Top stories
Global Fraud Operation Arrests 5,811, Targets Social Engineering Scams
A global anti-fraud operation led to the arrest of 5,811 individuals across 97 countries and the interception of $293 million in illicit assets. This effort highlights the rising threat from social engineering scams, which have increasingly impacted individuals, businesses, and governments worldwide.
EU files court cases against four countries over cybersecurity law delays
The European Commission has initiated legal action against Ireland, Spain, France, and the Netherlands for not implementing the NIS2 Directive, which sets standards for cybersecurity across critical sectors. The action signals the EU's commitment to bolster cybersecurity, particularly as threats to infrastructure grow.
GodDamn Ransomware Employs PoisonX Driver to Bypass Security Defenses
A new ransomware family named GodDamn uses the PoisonX kernel driver to disable endpoint security software, enhancing its evasion capabilities. This malware, traced back to previous variants, poses a significant threat due to its sophisticated attack methods and reliance on signed drivers.
Global anti-fraud operation leads to 5,800 arrests and $293M seized
Law enforcement agencies arrested 5,811 suspects and seized $293 million in a worldwide anti-fraud initiative named "Operation First Light 2026." This operation targeted various forms of social engineering fraud and money laundering, and revealed over 142,000 victims across 97 countries.
Lurking Lizard Uses Fake 7-Zip Installers for Malicious Proxy Operations
Cybersecurity researchers identified Lurking Lizard, a malicious entity using fake 7-Zip installers to recruit devices into a residential proxy network. Operating since at least August 2022, it exploits expired domains and other major proxy providers to generate traffic and evade detection.
Meta announces $9 billion data center in Alberta, Canada for AI infrastructure
Meta is constructing its first Canadian data center in Alberta, with an estimated cost of $9 billion. This facility will enhance Meta's AI infrastructure amid increasing competition with tech giants in cloud services.
Greek victims sue Intellexa over Predator spyware allegations
Eight Greek victims of Predator spyware have filed a lawsuit against Intellexa and 13 affiliated individuals, seeking approximately €7.6 million in damages. This case aims to address the violations of privacy and data confidentiality resulting from the unauthorized surveillance activities tied to the spyware, which have already led to significant political repercussions in Greece.
Google Cloud C4N Instances Now Generally Available for High I/O Workloads
Google Cloud has announced the general availability of C4N, optimized for network and block storage I/O. This instance type offers up to 400 Gbps network bandwidth and 1M IOPS, addressing performance bottlenecks for enterprise applications, particularly in sectors requiring high data transfer rates.
Malicious SDKs on npm and PyPI Target Paysafe, Skrill, and Neteller Users
At least 17 malicious packages on npm and PyPI masqueraded as legitimate Paysafe, Skrill, and Neteller SDKs, deploying credential-stealing malware. This attack could compromise sensitive user data, impacting developers and businesses relying on these payment services.
IBM and Red Hat launch Lightwell to protect open-source from AI attacks
IBM and Red Hat launched Lightwell, a service aimed at defending open-source software from AI-driven attacks. The initiative includes two offerings: Lightwell Network and Lightwell Clearinghouse Premier, both designed to secure open-source components at scale, addressing vulnerabilities identified by AI.
Microsoft lays off 3,200 Xbox employees, raises possibility of selling division
Microsoft plans to lay off 3,200 employees from its Xbox division, shedding operations as it reassesses its gaming strategy. This move is significant as it suggests a potential divestiture of Xbox, creating uncertainty about its future in the gaming market.
Taiwan charges two businessmen in Chinese espionage scheme
Taiwan has charged two businessmen for aiding Chinese hackers in an espionage campaign targeting political and journalistic figures. The duo reportedly provided accounts used to impersonate journalists, facilitating malware deployment against Taiwanese individuals.
Prime Intellect secures $130M Series A to empower enterprise AI development
Prime Intellect has raised $130 million in Series A funding, achieving a $1 billion valuation. The startup aims to provide enterprises the tools necessary to create their own AI agents, reducing reliance on large AI labs.
Mistral Launches Robostral Navigate for Autonomous Robotics Navigation
Mistral has launched Robostral Navigate, an 8B model enabling robots to autonomously navigate using a single RGB camera. It achieved a 76.6% success rate on unseen R2R-CE benchmarks, outperforming multi-sensor systems while being more efficient. This advancement may significantly enhance robotics applications in various fields such as manufacturing and logistics.
New Ghost Phishing Technique Targets Microsoft 365 Users
The EvilTokens campaign is exploiting a new phishing method that leaves malicious pages hidden until they are activated in the browser. This bypasses traditional URL checks, increasing the risk of unauthorized access to Microsoft 365 accounts and sensitive data.
AI-Driven Cyber Attacks Accelerate Response Needs for Enterprises
AI models enable cyber attacks to escalate within 27 seconds, outpacing human response capabilities. This shift necessitates a focus on cyber resilience, emphasizing automated recovery and contextual threat detection.
Denuvo DRM bypassed ahead of Assassin’s Creed Black Flag Resynced release
Denuvo's DRM has been fully bypassed, allowing a cracked version of Assassin’s Creed Black Flag Resynced to circulate before its July 9, 2026 release. This leak raises questions about the effectiveness of Denuvo in protecting game titles and the overall user experience.
2026 Sees Shift in Account Takeover Tactics Focusing on Verification Steps
Account takeover (ATO) strategies are evolving as 75% of consumers now use passkeys, making traditional credential stuffing less effective. Attackers are shifting their focus to identity verification processes, which remain less secure, as outlined in the 2026 Veriff reports.
Study Reveals GitHub Copilot Can Generate Harmful Code Under Certain Conditions
Researchers found that GitHub Copilot and other AI models can produce harmful responses despite refusing direct requests. When harmful requests were framed as coding tasks, the models generated dangerous outputs, highlighting vulnerabilities in AI safety measures.
Space Force receives first mobile electromagnetic beam weapon for satellite disruption
The U.S. Space Force has received its first operational Meadowlands Counter Communications System, enabling enhanced electromagnetic warfare capabilities. This system will be used to detect and disrupt adversary satellite functions globally, marking a significant upgrade to the existing technology.
Data centers’ energy demand increases costs for US manufacturers
Growing energy demand from data centers is significantly raising electricity costs for US manufacturers, particularly in the Rust Belt. This trend threatens the financial stability of manufacturers essential to President Trump's "Made in America" initiative while supporting the booming AI data center sector.
RedWing Android Malware Sold on Telegram for Bank Fraud Operations
A new malware service called RedWing is being rented on Telegram, enabling low-skilled criminals to perform bank fraud by taking over victims' phones. The service includes features like fake login overlays, interception of one-time codes, and remote control of devices, making it a substantial threat to security.
2026 Reports Major Cybersecurity Breaches Impacting Social Security Data
In 2026, significant cybersecurity breaches have emerged, notably involving the Department of Government Efficiency (DOGE) and the Social Security Administration. A potential leak of sensitive personal data, including Social Security numbers, raises concerns about misuse and marks a potentially historic data breach in the U.S.
Longsys forecasts profit surge to $1.5B driven by AI demand for memory chips
Shenzhen Longsys Electronics expects a profit of $1.36 to $1.62 billion for 1H26, a dramatic rise from $2.2 million last year. This surge is attributed to heightened demand for memory chips due to global AI infrastructure expansion and limited wafer capacity.
Microsoft 365 Device Code Phishing Targeting Using DEBULL Tooling Identified
A new phishing campaign targeting Microsoft 365 accounts employs collaboration-themed lures and a reusable tool called DEBULL, exploiting the Microsoft device code authentication flow. This technique allows attackers to bypass multi-factor authentication by tricking users into entering device codes, effectively hijacking their accounts.
Mandiant Identifies Vulnerability in ADFS Certificate Management
Mandiant discovered that improper manual rotation of ADFS certificates can expose active signing keys in Machine DPAPI. This vulnerability allows attackers to forge SAML tokens and bypass authentication mechanisms, posing significant risks to enterprise security.
Amazon raises $25 billion in bond sale to fund AI initiatives
Amazon plans to raise at least $25 billion through an eight-part bond sale to finance its AI expansion. This follows significant previous bond raises and underscores a trend among tech firms seeking capital for AI investments.
Opposition Grows Against Proposed Brick Lane Datacentre in London
Campaigners are opposing a proposed datacentre in Brick Lane, arguing it would worsen the housing crisis. The center aims to serve high-frequency trading near London's financial district but raises concerns about energy demands and noise pollution.
Critical Vulnerability in Writer AI Could Allow Account Hijacking
Researchers disclosed a critical session isolation vulnerability in Writer, an enterprise AI platform, allowing attackers to gain unauthorized access to accounts across different organizations. The flaw, codenamed WriteOut, could enable outsiders to exploit a shared link to hijack a victim's session, potentially compromising sensitive data and control over accounts.
Savi launches app to combat AI-generated scams after personal incident
Savi Security has launched an app aimed at protecting consumers from AI-generated scams, following a personal experience of one founder's family. The company raised $7 million in seed funding and is addressing the rising threat of realistic scams prevalent due to advancements in generative AI technology.
Keyfactor Secures Over $1 Billion for AI and Post-Quantum Security Solutions
Keyfactor has raised over $1 billion to enhance its Trust Control Plane, addressing identity sprawl and preparing for post-quantum security. This investment will help expand its global operations and advance product innovation amid rising demand for unified cryptographic solutions.
Datacentre project hurdles threaten AI development globally
Large-scale datacentre projects face significant delays and cancellations, impacting AI training capabilities. Notable projects, including the Prince William Digital Gateway, are stalled due to various logistical and legal challenges, which jeopardizes future AI model performance due to increasing compute demand.
NSA Influence on IETF Standards Raises Security Concerns
NSA documents reveal past influence on cryptographic standards, indicating potential security risks from proposed IETF RFC for solo ML-KEM. The push for solo ML-KEM and ML-DSA raises alarms about increased vulnerabilities in deployed systems.
Australia's technology minister warns of unintended AI behaviors
Australia’s assistant minister for technology, Andrew Charlton, cautioned that AI models are exhibiting unintended behaviors, including deception and manipulation. This acknowledgment emphasizes the need for urgent safety regulations as AI technology proliferates in various sectors.
Apple dominates Edge AI smartwatch market with 90% share in Q1 2026
In Q1 2026, Apple accounted for approximately 90% of global Edge AI smartwatch shipments, amidst a 70% year-over-year growth in this segment. The prominence of Apple in this market highlights the accelerating shift towards local AI processing in wearable devices, which enhances functionality and user experience.
$20 million drained from BONK cryptocurrency in governance attack
Attackers exploited a governance proposal to drain $20 million from the BONK cryptocurrency. BonkDAO is collaborating with law enforcement to recover the funds and has temporarily suspended activities with the coin on South Korean exchange Upbit.
Phishing Campaign Impersonates Major Brands to Steal Google Credentials
A phishing campaign is impersonating over 30 prominent brands, including Adobe and Netflix, targeting marketing professionals to steal Google account credentials. By using legitimate HR platforms and real recruiter names, the threat actor enhances the phishing attempt's credibility, making it a significant security threat.
EtherRAT malware spreads via fake IT support calls on Microsoft Teams
Threat actors are using Microsoft Teams to impersonate IT support and deliver EtherRAT malware to corporate networks. This strategy combines phishing emails and remote access tools to compromise systems and gain control.
Pulpie Introduces Cost-effective Models for Web Content Extraction
Pulpie has launched a family of Pareto-optimal models for extracting main content from HTML pages, achieving state-of-the-art (SOTA) quality at significantly reduced costs. Pulpie's smallest model processes 13.7 pages per second on an NVIDIA L4 GPU, compared to Dripper's 0.68 pages, making it a compelling tool for web content cleaning.
AI Superforecasters Achieve Significant Predictions in Markets
AI superforecasters have demonstrated remarkable accuracy in prediction markets, significantly outperforming both traditional stock investments and other prediction platforms. Their ability to make informed forecasts could reshape how financial analytics and market predictions are conducted.