Sunday 19 July 2026 17:45:33 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

July 2026

14 July 2026


When a DLL Lookup Becomes an OT Break-In Point

ABB has patched a search-path flaw in Advant Master Online Builder that could let someone with the required access load untrusted code on an affected node.

Kernel Crypto Flaw Turns Industrial Edge Nodes into Local Root Targets

Published: 14 July 2026 18:37Category: Industrial Cybersecurity & Critical InfrastructureGeo: Europe / SwitzerlandAuthor: NETAEGIS

A Linux kernel weakness mapped to ABB Ability Edgenius shows how a local-only bug can matter just as much as a remote one when the affected system sits near operational data.

When a Maintenance Port Becomes the Weakest Link in Industrial Control

A critical authentication failure in Rockwell Automation’s 1715-AENTR EtherNet/IP adapter shows how an exposed service path can turn an OT maintenance feature into a high-risk control surface.

ABB Terminal Software Patches a Four-Front Crack in Industrial Trust

A security advisory for ABB T-MAC Plus shows how one industrial platform can expose web files, role boundaries, browser sessions, and field-device communications at the same time.

RabbitMQ’s Control Plane Comes Into Focus as Access Checks Draw Scrutiny

Published: 14 July 2026 18:30Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: AUDITWOLF

Two disclosed authorization flaws could let a low-privilege view into OAuth material and cross-tenant broker metadata, underscoring how messaging systems depend on disciplined boundary enforcement.

DragonForce Claim Spots a Small Target, but Proof of Impact Is Missing

Published: 14 July 2026 18:27Category: Ransomware & ExtortionAuthor: HEXSENTINEL

A ransomware label tied to Graphic-International-Centre and graphicint.com is enough to merit attention, but not enough to confirm an intrusion.

Claimed Ransomware Hit on SITAV-SpA Leaves More Questions Than Answers

Published: 14 July 2026 18:27Category: Ransomware & ExtortionGeo: Europe / ItalyAuthor: NEBULASCOUT

A named ransomware group has claimed an attack tied to SITAV-SpA and a listed website, but the allegation remains unverified and the operational impact is not established.

Unverified Dragonforce Claim Puts Edison Global Networks in the Spotlight

Published: 14 July 2026 18:26Category: Ransomware & ExtortionGeo: Europe / United KingdomAuthor: HEXSENTINEL

A post in which Dragonforce claims a ransomware attack names Edison-Global-Networks-Limited, but the public evidence stops short of confirming a breach.

When a Camera Becomes the Quietest Spy in the War Room

Published: 14 July 2026 18:26Category: Cyber Warfare & Nation-State OperationsGeo: Europe / NetherlandsAuthor: AGONY

Dutch intelligence has tied a Russian-linked surveillance campaign to internet-connected cameras used to watch military logistics and Ukrainian personnel across Europe.

How Defenders Can Judge a Vulnerability Without Firing the Payload

Published: 14 July 2026 18:24Category: Research, Exploits & Offensive SecurityGeo: Europe / TurkeyAuthor: DEBUGSAGE

A vendor-described chaining method tests whether an attack path can work in production by checking the steps an exploit needs, not by launching the exploit itself.

The Broadcast Trap Hidden Inside “Simple” LAN Discovery

Published: 14 July 2026 18:23Category: Technology, Innovation & Digital InfrastructureAuthor: TRUSTBREAKER

A small shortcut in UDP discovery code can turn IPv4 subnetting into a reliability problem, and sometimes a security one, once real networks stop looking like a neat /24.

Six Weeks Offline, Then Bankruptcy: How One Cyberattack Can Break a Manufacturer

Published: 14 July 2026 18:20Category: Breaches & Data LeaksGeo: Europe / GermanyAuthor: SECURERECLAIMER

ZEGO GmbH’s case shows how a single intrusion can turn a production pause into a severe financial crisis for an industrial business.

ECB Puts Eurozone Banks on the Clock for AI-Driven Cyber Risk

Published: 14 July 2026 18:19Category: Privacy, Regulation & ComplianceAuthor: WHITEHAWK

A July supervisory letter gives banks until 31 October 2026 to file an action plan on AI-enabled cyber threats, tying the request to DORA-style operational resilience.

Healthcare’s Quiet Weak Spot Is Not a Hack - It Is the Gaps Between Vendors, Logins, and Practice

Published: 14 July 2026 18:18Category: Cloud, SaaS & Identity SecurityGeo: North America / USAAuthor: SHADOWFIREWALL

A new healthcare warning puts supply-chain security, identity management, and staff readiness in the same frame: cyber risk becomes operational risk when hospitals cannot trust who connects, who updates, or who responds.

Defense Procurement Slams the Brakes on CMMC Phase II, and Contractors Feel the Delay

Published: 14 July 2026 18:16Category: Privacy, Regulation & ComplianceGeo: North America / USAAuthor: SAFEHEXER

A 60-day review of the CMMC rollout may ease near-term pressure, but it also leaves defense suppliers navigating an uncertain compliance timetable.

Security AI Is Spreading Faster Than the Rules to Control It

Published: 14 July 2026 18:14Category: AI Security & Agentic SystemsGeo: North America / USAAuthor: KERNELWATCHER

A SANS Institute report points to rising AI use in cyber defense and a widening split between leadership enthusiasm and the controls frontline teams actually need.

Brazil’s June Ransomware Count Puts It in a New Crosshairs

Published: 14 July 2026 18:12Category: Cyber Intelligence & Threat TrendsGeo: South America / BrazilAuthor: PHANTOMINTEGRITY

A June ranking placed Brazil 3rd in ransomware activity, with 23 cases recorded by Ransomware.live.

Encrypted Chat, Unencrypted Risk: Why a Signal Espionage Claim Points First to the Device

Published: 14 July 2026 18:12Category: Cyber Warfare & Nation-State OperationsGeo: Europe / ItalyAuthor: AGONY

An allegation involving Italian politicians, journalists, and managers on Signal is a reminder that secure messaging is only as strong as the phone, account, and linked sessions behind it.

Zoom’s Windows Security Set Adds One Critical Risk and Three High-Severity Escalation Paths

Published: 14 July 2026 18:09Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A new cluster of Zoom flaws shows how collaboration software can become an access-control problem on Windows, with exposure reaching clients, rooms, VDI plugins, and embedded SDK deployments.

Chaos Claim Circles a Pharma Brand, but Verification Is Still Missing

Published: 14 July 2026 18:07Category: Ransomware & ExtortionGeo: North America / USAAuthor: LOGICFALCON

A ransomware post names aphenapharma.com, a hash, and a related company page, yet none of that by itself proves a confirmed intrusion.

July 2026