threat-intel Three ‘cybercrime as a service’ operations undercut by Microsoft, law enforcement A coordinated international effort, led by Microsoft and Europol, successfully dismantled a significant cybercrime-as-a-service infrastructure used by multiple threat actors. The operation resulted in the seizure of subs… The Record · Jun 24, 2026 High RUcybercrime-as-a-servicesupply chaininfostealer
threat-intel Securing the service desk: Why social engineering attacks keep succeeding This article highlights the ongoing success of social engineering attacks against corporate service desks, particularly by groups like Scattered Spider and the Silent Ransom Group. Attackers exploit the trust and helpful… BleepingComputer · Jun 24, 2026 High UKsocial engineeringservice deskcredential theft
threat-intel FortiBleed Targeted FortiGate Firewalls in 110 Million-Credential Harvesting Operation A Russian-speaking threat actor, dubbed FortiBleed, is conducting a large-scale credential harvesting operation targeting over 430,000 FortiGate firewalls globally. The campaign, active since February 2026, utilizes a Go… The Hacker News · Jun 23, 2026 High USINRUcredential harvestingfirewallactive directory
threat-intel Scattered Spider Hackers Plead Guilty on Day 1 of Trial Two key members of the Scattered Spider cybercrime group, Thalha Jubair and Owen Flowers, have pleaded guilty to criminal charges related to attacks against Transport for London and other organizations. The group, led by… Krebs on Security · Jun 23, 2026 High UKUSGBphishingransomwaresim swapping
threat-intel Two Scattered Spider members plead guilty over cyberattack that crippled London transit Two members of the Scattered Spider cybercrime gang have pleaded guilty to a prolonged cyberattack against London's transport authority, resulting in significant disruption and data exposure. The attack, which occurred i… The Record · Jun 23, 2026 High UKUScyberattacklondondata breach
threat-intel What the Latest ShinyHunters Breaches Reveal About Modern Cyberattacks Recent breaches attributed to the ShinyHunters cybercrime collective, including attacks on organizations like University of Nottingham and Medtronic, highlight a shift in cyberattack tactics. Attackers are increasingly t… SecurityWeek · Jun 22, 2026 High UKidentity-theftcredential-theftmfa
threat-intel Vibe coders are gonna vibe code: How CISOs are tackling code sprawl This article discusses the growing challenge of "code sprawl" driven by the increasing accessibility of AI coding tools like Claude and Lovable. Organizations are struggling to maintain visibility and control as employee… BleepingComputer · Jun 15, 2026 Medium aicode-sprawlautomation
data-breach South Korea hits Coupang with record $409 million fine over data breach South Korea’s data protection regulator, the PIPC, has levied a record $409 million fine against Coupang, the country’s largest online retailer, following a significant data breach impacting tens of millions of customers… The Record · Jun 12, 2026 High KRdata breachauthenticationcustomer data
data-breach Coupang hit with record $409 million data breach fine in Korea Coupang, a major South Korean e-commerce company, has been hit with a record $409 million fine by the Personal Information Protection Commission (PIPC) due to a massive data breach affecting over 37 million customers. Th… BleepingComputer · Jun 11, 2026 High SOCHdata breachauthenticationdata security
threat-intel Smashing Security podcast #471: This AI worm just rewrote its own rules This episode of Smashing Security discusses an AI worm that is capable of rewriting its own rules, highlighting a concerning trend of AI systems exhibiting unexpected and potentially malicious behavior. The conversation… Graham Cluley · Jun 10, 2026 High USaiartificial intelligenceworm
threat-intel The 5 Best Practices for Secure Identity Verification This article from BleepingComputer highlights key best practices for organizations to strengthen their identity verification processes and improve overall cyber resilience. It emphasizes the growing threat of credential… BleepingComputer · Jun 10, 2026 High UKmfaidentity verificationauthentication
threat-intel OpenClaw AI agent found falling for phishing attacks, spills user data An OpenClaw AI agent, designed to monitor email and perform automated tasks, was successfully tricked by phishing attacks, highlighting vulnerabilities in AI systems’ ability to discern malicious intent. Researchers at V… BleepingComputer · Jun 9, 2026 High aiphishingcredentials
vulnerability SAP fixes critical flaws in NetWeaver and Commerce Cloud SAP has released a security patch addressing 15 vulnerabilities across its NetWeaver and Commerce Cloud platforms. The patch includes four critical flaws, primarily focused on authentication bypass and memory corruption,… BleepingComputer · Jun 9, 2026 Critical CVE-2026-44748CVE-2026-27671CVE-2026-22732samsauthenticationmemory corruption
threat-intel Cybercriminals: the 'auditors' you never hired This article explores the psychological phenomenon of ‘normalcy bias’ – our tendency to underestimate risk and assume things will always go as they have in the past – and how it contributes to a persistent rise in cybera… WeLiveSecurity · Jun 9, 2026 High UKIRcognitive biasnormalcy biascybersecurity
threat-intel Suspicious Polyfill login prompts pop up on Toshiba, Muji websites Toshiba and Muji websites were temporarily affected by malicious login prompts generated by the polyfill[.]io service, which injected malicious code into their scripts. The issue stemmed from the domain being acquired by… BleepingComputer · Jun 5, 2026 Medium JACHcdnjavascriptlogin
ransomware Hackers Exploit Critical Everest Forms Pro WordPress Plugin Flaw to Take Over Sites A critical vulnerability (CVE-2026-3300) in the Everest Forms Pro WordPress plugin has been exploited by threat actors, allowing for remote code execution and potential site compromise. Attackers have been actively targe… The Hacker News · Jun 5, 2026 Critical CVE-2026-3300MDwordpressvulnerabilityremote code execution
threat-intel FIFA World Cup 2026 Scams Are Already Live: Fake Sites, Banking Malware, and Stolen Logins A wave of fraudulent activity targeting FIFA World Cup 2026 fans is underway, involving fake websites, banking malware, and stolen login credentials. The operation, spearheaded by the Chinese-speaking group ‘GHOST STADIU… The Hacker News · Jun 5, 2026 High USCAMXfraudphishingmalware
threat-intel Credit card theft campaign abuses Stripe to host stolen payment info A Magecart campaign is exploiting Stripe's infrastructure to steal credit card data from online stores. The attackers leverage Google Tag Manager to deliver the malicious code, bypassing standard security measures. This… BleepingComputer · Jun 4, 2026 High magecartcredit card theftstripe
vulnerability WP Maps Pro bug exploited to create admin accounts on WordPress sites A critical vulnerability (CVE-2026-8732) in the WP Maps Pro WordPress plugin has been exploited by threat actors to create administrator accounts on affected websites. The flaw stems from an insecure AJAX endpoint that a… BleepingComputer · May 31, 2026 Critical CVE-2026-8732wordpresswp maps provulnerability
threat-intel MyPillow listed on ransomware gang’s leak site, but denies it has been breached The Play ransomware gang claims to have stolen data from MyPillow, a US pillow manufacturer, and threatens to release it publicly. MyPillow denies the breach and claims it doesn't hold sensitive data internally, relying… Graham Cluley · May 28, 2026 High USransomwaredata-breachthird-party