042a88fbf7b4bd42e68ce07c116d3e3b002e5b4a853877&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:ea893abf20b00d9bfc042a88fbf7b4bd42e68ce07c116d3e3b002e5b4a853877</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] e809da86bd81463347fa7f922d3e088755a94a331889d32acb55aa8f57778a34</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;e809da86bd81463347fa7f922d3e088755a94a331889d32acb55aa8f57778a34&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:e809da86bd81463347fa7f922d3e088755a94a331889d32acb55aa8f57778a34</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] e7e3b0bcd6798634adf8b49d305f3a7b7682e4b76db549682a183c5a186df4bb</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;e7e3b0bcd6798634adf8b49d305f3a7b7682e4b76db549682a183c5a186df4bb&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:e7e3b0bcd6798634adf8b49d305f3a7b7682e4b76db549682a183c5a186df4bb</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] e782a6d4919f194d41e524ebd6df5894197043cf772fcf60455127b246f302c0</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;e782a6d4919f194d41e524ebd6df5894197043cf772fcf60455127b246f302c0&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:e782a6d4919f194d41e524ebd6df5894197043cf772fcf60455127b246f302c0</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] e6ff096a0562c0042b09d250bd60272ffcd8d72bd95c563842acf765a8dc8bcf</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;e6ff096a0562c0042b09d250bd60272ffcd8d72bd95c563842acf765a8dc8bcf&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:e6ff096a0562c0042b09d250bd60272ffcd8d72bd95c563842acf765a8dc8bcf</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
    <item>
      <title>[SHA256/CRIT] e2eb7703047b37b28dc34e6990205d758a2454b39bc655b460606745fadcb530</title>
      <link>https://thehackernews.com/2026/08/china-linked-jewelbug-uses-xg-web-for.html</link>
      <description>&lt;p&gt;&lt;strong&gt;SHA256:&lt;/strong&gt; &lt;code&gt;e2eb7703047b37b28dc34e6990205d758a2454b39bc655b460606745fadcb530&lt;/code&gt;&lt;/p&gt;&lt;p&gt;Severity: &lt;strong&gt;crit&lt;/strong&gt; · First seen: 2026-08-14 · Sources: The Hacker News&lt;/p&gt;&lt;p&gt;Context: China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud&lt;/p&gt;</description>
      <guid isPermaLink="false">usecaseintel:sha256:e2eb7703047b37b28dc34e6990205d758a2454b39bc655b460606745fadcb530</guid>
      <pubDate>Fri, 14 Aug 2026 00:00:00 +0000</pubDate>
      <category>The Hacker News</category>
    </item>
  </channel>
</rss>
