Flipper Blackhat – July Roundup
|
submitted by /u/Machinehum [comments] |
|
submitted by /u/Machinehum [comments] |
JetBrains is warning of a critical authentication bypass vulnerability affecting TeamCity On-Premises that could be exploited to achieve remote code execution. The security issue is tracked as CVE-2026-63077 and can be leveraged by an attacker with HTTPS access to a TeamCity server to bypass authentication via the agent polling protocol and execute arbitrary operating system…
Swati KhandelwalJul 22, 2026Law Enforcement / Cybercrime German and US law enforcement have taken down the core infrastructure of Kratos, described by German investigators as one of the world’s most widely used criminal phishing kits, and Indonesian authorities arrested the man they say developed and ran it. In a joint announcement on Monday, the Frankfurt…
New Crypter-as-a-Service Cruciferra Fuels Stealthy Malware Attacks Worldwide Pierluigi Paganini July 28, 2026 Proofpoint uncovered Cruciferra, a crypter-as-a-service that helps hackers evade antivirus and deliver malware in multiple campaigns. Proofpoint’s research team traced a wave of income-tax-themed lures targeting Indian taxpayers, tax professionals, and corporate finance teams back to a crypter service called Cruciferra, and…
Data Breach Notification , Data Privacy , Data Security Number of Victims Is 5 Times Higher Than Claims by ShinyHunters Ransomware Gang Marianne Kolbasuk McGee (HealthInfoSec) • July 31, 2026 Dental and vision insurer and benefits administrator DentaQuest, owned by Canada-based Sun Life Financial, is notifying 15 million people of a May hack…
Ryuk Ransomware Member Pleads Guilty Over Attacks on U.S. Organizations Pierluigi Paganini July 12, 2026 An alleged Ryuk ransomware member pleaded guilty in the U.S. for helping deploy attacks on American companies and faces up to 15 years in prison. Armenian national Karen Serobovich Vardanyan (34) pleaded guilty in the U.S. for his role in…
Ransomware activity followed a recognizable pattern during the previous four years. Each year was defined by a dominant actor, its collapse, or a major supply chain incident. Black Kite’s 2026 Ransomware Report documents a more fragmented market, with multiple ransomware playbooks scaling at the same time. Monthly victim count by threat actor (Source: Black Kite)…