Threadlinqs IntelligenceStart free

Daily debrief · Monday2026-08-03

Daily Intelligence Briefing — Monday, August 3, 2026

14 critical16 high3 medium2 low

On 2026-08-03, Threadlinqs published 28 new threat reports and updated 7, 14 rated critical and 16 high, spanning 290 MITRE ATT&CK techniques and 14 named threat actors. Coverage that day added 315 new detection rules and 1002 extracted indicators.

New threats
287 updated
Critical / high
3014 critical · 16 high
ATT&CK techniques
290Observed in the day’s reports
Threat actors
14Named in the reports
Indicators
1002Count only · values are Red+
Detection rules
315New that day · rule text is Blue+

Edition date: · Last updated:

Summary & highlights

GovCERT.HK Security Alert A26-08-01: Multiple Vulnerabilities in Microsoft Edge, Office 2019/LTSC 2021/LTSC 2024, Excel 2016, and Microsoft 365 Apps for Enterprise. ModernStealer: Cross-Platform Dark Web/Telegram Broker Network Claims Sale of Government and Defense Data. EU AI Act Article 50 Enforcement — Regulatory Transparency Obligations and Documented Cybersecurity Attack Surface from AI Content Provenance Bypass Techniques.

Highlights

  • TL-2026-1825 — CVE-2026-50641: Plaintext Password Storage in Streamsoft Business Intelligence
  • TL-2026-1831 — CVE-2026-31431: Linux Local Privilege Escalation Actively Exploited by UMBRAL BISON Within 24 Hours of Disclosure
  • TL-2026-1832 — Octagon / OctagonPanel "Ward" Android RAT Impersonates Bahrain's "BH Alert" Civil Defense App to Steal Credentials, SMS/OTPs, and Banking Data
  • TL-2026-1833 — Larva-24009 (aka HeptaX) Spear-Phishing Campaign Deploys QuasarRAT, UltraVNC and Updated Notifier Backdoor
  • TL-2026-1834 — Alleged Żabka Polska Breach: 541K Jira Issues, 230K IT Tickets, 89 GitLab Repos, and Cloudflare/MongoDB/Broker Credentials Offered for €5,000

Theme of the day

Activity centered on 2fa-bypass, access-control-violation, account-discovery-risk.

  • credential-theft
  • cisa-kev
  • social-engineering
  • authentication-bypass
  • active-exploitation

Threats published

35 threat lines in the 2026-08-03 debrief, most severe first; entries marked (update) revise an earlier report. Each links to its full profile.

Techniques observed

290 MITRE ATT&CK and ATLAS techniques appear across the day’s reports.

Threat actors

14 named threat actors across the reports.

Nation-state attribution

  • Vietnam
  • Belarus
  • Indonesia
  • Unidentified (assessed East Asia)
  • Russia
  • Iran

Threat categories

  • VULNERABILITY
  • THREAT_INTEL
  • FRAUD
  • MALWARE
  • DATA_BREACH
  • APT
  • ZERO_DAY

Severity breakdown

  • critical14
  • high16
  • medium3
  • low2

Indicator & detection coverage

Counts only: the indicator values and detection rule text behind them are tiered.

1002 indicators of compromise · Red and above. Compare plans
  • network 316
  • file 179
  • behavioral 147
  • entity 92
  • infrastructure 72
  • tool 57
  • technique 54
  • package 45
  • malware 40
315 new detection rules (100% of the day’s threats covered) · Blue and above. Compare plans