Sunday 12 July 2026 05:20:27 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

#phishing


Qilin’s Name Lands on a Local Business Site, But the Real Story Is in the Risk Surface

Published: 11 July 2026 16:30Category: Ransomware & ExtortionGeo: North America / USAAuthor: NEBULASCOUT

A claimed ransomware hit tied to Allied-Plumbing--Heating shows how extortion crews turn public-facing businesses into pressure points, even when the technical facts are still unproven.

Leak-Site Claim Puts a Regional Dealer in Qilin's Crosshairs

Published: 11 July 2026 16:22Category: Ransomware & ExtortionGeo: North America / USAAuthor: LOGICFALCON

A named victim post can be a pressure tactic, a lead for defenders, and a reminder that ransomware ecosystems trade as much in intimidation as in intrusion.

When a Leak-Site Name-Checks Forensic DNA, the Stakes Go Beyond Ransom

Published: 11 July 2026 10:57Category: Ransomware & ExtortionGeo: North America / USAAuthor: HEXSENTINEL

A victim listing tied to a forensic software company is not proof of a breach, but it does expose a painful risk: sensitive identity systems can become pressure points in extortion campaigns.

A Victim Listing Can Be the First Signal of a Bigger Extortion Problem

Published: 11 July 2026 10:50Category: Ransomware & ExtortionGeo: North America / USAAuthor: LOGICFALCON

A reported ransomware listing tied to a Louisiana equipment rental company shows how even unconfirmed claims can force defenders to think about identity, backups, and operational continuity before the damage is fully clear.

Leak-Site Listing Puts Magna Dominicana in the Ransomware Spotlight, Without Proving a Breach

Published: 11 July 2026 10:09Category: Ransomware & ExtortionGeo: North America / Dominican RepublicAuthor: NEBULASCOUT

A Lockbit5 victim entry tied to magna.com.do is a warning signal for defenders, but it is not the same thing as confirmed compromise.

A Ransom Note Without Proof: What the Fortray Claim Really Tells Defenders

Published: 10 July 2026 19:45Category: Ransomware & ExtortionGeo: Europe / United KingdomAuthor: HEXSENTINEL

A ransomware crew has named Fortray and a target domain, but the public record stops at a claim - not a confirmed breach - which is exactly why the technical details matter.

Forg365 Turns a Legitimate Microsoft Login Step into a Rentable Access Trick

Published: 10 July 2026 19:35Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A reported phishing-as-a-service kit is said to abuse Microsoft’s device-code flow, showing how cloud identity abuse can outlast a simple password theft.

AI Inside the Enterprise: The Security Risk Hiding in the Way Organizations Change

Published: 10 July 2026 19:26Category: AI Security & Agentic SystemsGeo: North America / USAAuthor: KERNELWATCHER

When artificial intelligence enters business workflows, the biggest weakness is often not the model itself but the gap between deployment, governance, training, and security.

The Gateway Trap: How a Citrix Session Bug Can Turn MFA Into a Paper Wall

Published: 10 July 2026 18:29Category: Vulnerabilities & Patch ManagementGeo: North America / USAAuthor: SECURESPECTER

A critical NetScaler flaw is being tied to active session hijacking, showing how an attacker may bypass the login ceremony without breaking the second factor itself.

Forg365 Turns Microsoft 365 Phishing Into a Bought-and-Sold Access Business

Published: 10 July 2026 18:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: NEURALSHIELD

A Telegram-linked phishing service shows how identity theft now borrows the mechanics of SaaS, combining device-code abuse, token persistence, and AI-written lures.

A Leak-Site Claim Puts a Paris Accounting Firm in the Ransomware Spotlight

Published: 10 July 2026 17:58Category: Ransomware & ExtortionGeo: Europe / FranceAuthor: LOGICFALCON

A newly posted victim entry highlights how extortion crews target trust-heavy firms where accounting files, mandates, and payment instructions can matter as much as the endpoints themselves.

DeadLock's Victim List Points to Industrial Pressure, Not Yet Proof of a Breach

Published: 10 July 2026 17:31Category: Ransomware & ExtortionGeo: North America / MexicoAuthor: NEBULASCOUT

A reported victim claim involving Grupo Mercurio, a major Mexican bicycle and sports conglomerate, shows how ransomware operators use public naming to amplify extortion even before technical facts are confirmed.

Leak-Site Claim Pins Barcelona Property Chamber to DeadLock’s Extortion Machine

Published: 10 July 2026 17:13Category: Ransomware & ExtortionGeo: Europe / SpainAuthor: LOGICFALCON

A public victim listing is not proof of compromise, but it is a reminder that modern ransomware pressure often begins with reputation, not encryption.

Deadlock’s Victim Listing Puts a Quiet Engineering Firm Under Loud Extortion Pressure

Published: 10 July 2026 16:50Category: Ransomware & ExtortionGeo: Europe / GermanyAuthor: LOGICFALCON

A public victim post is not proof of breach, but it is a sharp reminder that ransomware crews use naming and exposure as pressure tools against firms that sit close to both IT and operational systems.

Leak-Site Spotlight: Qilin Publishes Promotora Zacapu as a New Victim

Published: 10 July 2026 16:18Category: Ransomware & ExtortionGeo: North America / MexicoAuthor: HEXSENTINEL

A leak-site listing is not proof of breach, but it is a warning sign that a ransomware crew is applying public pressure while defenders still need to verify the facts.

Akira’s Latest Claim Points at the Soft Underbelly of Remote Access

Published: 10 July 2026 16:12Category: Ransomware & ExtortionGeo: North America / USAAuthor: LOGICFALCON

A ransomware claim tied to Vandalia-Rental shows why the most dangerous question is often not what was said, but which exposed entry point could have made it possible.

Passkeys Become the Bait: A Vishing Crew Turns Microsoft Entra Enrollment Into a Trap

Published: 10 July 2026 14:46Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A panel-driven phishing operation is using fake security calls to pressure Microsoft 365 users into registering a new passkey, showing how identity attacks can target the enrollment process instead of the login itself.

Shortcut Trap, Cloud Link, Blockchain Path: A Clean-Looking Email Chain Hides a Dirty Payload

Published: 10 July 2026 14:41Category: Malware & BotnetsAuthor: SIGNALMONK

A booking-themed phishing wave aimed at hospitality workflows shows how attackers can stack ordinary tools - cloud sharing, ZIP files, LNK shortcuts, PowerShell, and Node.js - into a delivery chain that is harder to spot and block.

Fake Microsoft Sign-In Pages Turn a Phone Call into an Identity Trap

Published: 10 July 2026 14:24Category: Security Awareness & Social EngineeringGeo: North America / USAAuthor: PATCHKNIGHT

A vishing campaign is steering Microsoft 365 users toward counterfeit Microsoft Entra ID login pages, showing how social engineering now targets the identity layer itself.

Inside the Low-Cost Storefront Trap: Why Cheap E-commerce Hosting Still Demands Real Security

Published: 10 July 2026 13:03Category: Technology, Innovation & Digital InfrastructureGeo: Europe / ItalyAuthor: TRUSTBREAKER

A starter PrestaShop bundle can lower the barrier to launch, but the security burden still shifts to how the shop is configured, updated, and recovered after it goes live.