Cyber Dispatch™️
395 subscribers
33 photos
2 videos
49 links
The definitive source for critical cybersecurity news. When a major threat breaks, we dispatch.

#CyberDispatch #CyberSecurity #InfoSec #ThreatIntelligence #ZeroDay #DataBreach #SecurityNews
Download Telegram
Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process.
DEF CON bans Meta-style 'pervert glasses'.
Italy fines US data broker Lusha €2 million over unlawful data collection.
Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe.
Israel Spending Millions to Manipulate AI Chatbots Like ChatGPT and Claude

Israeli regime is paying former Trump campaign manager Brad Parscale $46.5 million to run an influence operation designed to manipulate AI chatbots like ChatGPT and Claude.
Hacker on the Altenen cybercrime forum is distributing a 17 GB SQL database claimed to have been stolen from SplitVPN, formerly known as NotVPN, a Russian VPN marketed for bypassing internet censorship. Mysterium’s research team obtained a copy, verified it against the raw dump, and confirmed the numbers: roughly 23.4 million user records, 13.6 million device records, 2.6 million payment records, and 58 million connection logs. A VPN that promised zero logs kept tens of millions of them.
PhantomEnigma Infects Organizations with Malware via Hijacked Government Websites.
Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack.
Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet.
Apple accused of letting fake crypto app steal $1.8 million.
America bans imported robots due to supply chain and security risks.
CubePilot drone software dev hit by DNS hijacking to intercept traffic.
Cisco is warning that a high-severity Secure Firewall Management Center (FMC) static credential vulnerability, tracked as CVE-2026-20316, was actively exploited in zero-day attacks to gain unauthorized access to vulnerable devices.

The vulnerability is caused by static credentials for a low-privilege account built into Cisco Secure FMC Software.
The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated backdoor called OWAReaper.

Email security company Proofpoint spotted the activity a week ago targeting various organizations, including government entities in the U.S. and Europe, and companies in the telecommunications, financial, hospitality, and aerospace sectors.

Laundry Bear exploited CVE-2026-42897, a cross-site scripting (XSS) vulnerability that allows executing arbitrary JavaScript in the browser context when users open a specially crafted email in the Outlook Web Access (OWA) app.
The source code for the Flying Eagle Android remote access trojan (RAT) framework is being shared on criminal Telegram channels. Researchers from Hunt.io and NetAskari have identified 170 internet servers linked to matching control panels and certificates.
HOLLOWGRAPH Backdoor Turns Microsoft 365 Calendars Into a C2 Channel.
CVE-2026-63077: Critical unauthenticated remote code execution in JetBrains TeamCity.
EU to Crack Down on AI Deepfakes, Illicit Imagery and Hacking With New Team in Brussels.
Cyberattack on Minnesota water systems.
Cyber Dispatch™️
Cyberattack on Minnesota water systems.
A coordinated cyberattack struck more than 30 municipal water systems across Minnesota over the weekend, disrupting automated controls at treatment plants and water towers in communities including Braham, Plymouth, Maple Plain, and South St. Paul. State.
Cyber Dispatch™️
Cyberattack on Minnesota water systems.
Federal officials say the intrusions targeted operational technology such as programmable logic controllers and supervisory systems that manage pumps and monitoring, forcing some utilities to switch to manual operations.