Security Check-in Quick Hits: French Tax Breach, SafePal Order Leak, Evooo1Bot Edge Hijacks & China-Linked vCenter Ransomware

August 17, 2026 1 Min Read 0

Threat Intelligence Brief

Curated summary with source attribution

Source: rodtrent.substack.com

Threat Risk: High
Victim: French government, SafePal customers, and enterprise network administrators
Incident: A series of data breaches and botnet deployments targeting government, crypto, and network infrastructure.
Impact: Exposure of PII for over 700,000 individuals and the creation of a global proxy network via hijacked routers.
Attacker: ZeroBytes and unidentified threat actors
Analysis: The current threat landscape shows a mix of high-value PII exfiltration and the expansion of botnet infrastructure. The emergence of Evooo1Bot highlights a trend in turning edge devices into SOCKS5 proxies to obfuscate attacker traffic. Meanwhile, the targeting of vCenter and government tax data underscores the continued risk of critical software vulnerabilities and high-value data theft.
Recommendations: Audit internet-facing edge devices for unauthorized SOCKS5 proxies and unusual outbound traffic; Implement strict MFA and alert users to targeted phishing following large-scale PII leaks; Immediately apply Broadcom updates to vCenter environments to prevent ransomware deployment
Source: Rod Trent

Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source

Leave a Reply

Your email address will not be published. Required fields are marked *