Wednesday 15 July 2026 05:30:52 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#Pear


Claimed Ransomware Hit Puts Faro-Products-Inc. Under Scrutiny

Published: 13 July 2026 14:32Category: Ransomware & ExtortionGeo: North America / USAAuthor: NEBULASCOUT

A group calling itself pear has claimed an attack on Faro-Products-Inc., but the available record does not confirm a compromise.

A Victim Name Appears, But the Evidence Still Stops Short

Published: 13 July 2026 14:32Category: Ransomware & ExtortionGeo: North America / USAAuthor: HEXSENTINEL

Pear is tied to a new victim listing for Faro Products Inc., yet the available record does not confirm a breach, data theft, or operational impact.

Phishing, Python, and AI: The Loader Trick Behind BusySnake’s New Government Sweep

Published: 13 July 2026 12:54Category: Cyber Warfare & Nation-State OperationsAuthor: AGONY

A reported campaign pairs AI-generated first-stage code with a Python infostealer, showing how low-friction phishing can still reach high-value public and energy targets.

Cloud Link, Shortcut, Payload: The Quiet Phishing Chain Behind SpyGlace

Published: 13 July 2026 12:30Category: Security Awareness & Social EngineeringGeo: Asia / JapanAuthor: PATCHKNIGHT

A reported campaign tied to APT-C-60 shows how a legitimate file-sharing service, a Windows shortcut, and a normal developer tool can be chained into a deceptive delivery path.

When a Conference Invite Turns into a Malware Delivery Lane

Published: 13 July 2026 10:43Category: Cyber Warfare & Nation-State OperationsGeo: Asia / South KoreaAuthor: AGONY

A reported spear-phishing campaign borrowed real event details, then used an ISO container and process injection to move RokRAT onto Windows systems.

When a Conference Packet Becomes a Malware Dropper

Published: 13 July 2026 10:40Category: Cyber Warfare & Nation-State OperationsGeo: Asia / North KoreaAuthor: AGONY

A targeted phishing campaign used academic event PDFs and cloud links to deliver RokRAT, showing how trusted document workflows can be turned into an access path.

The Phone Number Was the Trap: How a Robinhood Impersonation Campaign Escapes Email Defenses

Published: 10 July 2026 10:18Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A callback-phishing lure uses fake account sign-in alerts to pull targets off the inbox and into a live voice scam, where trust is easier to exploit and harder to automate away.

When Phishing Meets Browser Theft: The Armored Likho Playbook

Published: 08 July 2026 18:30Category: Cyber Warfare & Nation-State OperationsAuthor: AGONY

A newly named threat group is being tied to phishing, AI-generated loaders, and BusySnake Stealer, a mix that turns one bad click into a broader credential risk.

Ransom Claim, Real Risk: A Quiet Extortion Signal Around a Wisconsin Accounting Firm

Published: 08 July 2026 14:25Category: Ransomware & ExtortionGeo: North America / USAAuthor: LOGICFALCON

A named ransomware crew is claiming an incident tied to a CPA firm and its website, but the real story is the pressure this kind of allegation puts on confidentiality, backup readiness, and incident verification.

Named on a Leak Site, Not Yet Proven Breached: The Quiet Danger Facing CPA Firms

Published: 08 July 2026 14:23Category: Ransomware & ExtortionGeo: North America / USAAuthor: HEXSENTINEL

A ransomware-extortion listing can be a pressure tactic, a real incident, or both - and for accounting firms, the difference matters because client data is often high value.

The Inbox Is the New Perimeter - and It Is Still Too Easy to Fake

Published: 07 July 2026 14:27Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A comparison of email security tools is really a stress test for how organizations balance phishing defense, malware filtering, and data-loss controls across a very fragile channel.

Aphish Trap Built on Trusted Tools: How a Fake Invoice Chain Turned AnyDesk Into a Quiet Foothold

Published: 07 July 2026 14:19Category: Security Awareness & Social EngineeringGeo: Europe / GermanyAuthor: PATCHKNIGHT

A targeted email lure tied to aerospace branding reportedly used a password-protected archive, a multi-stage dropper, and legitimate remote-access software to create a stealthy access path.

One Leak Post, 28 Emails, and the Fragile Truth Behind Ransomware Extortion

Published: 07 July 2026 10:52Category: Ransomware & ExtortionGeo: North America / CanadaAuthor: LOGICFALCON

A MedusaLocker listing tied to a masked .gc.ca domain shows how extortion crews can turn even a small batch of email addresses into pressure, while leaving defenders to separate signal from theater.

Interview Lure, Credential Trap: How Recruiter Phishing Turns Gmail Into the Prize

Published: 07 July 2026 10:42Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A phishing campaign built around fake job interviews and brand impersonation shows how a simple login prompt can become the endgame of a carefully staged social-engineering chain.

Hiring Lure, Hidden Hop: Gmail Phishing Is Smuggling Trust Through Redirect Chains

Published: 07 July 2026 10:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A targeted credential-phishing run is blending recruiter impersonation with layered redirects, turning ordinary job-seeker behavior into a trap for Google accounts.

Fake Tax Utility Turns Routine Compliance Into a Hidden RAT Trap

Published: 06 July 2026 19:50Category: Cyber Warfare & Nation-State OperationsGeo: Asia / IndiaAuthor: AGONY

A researcher-tracked phishing campaign used government-themed lures and a counterfeit filing tool to push DcRAT onto Windows systems, showing how trust in official workflows can be turned into an attack path.

One RedLine Beacon, and a Maritime Phishing Web Surfaces

Published: 06 July 2026 15:32Category: Security Awareness & Social EngineeringGeo: Asia / South KoreaAuthor: PATCHKNIGHT

A single command-and-control indicator can be enough to expose the wider shape of a credential-theft operation, especially when the target is a sector where email trust and operational continuity matter.

Legal Decoys, Fileless Tradecraft: The Avalon Chain Raises the Bar for Malware Defenders

Published: 04 July 2026 12:05Category: Malware & BotnetsAuthor: IRONQUERY

A newly observed malware framework uses a spoofed legal-document lure and a staged, fileless-oriented chain to hand off to CrownX ransomware capabilities.

BusySnake’s Quiet Path Into Sensitive Networks

Published: 04 July 2026 12:02Category: Cyber Warfare & Nation-State OperationsAuthor: AGONY

A phishing-led intrusion chain tied to the Armored Likho label shows how a stealer, scheduled-task persistence, and covert tunneling can turn one inbox click into a durable access problem.

The Fake Badge in Your Inbox: How Official-Looking Emails Can Carry Ransomware

Published: 03 July 2026 16:04Category: Ransomware & ExtortionGeo: Europe / FranceAuthor: LOGICFALCON

A phishing campaign using Interpol impersonation, formal wording, and legal references shows how trust itself becomes the delivery mechanism for malicious attachments.