"City-Forum" data-theft attacks target Salesforce, ServiceNow portals

2026-08-13T01:23:21Z518c53b4f2e94ca926bb43df85bbadcaa8033738959b3cd4a5dbe4bacc1e4b80
CVE-2026-68820CVE-2026-71362Adobe CommerceAndroid malwareCisco ASACisco FTDDeadLockLazarusMagentoMicrosoft DefenderMicrosoft SharePointMicrosoft WindowsNFC relayNorth KoreaSalesforceSandwormServiceNowSpyNoteVPN proxyactive exploitationbrowser extensionsdata theftransomwaresocial engineeringzero-day

What happened

A BleepingComputer security-news feed covering active exploitation, zero-days, malware, ransomware, social engineering, supply-chain abuse, and cloud-service data theft. Notable reports include exploitation of Adobe Commerce (CVE-2026-71362), a Windows zero-day used by Lazarus (CVE-2026-68820), an actively exploited Cisco ASA/FTD denial-of-service flaw, Microsoft SharePoint exploitation, Android NFC relay malware combined with SpyNote, fake VPN extensions, and ransomware using blockchain-backed infrastructure.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
518c53b4f2e94ca926bb43df85bbadcaa8033738959b3cd4a5dbe4bacc1e4b80
Enrichment time
2026-08-13T01:23:21Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · "City-Forum" data-theft attacks target Salesforce, ServiceNow portals · Baitaphish