Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-01 17:00 PDT
- Smashing Security podcast #474: Polymarket can predict the future. So how did it miss this hack?
Graham Cluley • 2026-07-01 16:12 • grahamcluley.com
Polymarket has built an entire business on predicting the future. So how did it manage to spectacularly fail to predict its own hack? Plus, the Google engineer with a million-dollar secret, and the curious case of the airport hairdryer.Meanwhile, “FortiBleed” sees 75,000 Fortinet firewalls thrown wide open – and the real damage is going to roll on for years.
All this and more in episode 474 of the “Smashing Security” podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Quentyn Taylor.
https://grahamcluley.com/smashing-security-podcast-474/ - FortiBleed credential-theft campaign linked to Lynx ransomware
BleepingComputer • 2026-07-01 14:37 • www.bleepingcomputer.com
The massive FortiBleed credential theft campaign has been linked to the INC and Lynx ransomware operations, suggesting the stolen Fortinet credentials were intended to fuel future network intrusions. […]
https://www.bleepingcomputer.com/news/security/fortibleed-credential-theft-campaign-linked-to-lynx-ransomware/ - Kubota says hackers had month-long access to network systems
BleepingComputer • 2026-07-01 14:09 • www.bleepingcomputer.com
Kubota North America Corporation disclosed that hackers had access to some of its network systems for more than a month earlier this year. […]
https://www.bleepingcomputer.com/news/security/kubota-says-hackers-had-month-long-access-to-network-systems/ - New ChocoPoC malware targets researchers via trojanized PoC exploits
BleepingComputer • 2026-07-01 13:08 • www.bleepingcomputer.com
Multiple weaponized proof-of-concept (PoC) exploits on GitHub were found delivering a Python-based remote access trojan (RAT) named ChocoPoC that can execute commands and steal sensitive data in a campaign believed to target cybersecurity researchers. […]
https://www.bleepingcomputer.com/news/security/new-chocopoc-malware-targets-researchers-via-trojanized-poc-exploits/ - Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters
The Hacker News • 2026-07-01 12:40 • thehackernews.com
Argo CD, a widely used tool for deploying software to Kubernetes, has an unpatched flaw in its repo-server component that lets an unauthenticated attacker run code, provided they can reach the component’s internal network port.Synacktiv, which found the bug, says it can lead to a full cluster takeover. There is no fix and no CVE. The firm says it reported the flaw to Argo CD’s maintainers in
https://thehackernews.com/2026/07/unpatched-argo-cd-repo-server-flaw.html - 19-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking Charges
The Hacker News • 2026-07-01 12:28 • thehackernews.com
A teenager accused of belonging to the hacking group Scattered Spider has been extradited from Finland to face U.S. charges of conspiracy, computer intrusion, and fraud, the U.S. Department of Justice announced on July 1.Peter Stokes, 19, a dual U.S. and Estonian citizen, appeared in a Chicago federal court on June 30, where a judge ordered him held in custody.
Finnish police
https://thehackernews.com/2026/07/19-year-old-scattered-spider-suspect.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
