Tuesday 28 July 2026 20:59:12 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#RSA


The Kit Was Burned, Not the Playbook: Kratos and the Afterlife of Phishing Infrastructure

Published: 28 July 2026 19:21Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A July 2026 disruption did not end the threat around Kratos - it appears to have pushed its methods into fresh Microsoft 365 phishing campaigns.

Nvidia’s AI Security Coalition Signals a New Front: Testing the Agents Before They Act

Published: 27 July 2026 16:51Category: AI Security & Agentic SystemsGeo: North America / USAAuthor: KERNELWATCHER

A new alliance around AI security puts open testing and auditing tools at the center of the race to defend models and agentic systems.

When a Shared AI Chat Becomes Searchable: The Claude Link Problem

Published: 27 July 2026 08:15Category: Breaches & Data LeaksGeo: North America / USAAuthor: BYTEHERMIT

A convenience feature can turn into an exposure surface when a public chat link is reachable by crawlers, reminding users that AI collaboration tools can create web objects, not private notes.

Insurance Phishing Has Learned to Move at the Speed of a Login

Published: 25 July 2026 14:08Category: Security Awareness & Social EngineeringGeo: Middle East / BahrainAuthor: NEURALSHIELD

CTM360-linked research points to a shift from delayed credential theft to real-time account hijacking, a change that shrinks the defender’s window from hours to seconds.

Why Cyber Rehearsals Matter More Than Panic-Driven Response

Published: 24 July 2026 18:19Category: Cyber Intelligence & Threat TrendsAuthor: PHANTOMINTEGRITY

When attacks move faster than decision-making, simulated crises help teams learn who acts, what to protect, and how to recover before real damage begins.

Waze’s Gemini Upgrade Looks Small on Paper - but It Rewrites the Risk Model in the Car

Published: 24 July 2026 10:03Category: Technology, Innovation & Digital InfrastructureGeo: North America / USAAuthor: TRUSTBREAKER

Google has rolled out five Gemini-powered Waze features, yet only three were live for US drivers at the time described, turning a product update into a lesson about rollout control, voice trust, and in-car abuse resistance.

Singapore Moves AI Risk Into the Rulebook for Critical Systems

Published: 24 July 2026 08:12Category: Legal, Policy & Government CybersecurityGeo: Asia / SingaporeAuthor: ROOTBEACON

A planned update to cybersecurity controls and a new cloud framework suggest regulators are treating AI-enabled threats as an operational compliance problem, not a theoretical one.

Exim’s Spool Boundary Breaks Open a Quiet Local Attack Path

Published: 23 July 2026 14:21Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: NEONPALADIN

A high-severity path-handling flaw in Exim shows how a mail queue can become a filesystem boundary issue, with privilege impact depending on how the daemon is deployed.

Exim’s Hidden Boundary Slip Turns a Mail Spool Into a Local Risk

Published: 23 July 2026 14:11Category: Vulnerabilities & Patch ManagementGeo: Europe / United KingdomAuthor: DEEPAUDIT

A high-severity directory traversal flaw in Exim can let a local user step outside the intended mail spool and may create a privilege-escalation path on affected Unix-like systems.

A Browser Add-On Became the Weak Link in a Private Chat Chain

Published: 23 July 2026 12:53Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

Adobe patched a flaw in its Acrobat Chrome extension after it was reported to let any website reach WhatsApp Web conversations, underscoring how extension permissions can reshape privacy risk inside the browser.

A Log Endpoint Turned Into a File Reader in Windmill

Published: 22 July 2026 16:36Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: NEONPALADIN

A high-severity path traversal flaw in an open-source automation platform shows how a routine log feature can become an unauthenticated server-file disclosure risk.

Procurement Emails Became the Bait in a Session-Theft Campaign Against Microsoft 365

Published: 22 July 2026 10:37Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

AiTM phishing can turn a routine vendor request into a live browser hijack, letting attackers reuse an authenticated Microsoft 365 session even after MFA is completed.

The WebDAV Lab Hiding in Plain Sight

Published: 21 July 2026 10:34Category: Malware & BotnetsAuthor: NEXUSGUARDIAN

An exposed file-sharing endpoint was described as a malware rehearsal space, where operators tested lure files, shortcut abuse, and Windows delivery paths tied to PureRAT and credential-stealing payloads.

Fifty Years On, the Z80 Still Forces a Hard Question: What Happens When Hardware Outlives Its Era?

Published: 19 July 2026 18:06Category: Technology, Innovation & Digital InfrastructureGeo: North America / USAAuthor: TRUSTBREAKER

A milestone for the Zilog Z80 is less about nostalgia than about the security lesson hidden in long-lived technology: anything that survives long enough can become a documentation and maintenance problem.

Public PoCs Put Notepad++ on the Watch List, Even After the Fix

Published: 17 July 2026 18:21Category: Vulnerabilities & Patch ManagementGeo: Europe / FranceAuthor: SECURESPECTER

Three patched vulnerabilities are now accompanied by public proof-of-concept material, a reminder that remediation does not end when the vendor ships an update.

GPT-Red and the Industrialization of AI Red Teaming

Published: 17 July 2026 12:20Category: AI Security & Agentic SystemsGeo: North America / USAAuthor: KERNELWATCHER

OpenAI’s attacker-style model turns prompt-injection testing into a repeatable security workflow, showing how defensive AI is now being trained to think like an adversary.

A Hash, a Name, and a Claim: The Thin Trail Around suppcentersa.com

Published: 17 July 2026 12:12Category: Ransomware & ExtortionAuthor: NEBULASCOUT

A post tied to m3rx names suppcentersa.com and a hash string, but the available details stop short of proving a real intrusion.

M3rx Lists SuppCenter Global Services Domain as a New Victim

Published: 17 July 2026 12:12Category: Ransomware & ExtortionAuthor: HEXSENTINEL

A victim entry tied to suppcentersa.com raises extortion risk signals, but the available record does not confirm a breach, stolen data, or the technical path in.

Claimed Ransomware Hit Leaves Only a Hash and a Name

Published: 17 July 2026 04:08Category: Ransomware & ExtortionAuthor: NEBULASCOUT

A ransomware group calling itself krybit has claimed an attack tied to formasuniversales.com, but the verified record stops short of proving compromise.

Victim Listing Turns a Quiet Brand Into a Ransomware Signal

Published: 17 July 2026 04:08Category: Ransomware & ExtortionGeo: North America / PanamaAuthor: HEXSENTINEL

A public claim tied to Krybit names Formas Universales, S.A. and raises a familiar warning for defenders: a listed victim is not the same as a verified breach.