Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-24 13:00 PDT
- OnTrac notifies customers of data breach after network hack
BleepingComputer • 2026-07-24 12:55 • www.bleepingcomputer.com
OnTrac parcel delivery company is informing that hackers breached its corporate network and may have accessed personal details belonging to its customers. […]
https://www.bleepingcomputer.com/news/security/ontrac-notifies-customers-of-data-breach-after-network-hack/ - Hermes AI agent used to automate attack on Thai Finance Ministry
BleepingComputer • 2026-07-24 12:09 • www.bleepingcomputer.com
A threat actor used the open-source Hermes AI agent in unattended “YOLO” mode to automate post-exploitation activity during an alleged breach of Thailand’s Ministry of Finance. […]
https://www.bleepingcomputer.com/news/security/hermes-ai-agent-used-to-automate-attack-on-thai-finance-ministry/ - Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts
BleepingComputer • 2026-07-24 10:50 • www.bleepingcomputer.com
Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages. […]
https://www.bleepingcomputer.com/news/security/hackers-hijack-hotel-wi-fi-dns-to-steal-microsoft-365-accounts/ - Microsoft blames massive Microsoft 365 outage on maintenance bug
BleepingComputer • 2026-07-24 08:41 • www.bleepingcomputer.com
Microsoft says a bug in its automated network maintenance request system caused Thursday’s massive outage by mistakenly removing IP routes from more devices than intended, disrupting Azure and Microsoft 365 services. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-blames-massive-microsoft-365-outage-on-maintenance-bug/ - BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery
The Hacker News • 2026-07-24 08:12 • thehackernews.com
The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found to operate an active phishing kit to impersonate the videoconferencing platforms in social engineering campaigns designed to deliver malware.“BlueNoroff has operationalised trust abuse by combining compromised industry contacts, social engineering, wallet
https://thehackernews.com/2026/07/bluenoroff-zoom-phishing-kit-profiles.html - Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
The Hacker News • 2026-07-24 07:15 • thehackernews.com
Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain a certificate for a Domain Controller and authenticate as that machine.They codenamed the flaw Certighost. Because Domain Controller accounts carry directory replication rights, the resulting Kerberos credential can retrieve the krbtgt secret through DCSync.
https://thehackernews.com/2026/07/certighost-exploit-lets-low-privileged.html - Chick-fil-A data breach affects more than 13,000 customers
BleepingComputer • 2026-07-24 07:04 • www.bleepingcomputer.com
Chick-fil-A has confirmed that over 13,000 customers had their accounts breached in a wave of credential stuffing attacks targeting its website and mobile app between June 17 and June 19. […]
https://www.bleepingcomputer.com/news/security/chick-fil-a-data-breach-affects-more-than-13-000-customers/ - Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack
BleepingComputer • 2026-07-24 07:01 • www.bleepingcomputer.com
Slopsquatting, phantom squatting, and HalluSquatting all exploit the same late-binding attack pattern, where AI coding agents trust hallucinated package, repo, or domain names. ActiveState explains how pre-fetch verification and governed dependency management can help stop these attacks before malicious code enters the pipeline. […]
https://www.bleepingcomputer.com/news/security/slopsquatting-phantom-domains-and-hallusquatting-are-the-same-ai-attack/
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
